264931
|
- |
|
typo3
|
wec_discussion_forum
|
Multiple SQL injection vulnerabilities in the WEC Discussion Forum (wec_discussion) extension 1.7.0 and earlier for TYPO3 allow remote attackers to execute arbitrary SQL commands via unspecified vect…
|
CWE-89
SQL Injection
|
CVE-2008-6145
|
2011-03-8 12:15 |
2009-02-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264932
|
- |
|
enlightenment
|
imlib2
|
The load function in the XPM loader for imlib2 1.4.2, and possibly other versions, allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted XPM file tha…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5187
|
2011-03-8 12:14 |
2008-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264933
|
- |
|
xine
|
xine
|
Heap-based buffer overflow in the demux_real_send_chunk function in src/demuxers/demux_real.c in xine-lib before 1.1.15 allows remote attackers to execute arbitrary code via a crafted Real Media file…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5235
|
2011-03-8 12:14 |
2008-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264934
|
- |
|
zilab
|
zim_server
|
The Local ZIM Server (zcs.exe) in Zilab Chat and Instant Messaging (ZIM) Server 2.1 and earlier allow remote attackers to execute arbitrary code via (1) heap-based buffer overflows involving multiple…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5279
|
2011-03-8 12:14 |
2008-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264935
|
- |
|
zilab
|
zim_server
|
The Local ZIM Server in Zilab Chat and Instant Messaging (ZIM) Server 2.0 and 2.1 allows remote attackers to cause a denial of service (NULL pointer dereference) via crafted requests without required…
|
CWE-399
Resource Management Errors
|
CVE-2008-5280
|
2011-03-8 12:14 |
2008-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264936
|
- |
|
typo3
|
commerce_extension
|
SQL injection vulnerability in the Commerce extension 0.9.6 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2008-5609
|
2011-03-8 12:14 |
2008-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264937
|
- |
|
ibm
|
websphere_portal
|
Unspecified vulnerability in IBM WebSphere Portal 6.0 before 6.0.1.5 has unknown impact and attack vectors related to "Access problems with BasicAuthTAI."
|
NVD-CWE-noinfo CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-5675
|
2011-03-8 12:14 |
2008-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264938
|
- |
|
sun
|
scapp
|
Sun ScApp firmware 5.18.x, 5.19.x, and 5.20.0 through 5.20.10 on Sun Fire and Netra platforms allows remote attackers to access the System Controller (SC), the system console, and possibly the host O…
|
NVD-CWE-noinfo
|
CVE-2008-5685
|
2011-03-8 12:14 |
2008-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264939
|
- |
|
sun
|
scapp
|
Note: This issue only impacts systems that have a System Controller V2 without SSH enabled.
|
NVD-CWE-noinfo
|
CVE-2008-5685
|
2011-03-8 12:14 |
2008-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264940
|
- |
|
ibm
|
tivoli_provisioning_manager
|
IBM Tivoli Provisioning Manager (TPM) before 5.1.1.1 IF0006, when its LDAP service is shared with other applications, does not require that an LDAP user be listed in the TPM user records, which allow…
|
CWE-287
Improper Authentication
|
CVE-2008-5686
|
2011-03-8 12:14 |
2008-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|