269971
|
- |
|
wikkawiki
|
wikkawiki
|
SQL injection vulnerability in libs/Wakka.class.php in WikkaWiki (Wikka Wiki) before 1.1.6.3 allows remote attackers to execute arbitrary SQL commands via the limit parameter. NOTE: this issue only …
|
NVD-CWE-Other
|
CVE-2007-2612
|
2012-11-6 12:38 |
2007-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269972
|
- |
|
kkeim
|
kmita_gallery
|
Multiple cross-site scripting (XSS) vulnerabilities in Kmita Gallery allow remote attackers to inject arbitrary web script or HTML via the (1) begin parameter to index.php and the (2) searchtext para…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5068
|
2012-10-31 12:06 |
2008-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269973
|
- |
|
novell
|
edirectory
|
Heap-based buffer overflows in Novell eDirectory HTTP protocol stack (HTTPSTK) before 8.8 SP3 have unknown impact and attack vectors related to the (1) HTTP language header and (2) HTTP content-lengt…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5092
|
2012-10-31 12:06 |
2008-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269974
|
- |
|
novell
|
edirectory
|
Heap-based buffer overflow in the NDS Service in Novell eDirectory before 8.8 SP3 has unknown impact and attack vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5094
|
2012-10-31 12:06 |
2008-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269975
|
- |
|
novell
|
identity_manager_roles_based_provisioning_module user_application
|
Cross-site scripting (XSS) vulnerability in the Novell User Application 3.0.1, 3.5.0, and 3.5.1; and Identity Manager Roles Based Provisioning Module 3.6.0 and 3.6.1 allows remote attackers to inject…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5095
|
2012-10-31 12:06 |
2008-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269976
|
- |
|
adobe
|
adobe_air
|
Unspecified vulnerability in Adobe AIR 1.1 and earlier allows context-dependent attackers to execute untrusted JavaScript in an AIR application via unknown attack vectors.
|
NVD-CWE-noinfo CWE-94
Code Injection
|
CVE-2008-5108
|
2012-10-31 12:06 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269977
|
- |
|
freebsd
|
freebsd-sendpr
|
sendbug in freebsd-sendpr 3.113+5.3 on Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink attack on a /tmp/pr.##### temporary file.
|
CWE-59
Link Following
|
CVE-2008-5142
|
2012-10-31 12:06 |
2008-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269978
|
- |
|
dann_frazier
|
systemimager-server
|
si_mkbootserver in systemimager-server 3.6.3 allows local users to overwrite arbitrary files via a symlink attack on a (1) /tmp/*.inetd.conf or (2) /tmp/pxe.conf.*.tmp temporary file.
|
CWE-59
Link Following
|
CVE-2008-5156
|
2012-10-31 12:06 |
2008-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269979
|
- |
|
apple
|
safari
|
The plug-in interface in WebKit in Apple Safari before 3.2 does not prevent plug-ins from accessing local URLs, which allows remote attackers to obtain sensitive information via vectors that "launch …
|
CWE-200
Information Exposure
|
CVE-2008-4216
|
2012-10-31 12:04 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
269980
|
- |
|
hp
|
service_manager
|
Unspecified vulnerability in HP Service Manager (HPSM) before 7.01.71 allows remote authenticated users to execute arbitrary code via unknown vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4415
|
2012-10-31 12:04 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|