268431
|
- |
|
oliver_gorwits
|
netdisco_mibs_installer
|
netdisco-mibs-installer 1.0 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/netdisco-mibs-0.6.tar.gz temporary file, related to the (1) netdisco-mibs-install and (2) …
|
CWE-59
Link Following
|
CVE-2008-5379
|
2008-12-9 14:00 |
2008-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268432
|
- |
|
adobe
|
acrobat
|
Adobe Acrobat 9 uses more efficient encryption than previous versions, which makes it easier for attackers to guess a document's password via a brute-force attack.
|
CWE-310
Cryptographic Issues
|
CVE-2008-5331
|
2008-12-5 14:00 |
2008-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268433
|
- |
|
inspector_it
|
wiz-ad
|
SQL injection vulnerability in Wiz-Ad 1.3 allows remote attackers to execute arbitrary SQL commands via unknown vectors. NOTE: the provenance of this information is unknown; the details are obtained…
|
CWE-89
SQL Injection
|
CVE-2007-6719
|
2008-12-5 14:00 |
2008-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268434
|
- |
|
mohammed_sameer
|
multi-gnome-terminal
|
mgt-helper in multi-gnome-terminal 1.6.2 allows local users to overwrite arbitrary files via a symlink attack on a (1) /tmp/*.debug or (2) /tmp/*.env temporary file.
|
CWE-59
Link Following
|
CVE-2008-5143
|
2008-12-3 15:46 |
2008-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268435
|
- |
|
geda
|
gnetlist
|
sch2eaglepos.sh in geda-gnetlist 1.4.0 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/##### temporary file.
|
CWE-59
Link Following
|
CVE-2008-5148
|
2008-12-3 15:46 |
2008-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268436
|
- |
|
sentex
|
jhead
|
The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and earlier allows local users to delete arbitrary files via vectors involving a modified input filename in which (1) a final "z" chara…
|
NVD-CWE-noinfo CWE-20
Improper Input Validation
|
CVE-2008-4640
|
2008-12-3 15:45 |
2008-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268437
|
- |
|
sentex
|
jhead
|
The DoCommand function in jhead.c in Matthias Wandel jhead 2.84 and earlier allows attackers to execute arbitrary commands via shell metacharacters in unspecified input.
|
NVD-CWE-noinfo CWE-20
Improper Input Validation
|
CVE-2008-4641
|
2008-12-3 15:45 |
2008-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268438
|
- |
|
cisco
|
ios
|
The Temporal Key Integrity Protocol (TKIP) implementation in unspecified Cisco products and other vendors' products, as used in WPA and WPA2 on Wi-Fi networks, has insufficient countermeasures agains…
|
CWE-310
Cryptographic Issues
|
CVE-2008-5230
|
2008-12-3 14:00 |
2008-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268439
|
- |
|
cisco
|
ios
|
The impact of this vulnerability has yet to be determined. The full list of affected platforms is subject to change. The NVD will continue to monitor this vulnerability and adjust the configurations …
|
CWE-310
Cryptographic Issues
|
CVE-2008-5230
|
2008-12-3 14:00 |
2008-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268440
|
- |
|
ghh
|
google_hack_honeypot_file_upload_manager
|
Google Hack Honeypot (GHH) File Upload Manager 1.3 allows remote attackers to delete uploaded files via unknown vectors related to the delall action to index.php. NOTE: the provenance of this inform…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-5283
|
2008-12-2 14:00 |
2008-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|