266511
|
- |
|
frank_krger
|
nl_listman
|
Cross-site scripting (XSS) vulnerability in the ListMan (nl_listman) extension 1.2.1 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2009-4388
|
2009-12-24 03:37 |
2009-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266512
|
- |
|
scriptsez
|
ez_poll_hoster
|
Multiple cross-site request forgery (CSRF) vulnerabilities in Scriptsez.net Ez Poll Hoster (EPH) allow remote attackers to (1) hijack the authentication of arbitrary users for requests that delete po…
|
CWE-352
Origin Validation Error
|
CVE-2009-4385
|
2009-12-24 03:02 |
2009-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266513
|
- |
|
scriptsez
|
ez_poll_hoster
|
Multiple cross-site scripting (XSS) vulnerabilities in Scriptsez.net Ez Poll Hoster (EPH) allow remote attackers to inject arbitrary web script or HTML via the (1) pid parameter in a code action to i…
|
CWE-79
Cross-site Scripting
|
CVE-2009-4384
|
2009-12-24 02:57 |
2009-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266514
|
- |
|
digium
|
asterisk asterisknow s800i
|
Asterisk Open Source 1.2.x before 1.2.35, 1.4.x before 1.4.26.3, 1.6.0.x before 1.6.0.17, and 1.6.1.x before 1.6.1.9; Business Edition A.x.x, B.x.x before B.2.5.12, C.2.x.x before C.2.4.5, and C.3.x.…
|
CWE-200
Information Exposure
|
CVE-2009-3727
|
2009-12-23 15:58 |
2009-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266515
|
- |
|
hp
|
openview_storage_data_protector
|
Stack-based buffer overflow in OmniInet.exe (aka the backup client service daemon) in the Application Recovery Manager component in HP OpenView Storage Data Protector 5.50 and 6.0 allows remote attac…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-2280
|
2009-12-23 15:26 |
2009-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266516
|
- |
|
hp
|
openview_storage_data_protector
|
Integer overflow in the _ncp32._NtrpTCPReceiveMsg function in rds.exe in the Cell Manager Database Service in the Application Recovery Manager component in HP OpenView Storage Data Protector 5.50 and…
|
CWE-189
Numeric Errors
|
CVE-2007-2281
|
2009-12-23 15:26 |
2009-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266517
|
- |
|
valarsoft
|
webmatic
|
Multiple cross-site scripting (XSS) vulnerabilities in Valarsoft Webmatic before 3.0.3 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different issue than CV…
|
CWE-79
Cross-site Scripting
|
CVE-2009-4379
|
2009-12-23 14:00 |
2009-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266518
|
- |
|
valarsoft
|
webmatic
|
Multiple SQL injection vulnerabilities in Valarsoft Webmatic before 3.0.3 allow remote attackers to execute arbitrary SQL commands via unspecified vectors, a different issue than CVE-2008-2925.
|
CWE-89
SQL Injection
|
CVE-2009-4380
|
2009-12-23 14:00 |
2009-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266519
|
- |
|
phpfaber
|
phpfaber_content_management_system
|
Cross-site scripting (XSS) vulnerability in module.php in PHPFABER CMS, possibly 1.3.36, allows remote attackers to inject arbitrary web script or HTML via the mod parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2009-4382
|
2009-12-23 14:00 |
2009-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266520
|
- |
|
manageengine
|
password_manager_pro password_manager_pro6.1
|
The cross-site scripting (XSS) protection mechanism in ShowInContentAreaAction.do in ManageEngine Password Manager Pro (PMP) before 6.1 Build 6104 uses case-sensitive checks for malicious inputs, whi…
|
CWE-79
Cross-site Scripting
|
CVE-2009-4387
|
2009-12-23 14:00 |
2009-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|