270401
|
- |
|
clamav
|
clamav
|
The cabd_find function in cabd.c of the libmspack library (mspack) for Clam AntiVirus (ClamAV) before 0.87.1 allows remote attackers to cause a denial of service (infinite loop) via a crafted CAB fil…
|
CWE-399
Resource Management Errors
|
CVE-2005-3501
|
2011-07-14 13:00 |
2005-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270402
|
- |
|
php
|
php
|
The compress.bzip2:// URL wrapper provided by the bz2 extension in PHP before 4.4.7, and 5.x before 5.2.2, does not implement safemode or open_basedir checks, which allows remote attackers to read bz…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-1461
|
2011-07-13 13:00 |
2007-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270403
|
- |
|
opera
|
opera_browser
|
The FTP protocol implementation in Opera 9.10 allows remote attackers to allows remote servers to force the client to connect to other servers, perform a proxied port scan, or obtain sensitive inform…
|
CWE-200
Information Exposure
|
CVE-2007-1563
|
2011-07-8 13:00 |
2007-03-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270404
|
- |
|
wikkawiki
|
wikkawiki
|
The RecentChanges feature in WikkaWiki (Wikka Wiki) before 1.1.6.3 allows remote attackers to obtain the names, and possibly revision notes and dates, of private pages via RSS feeds.
|
CWE-200
Information Exposure
|
CVE-2007-2552
|
2011-06-16 13:00 |
2007-05-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270405
|
- |
|
amarok
|
amarok
|
The ruby handlers in the Magnatune component in Amarok do not properly quote text in certain contexts, probably including construction of an unzip command line, which allows attackers to execute arbi…
|
CWE-20
Improper Input Validation
|
CVE-2006-6979
|
2011-06-16 13:00 |
2007-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270406
|
- |
|
ibm
|
websphere_application_server
|
The Servlet Engine and Web Container in IBM WebSphere Application Server (WAS) before 6.0.2.17, when ibm-web-ext.xmi sets fileServingEnabled to true and servlet caching is enabled, allows remote atta…
|
CWE-200
Information Exposure
|
CVE-2006-6637
|
2011-06-14 13:00 |
2006-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270407
|
- |
|
sun
|
sparc_enterprise_server
|
The Sun SPARC Enterprise M4000 and M5000 Server, within a certain range of serial numbers, allows remote attackers to use the manufacturing root password, perform a root login to the eXtended System …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-0171
|
2011-06-13 13:00 |
2009-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270408
|
- |
|
isc
|
dhcpd
|
The supersede_lease function in memory.c in ISC DHCP (dhcpd) server 2.0pl5 allows remote attackers to cause a denial of service (application crash) via a DHCPDISCOVER packet with a 32 byte client-ide…
|
CWE-399
Resource Management Errors
|
CVE-2006-3122
|
2011-06-13 13:00 |
2006-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270409
|
- |
|
asbru_software
|
asbru_web_content_management asbru_website_manager
|
The spell checking component of (1) Asbru Web Content Management before 6.1.22, (2) Asbru Web Content Editor before 6.0.22, and (3) Asbru Website Manager before 6.0.22 allows remote attackers to exec…
|
CWE-94
Code Injection
|
CVE-2006-5258
|
2011-06-13 13:00 |
2006-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270410
|
- |
|
apple freebsd
|
mac_os_x freebsd
|
The ufs_lookup function in the Mac OS X 10.4.8 and FreeBSD 6.1 kernels allows local users to cause a denial of service (kernel panic) and possibly corrupt other filesystems by mounting a crafted UNIX…
|
CWE-399
Resource Management Errors
|
CVE-2007-0267
|
2011-06-10 13:00 |
2007-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|