270861
|
- |
|
linea21
|
linea21
|
Cross-site scripting (XSS) vulnerability in public/index.php in Linea21 1.2.1 allows remote attackers to inject arbitrary web script or HTML via the search parameter in a resultats-recherche action.
|
CWE-79
Cross-site Scripting
|
CVE-2009-2442
|
2009-07-13 23:30 |
2009-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270862
|
- |
|
awingsoft
|
awakening_winds3d_viewer_plugin
|
Insecure method vulnerability in Awingsoft Awakening Winds3D Viewer plugin 3.5.0.0, 3.0.0.5, and possibly other versions allows remote attackers to force the download and execution of arbitrary files…
|
CWE-20
Improper Input Validation
|
CVE-2009-2386
|
2009-07-13 13:00 |
2009-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270863
|
- |
|
ebayclonescript
|
ebay_clone
|
SQL injection vulnerability in category.php in Ebay Clone 2009 allows remote attackers to execute arbitrary SQL commands via the cate_id parameter in a list action.
|
CWE-89
SQL Injection
|
CVE-2009-2423
|
2009-07-13 13:00 |
2009-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270864
|
- |
|
jobbr
|
jobbr
|
SQL injection vulnerability in co-profile.php in Jobbr 2.2.7 allows remote attackers to execute arbitrary SQL commands via the emp_id parameter.
|
CWE-89
SQL Injection
|
CVE-2009-2427
|
2009-07-13 13:00 |
2009-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270865
|
- |
|
tauschregal.de
|
tausch_ticket_script
|
Multiple SQL injection vulnerabilities in Tausch Ticket Script 3 allow remote attackers to execute arbitrary SQL commands via the (1) userid parameter to suchauftraege_user.php and the (2) descr para…
|
CWE-89
SQL Injection
|
CVE-2009-2428
|
2009-07-13 13:00 |
2009-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270866
|
- |
|
hp
|
openview_network_node_manager
|
Stack-based buffer overflow in rping in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53, when used with SNMP (aka HPOvNNM.HPOVSNMP) before 1.30.009 and MIB (aka HPOvNNM.HPOVMIB) before 1.30.0…
|
NVD-CWE-noinfo
|
CVE-2009-1420
|
2009-07-11 14:30 |
2009-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270867
|
- |
|
richard_ellerbrock
|
ipplan
|
Cross-site scripting (XSS) vulnerability in admin/usermanager in IPplan 4.91a allows remote attackers to inject arbitrary web script or HTML via the grp parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2009-1732
|
2009-07-10 14:33 |
2009-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270868
|
- |
|
eggheads
|
eggdrop_irc_bot
|
Stack-based buffer overflow in mod/server.mod/servrmsg.c in Eggdrop 1.6.18, and possibly earlier, allows user-assisted, remote IRC servers to execute arbitrary code via a long private message.
|
NVD-CWE-Other
|
CVE-2007-2807
|
2009-07-10 14:05 |
2007-05-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270869
|
- |
|
zoph
|
zoph
|
Cross-site scripting (XSS) vulnerability in people.php in Zoph before 0.7.0.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: some of these details are …
|
CWE-79
Cross-site Scripting
|
CVE-2009-2343
|
2009-07-9 13:00 |
2009-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270870
|
- |
|
ebay
|
enhanced_picture_uploader_activex_control
|
eBay Enhanced Picture Uploader ActiveX control (EPUWALcontrol.dll) before 1.0.27 allows remote attackers to execute arbitrary commands via the PictureUrls property.
|
CWE-78
OS Command
|
CVE-2008-2475
|
2009-07-9 13:00 |
2009-06-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|