268101
|
- |
|
boesch_it-consulting
|
simpnews
|
Multiple cross-site scripting (XSS) vulnerabilities in Boesch SimpNews before 2.34.01 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters to (1) admin/index.php, …
|
CWE-79
Cross-site Scripting
|
CVE-2006-5530
|
2012-08-6 13:00 |
2006-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268102
|
- |
|
colony
|
colony_cms colony_e-commerce_cms colony_enterprise_cms colony_government_cms
|
Cross-site scripting (XSS) vulnerability in Colony CMS 2.75 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters.
|
CWE-79
Cross-site Scripting
|
CVE-2005-4386
|
2012-08-6 13:00 |
2005-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268103
|
- |
|
secureideas
|
basic_analysis_and_security_engine
|
Multiple cross-site scripting (XSS) vulnerabilities in Basic Analysis and Security Engine (BASE) before 1.4.3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) sig[1] parame…
|
CWE-79
Cross-site Scripting
|
CVE-2009-4837
|
2012-07-3 13:00 |
2010-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268104
|
- |
|
secureideas
|
basic_analysis_and_security_engine
|
SQL injection vulnerability in base_ag_common.php in Basic Analysis and Security Engine (BASE) before 1.4.3.1 allows remote attackers to execute arbitrary SQL commands via unspecified parameters. NO…
|
CWE-89
SQL Injection
|
CVE-2009-4838
|
2012-07-3 13:00 |
2010-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268105
|
- |
|
secureideas
|
basic_analysis_and_security_engine
|
Multiple cross-site scripting (XSS) vulnerabilities in Basic Analysis and Security Engine (BASE), possibly 1.4.4 and earlier, allow remote attackers to inject arbitrary web script or HTML via unspeci…
|
CWE-79
Cross-site Scripting
|
CVE-2009-4839
|
2012-07-3 13:00 |
2010-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268106
|
- |
|
secureideas
|
basic_analysis_and_security_engine
|
Multiple cross-site scripting (XSS) vulnerabilities in base_qry_main.php in Base Analysis and Security Engine (BASE) before 1.3.9 allow remote attackers to inject arbitrary web script or HTML via the…
|
CWE-79
Cross-site Scripting
|
CVE-2007-6156
|
2012-07-3 13:00 |
2007-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268107
|
- |
|
acid secureideas
|
analysis_console_for_intrusion_databases basic_analysis_and_security_engine
|
Multiple SQL injection vulnerabilities in (1) acid_qry_main.php in Analysis Console for Intrusion Databases (ACID) 0.9.6b20 and (2) base_qry_main.php in Basic Analysis and Security Engine (BASE) 1.2,…
|
CWE-89
SQL Injection
|
CVE-2005-3325
|
2012-07-3 13:00 |
2005-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268108
|
- |
|
david_paleino
|
wicd
|
The DBus configuration file for Wicd before 1.5.9 allows arbitrary users to own org.wicd.daemon, which allows local users to receive messages that were intended for the Wicd daemon, possibly includin…
|
CWE-16
Configuration
|
CVE-2009-0489
|
2012-07-2 13:00 |
2009-02-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268109
|
- |
|
php
|
php
|
PHP 4.0.4pl1 and 4.0.5 in safe mode allows remote attackers to read and write files owned by the web server UID by uploading a PHP script that uses the error_log function to access the files.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2001-1247
|
2012-06-25 13:00 |
2001-12-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268110
|
- |
|
perforce
|
perforce_server
|
Directory traversal vulnerability in Perforce Server 2008.1 allows remote authenticated users to create arbitrary files via a .. (dot dot) in the argument to the "p4 add" command.
|
CWE-22
Path Traversal
|
CVE-2010-0933
|
2012-06-15 13:00 |
2010-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|