270961
|
- |
|
openskip
|
skip
|
Cross-site scripting (XSS) vulnerability in Skip 1.0.2 and earlier, and 1.1RC2 and earlier 1.1RC versions, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2009-1908
|
2009-06-5 13:00 |
2009-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270962
|
- |
|
openskip
|
skip
|
SQL injection vulnerability in Skip 1.0.2 and earlier, and 1.1RC2 and earlier 1.1RC versions, allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2009-1909
|
2009-06-5 13:00 |
2009-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270963
|
- |
|
mt312
|
rep-bbs
|
Cross-site scripting (XSS) vulnerability in MT312 REP-BBS allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to (1) model.php and (2) config.php with times…
|
CWE-79
Cross-site Scripting
|
CVE-2009-1880
|
2009-06-3 00:30 |
2009-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270964
|
- |
|
benjamin_curtis
|
phpbugtracker
|
SQL injection vulnerability in include.php in phpBugTracker 1.0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter. NOTE: the provenance of this infor…
|
CWE-89
SQL Injection
|
CVE-2009-1851
|
2009-06-2 13:00 |
2009-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270965
|
- |
|
sun
|
iplanet_web_server one_web_server
|
The default configuration of Sun ONE/iPlanet Web Server 4.1 SP1 through SP12 and 6.0 SP1 through SP5 responds to the HTTP TRACE request, which can allow remote attackers to steal information using cr…
|
CWE-16
Configuration
|
CVE-2004-2763
|
2009-06-2 13:00 |
2009-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270966
|
- |
|
sun
|
jmf
|
Sun Java Media Framework (JMF) 2.1.1 through 2.1.1c allows unsigned applets to cause a denial of service (JVM crash) and read or write unauthorized memory locations via the ReadEnv class, as demonstr…
|
NVD-CWE-noinfo
|
CVE-2003-1572
|
2009-06-2 13:00 |
2009-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270967
|
- |
|
nlnetlabs
|
nsd
|
Off-by-one error in the packet_read_query_section function in packet.c in nsd 3.2.1, and process_query_section in query.c in nsd 2.3.7, allows remote attackers to cause a denial of service (crash) an…
|
CWE-189
Numeric Errors
|
CVE-2009-1755
|
2009-05-29 13:00 |
2009-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270968
|
- |
|
chinagames
|
igame
|
Stack-based buffer overflow in the Chinagames CGAgent ActiveX control 1.x in CGAgent.dll, as distributed in Chinagames iGame 2009, allows remote attackers to execute arbitrary code via a long argumen…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-1800
|
2009-05-28 23:30 |
2009-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270969
|
- |
|
ulteo
|
open_virtual_desktop
|
Cross-site scripting (XSS) vulnerability in Ulteo Open Virtual Desktop 1.0 allows remote attackers to inject arbitrary web script or HTML via the error parameter to header.php. NOTE: the provenance …
|
CWE-79
Cross-site Scripting
|
CVE-2009-1785
|
2009-05-24 13:00 |
2009-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270970
|
- |
|
cisco
|
wvc54gca
|
The Cisco Linksys WVC54GCA wireless video camera with firmware 1.00R22 and 1.00R24 sends configuration data in response to a Setup Wizard remote-management command, which allows remote attackers to o…
|
CWE-200
Information Exposure
|
CVE-2009-1555
|
2009-05-23 14:31 |
2009-05-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|