267831
|
- |
|
symantec
|
altiris_deployment_solution
|
Unspecified vulnerability in mm.exe in Symantec Altiris Deployment Solution 6.9 allows remote attackers to cause a denial of service via unknown attack vectors, as demonstrated by a certain module in…
|
NVD-CWE-noinfo
|
CVE-2009-3178
|
2009-09-14 13:00 |
2009-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267832
|
- |
|
claudio_matsuoka
|
extended_module_player
|
Extended Module Player (XMP) 2.5.1 and earlier allow remote attackers to execute arbitrary code via an OXM file with a negative value, which bypasses a check in (1) test_oxm and (2) decrunch_oxm func…
|
CWE-94
Code Injection
|
CVE-2007-6731
|
2009-09-14 13:00 |
2009-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267833
|
- |
|
claudio_matsuoka
|
extended_module_player
|
Multiple buffer overflows in the dtt_load function in loaders/dtt_load.c Extended Module Player (XMP) 2.5.1 and earlier allow remote attackers to execute arbitrary code via unspecified vectors relate…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-6732
|
2009-09-14 13:00 |
2009-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267834
|
- |
|
rivetcode
|
rivettracker
|
RivetTracker before 1.0 stores passwords in cleartext in config.php, which allows local users to discover passwords by reading config.php.
|
CWE-310
Cryptographic Issues
|
CVE-2008-7207
|
2009-09-12 01:30 |
2009-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267835
|
- |
|
marc_gloor
|
screenie
|
screenie in screenie 1.30.0 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/.screenie.##### temporary file.
|
CWE-59
Link Following
|
CVE-2008-5371
|
2009-09-11 14:29 |
2008-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267836
|
- |
|
cmus
|
cmus
|
cmus-status-display in cmus 2.2.0 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/cmus-status temporary file.
|
CWE-59
Link Following
|
CVE-2008-5375
|
2009-09-11 14:29 |
2008-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267837
|
- |
|
multi-website
|
multi_website
|
Cross-site scripting (XSS) vulnerability in Multi Website 1.5 allows remote attackers to inject arbitrary web script or HTML via the search parameter in a search action to the default URI.
|
CWE-79
Cross-site Scripting
|
CVE-2009-3162
|
2009-09-11 13:00 |
2009-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267838
|
- |
|
openwebmail.acatysmoof
|
openwebmail
|
Multiple cross-site scripting (XSS) vulnerabilities in OpenWebMail before 2.53 (Stable) allow remote attackers to inject arbitrary web script or HTML via unknown vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2008-7202
|
2009-09-11 13:00 |
2009-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267839
|
- |
|
allenthusiast
|
reviewpost_php_pro
|
Cross-site scripting (XSS) vulnerability in showproduct.php in ReviewPost Pro vB3 allows remote attackers to inject arbitrary web script or HTML via the date parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2009-3147
|
2009-09-11 03:30 |
2009-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267840
|
- |
|
mark_reinsfelder
|
metashell
|
Unspecified vulnerability in metashell before 0.03 has unknown impact and attack vectors related to a "PATH execution security flaw," possibly an untrusted search path vulnerability.
|
NVD-CWE-noinfo
|
CVE-2008-7196
|
2009-09-10 19:30 |
2009-09-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|