265021
|
- |
|
kerio
|
avg_plugin kerio_mailserver
|
Unspecified vulnerability in the AVG plugin in Kerio MailServer before 6.5.0 has unspecified impact via unknown remote attack vectors related to null DACLs.
|
NVD-CWE-noinfo
|
CVE-2008-0860
|
2011-03-8 12:05 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265022
|
- |
|
ibm
|
lotus_quickplace
|
Cross-site scripting (XSS) vulnerability in leg/Main.nsf in IBM Lotus Quickplace 7.0 allows remote attackers to inject arbitrary web script or HTML via an h_SearchString sub-parameter in the PreSetFi…
|
CWE-79
Cross-site Scripting
|
CVE-2008-0861
|
2011-03-8 12:05 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265023
|
- |
|
ibm
|
lotus_notes
|
IBM Lotus Notes 6.0, 6.5, 7.0, and 8.0 signs an unsigned applet when a user forwards an email message to another user, which allows user-assisted remote attackers to bypass Execution Control List (EC…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-0862
|
2011-03-8 12:05 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265024
|
- |
|
bea
|
weblogic_server
|
BEA WebLogic Server and WebLogic Express 9.0 and 9.1 exposes the web service's WSDL and security policies, which allows remote attackers to obtain sensitive information and potentially launch further…
|
CWE-200
Information Exposure
|
CVE-2008-0863
|
2011-03-8 12:05 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265025
|
- |
|
bea
|
weblogic_workshop
|
Multiple cross-site scripting (XSS) vulnerabilities in BEA WebLogic Workshop allow remote attackers to inject arbitrary web script or HTML via an invalid action URI, which is not properly handled by …
|
CWE-79
Cross-site Scripting
|
CVE-2008-0866
|
2011-03-8 12:05 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265026
|
- |
|
bea bea_systems
|
weblogic_server weblogic_workshop weblogic
|
Cross-site scripting (XSS) vulnerability in BEA WebLogic Workshop 8.1 through SP6 and Workshop for WebLogic 9.0 through 10.0 allows remote attackers to inject arbitrary web script or HTML via a "fram…
|
CWE-79
Cross-site Scripting
|
CVE-2008-0869
|
2011-03-8 12:05 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265027
|
- |
|
hitachi
|
eur_print_manager
|
Unspecified vulnerability in Hitachi EUR Print Manager, and related Client and Local Server products, 05-06 through 05-06-/B and 05-08 allows remote attackers to cause a denial of service (service ha…
|
NVD-CWE-noinfo
|
CVE-2008-0875
|
2011-03-8 12:05 |
2008-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265028
|
- |
|
hitachi
|
sewb3_mi-platform sewb3_platform
|
Unspecified vulnerability in the SEWB3 messaging service in Hitachi SEWB3/PLATFORM and SEWB3/MI-PLATFORM 01-00 through 02-14-/A allows remote attackers to cause a denial of service (service outage) v…
|
CWE-20
Improper Input Validation
|
CVE-2008-0876
|
2011-03-8 12:05 |
2008-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265029
|
- |
|
bea
|
weblogic_server
|
BEA WebLogic Server and WebLogic Express 6.1 through 10.0 allows remote attackers to bypass authentication for application servlets via crafted request headers.
|
CWE-287
Improper Authentication
|
CVE-2008-0895
|
2011-03-8 12:05 |
2008-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265030
|
- |
|
bea_systems
|
weblogic_portal
|
BEA WebLogic Portal 10.0 and 9.2 through MP1, when an administrator deletes a single instance of a content portlet, removes entitlement policies for other content portlets, which allows attackers to …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-0896
|
2011-03-8 12:05 |
2008-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|