267811
|
- |
|
jce-tech
|
auction_rss_content_script
|
Multiple cross-site scripting (XSS) vulnerabilities in JCE-Tech Auction RSS Content Script 3.0 allow remote attackers to inject arbitrary web script or HTML via the id parameter to (1) rss.php and (2…
|
CWE-79
Cross-site Scripting
|
CVE-2009-3195
|
2009-09-16 13:00 |
2009-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267812
|
- |
|
jce-tech
|
php_video_script
|
Cross-site scripting (XSS) vulnerability in index.php in JCE-Tech PHP Video Script allows remote attackers to inject arbitrary web script or HTML via the key parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2009-3196
|
2009-09-16 13:00 |
2009-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267813
|
- |
|
jce-tech
|
php_calendars_script
|
Cross-site scripting (XSS) vulnerability in search.php in JCE-Tech PHP Calendars Script allows remote attackers to inject arbitrary web script or HTML via the search parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2009-3197
|
2009-09-16 13:00 |
2009-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267814
|
- |
|
jce-tech
|
affiliate_master_datafeed_parser
|
Cross-site scripting (XSS) vulnerability in search.php in JCE-Tech Affiliate Master Datafeed Parser Script 2.0 allows remote attackers to inject arbitrary web script or HTML via the search parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2009-3198
|
2009-09-16 13:00 |
2009-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267815
|
- |
|
debian
|
newsgate
|
mkmailpost in newsgate 1.6 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/mmp##### temporary file.
|
CWE-59
Link Following
|
CVE-2008-4975
|
2009-09-15 14:19 |
2008-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267816
|
- |
|
shrubbery
|
rancid
|
getipacctg in rancid 2.3.2~a8 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/ipacct.#####.prefixes, (2) /tmp/ipacct.#####.sorted, (3) /tmp/ipacct.#####.pl, and (4) /…
|
CWE-59
Link Following
|
CVE-2008-4979
|
2009-09-15 14:19 |
2008-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267817
|
- |
|
zak_b_elep
|
rccp
|
delqueueask in rccp 0.9 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/cccp_tmp.txt temporary file.
|
CWE-59
Link Following
|
CVE-2008-4980
|
2009-09-15 14:19 |
2008-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267818
|
- |
|
instantsoftwares
|
dating_site
|
Cross-site scripting (XSS) vulnerability in login_form.asp in Instant Softwares Dating Site allows remote attackers to inject arbitrary web script or HTML via the msg parameter, a different product t…
|
CWE-79
Cross-site Scripting
|
CVE-2008-0131
|
2009-09-15 14:10 |
2008-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267819
|
- |
|
zyxel
|
p-330w_router
|
Cross-site scripting (XSS) vulnerability in the web management interface in the ZyXEL P-330W router allows remote attackers to inject arbitrary web script or HTML via the pingstr parameter and other …
|
CWE-79
Cross-site Scripting
|
CVE-2007-6729
|
2009-09-15 14:10 |
2009-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267820
|
- |
|
zyxel
|
p-330w_router
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the web management interface in the ZyXEL P-330W router allow remote attackers to hijack the authentication of administrators for request…
|
CWE-352
Origin Validation Error
|
CVE-2007-6730
|
2009-09-15 14:10 |
2009-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|