271531
|
- |
|
bea
|
aqualogic_service_bus
|
BEA AquaLogic Service Bus 2.0, 2.1, and 2.5 does not properly reject malformed request messages to a proxy service, which might allow remote attackers to bypass authorization policies and route reque…
|
NVD-CWE-Other
|
CVE-2007-0432
|
2008-11-13 15:31 |
2007-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271532
|
- |
|
bea
|
aqualogic_service_bus
|
Unspecified vulnerability in BEA AquaLogic Enterprise Security 2.0 through 2.0 SP2, 2.1 through 2.1 SP1, and 2.2, when using Active Directory LDAP for authentication, allows remote authenticated user…
|
NVD-CWE-Other
|
CVE-2007-0433
|
2008-11-13 15:31 |
2007-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271533
|
- |
|
bea
|
aqualogic_enterprise_security
|
BEA AquaLogic Enterprise Security 2.0 through 2.0 SP2, 2.1 through 2.1 SP1, and 2.2 does not properly set the severity level of audit events when the system load is high, which might make it easier f…
|
NVD-CWE-Other
|
CVE-2007-0434
|
2008-11-13 15:31 |
2007-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271534
|
- |
|
magnatune.com
|
album_browser
|
The magnatune.com album browser in Amarok allows attackers to cause a denial of service (application crash) via unspecified vectors.
|
NVD-CWE-Other
|
CVE-2006-6980
|
2008-11-13 15:29 |
2007-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271535
|
- |
|
minibb
|
minibb
|
Multiple PHP remote file inclusion vulnerabilities in miniBB 2.0.2 and earlier, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the pathToFiles par…
|
NVD-CWE-Other
|
CVE-2006-5674
|
2008-11-13 15:25 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271536
|
- |
|
elkagroup
|
image_gallery
|
SQL injection vulnerability in view.php in ElkaGroup Image Gallery 1.0 allows remote attackers to execute arbitrary SQL commands via the cid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5037
|
2008-11-13 14:00 |
2008-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271537
|
- |
|
mozilla
|
firefox
|
Unspecified vulnerability in Mozilla Firefox allows remote attackers to execute arbitrary code via unspecified vectors involving Javascript errors. NOTE: this might be the same issue as CVE-2007-217…
|
NVD-CWE-noinfo
|
CVE-2007-2176
|
2008-11-13 14:00 |
2007-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271538
|
- |
|
suse xfsdump
|
suse_linux suse_linux_openexchange_server suse_linux_school_server suse_linux_standard_server suse_open_enterprise_server xfsdump opensuse
|
xfs_fsr in xfsdump creates a .fsr temporary directory with insecure permissions, which allows local users to read or overwrite arbitrary files on xfs filesystems.
|
CWE-362
Race Condition
|
CVE-2007-2654
|
2008-11-13 14:00 |
2007-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271539
|
- |
|
debian
|
feta
|
The to-upgrade plugin in feta 1.4.16 allows local users to overwrite arbitrary files via a symlink on the (1) /tmp/feta.install.$USER and (2) /tmp/feta.avail.$USER temporary files.
|
CWE-59
Link Following
|
CVE-2008-4440
|
2008-11-11 16:12 |
2008-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271540
|
- |
|
cybozu
|
collaborex cybozu_ag cybozu_pocket garoon_1 mailwise
|
Directory traversal vulnerability in Cybozu Collaborex, AG before 1.2(1.5), AG Pocket before 5.2(0.8), Mailwise before 3.0(0.3), and Garoon 1 before 1.5(4.1) allows remote authenticated users to read…
|
NVD-CWE-Other
|
CVE-2006-4491
|
2008-11-11 15:28 |
2006-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|