266551
|
- |
|
podcast_generator
|
podcast_generator
|
Cross-site scripting (XSS) vulnerability in set_permissions.php in Podcast Generator 0.96.2 allows remote attackers to inject arbitrary web script or HTML via the scriptlang parameter. NOTE: the pro…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1212
|
2017-08-8 10:29 |
2008-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266552
|
- |
|
numara
|
footprints
|
Cross-site scripting (XSS) vulnerability in Numara FootPrints for Linux 8.1 allows remote attackers to inject arbitrary web script or HTML via the Title form field when setting an appointment. NOTE:…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1213
|
2017-08-8 10:29 |
2008-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266553
|
- |
|
numara
|
footprints
|
MRcgi/MRProcessIncomingForms.pl in Numara FootPrints 8.1 on Linux allows remote attackers to execute arbitrary code via shell metacharacters in the PROJECTNUM parameter. NOTE: the provenance of this…
|
CWE-94
Code Injection
|
CVE-2008-1214
|
2017-08-8 10:29 |
2008-03-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266554
|
- |
|
freebsd netbsd openbsd
|
freebsd netbsd openbsd
|
Stack-based buffer overflow in the command_Expand_Interpret function in command.c in ppp (aka user-ppp), as distributed in FreeBSD 6.3 and 7.0, OpenBSD 4.1 and 4.2, and the net/userppp package for Ne…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-1215
|
2017-08-8 10:29 |
2008-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266555
|
- |
|
phpnuke
|
4nchat
|
SQL injection vulnerability in the 4nChat 0.91 module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the roomid parameter in an index action to modules.php. NOTE: the pro…
|
CWE-89
SQL Injection
|
CVE-2008-1220
|
2017-08-8 10:29 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266556
|
- |
|
dokeos
|
open_source_learning_and_knowledge_management_tool
|
Cross-site scripting (XSS) vulnerability in Dokeos 1.8.4 before SP3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2008-1222
|
2017-08-8 10:29 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266557
|
- |
|
dokeos
|
open_source_learning_and_knowledge_management_tool
|
Unspecified vulnerability in Dokeos 1.8.4 before SP3 allows attackers to execute arbitrary code via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2008-1223
|
2017-08-8 10:29 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266558
|
- |
|
bosdev
|
bosclassifieds_classified_ads
|
Cross-site scripting (XSS) vulnerability in account.php in BosClassifieds Classified Ads System 3.0 allows remote attackers to inject arbitrary web script or HTML via the returnTo parameter. NOTE: t…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1224
|
2017-08-8 10:29 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266559
|
- |
|
webct
|
webct
|
Multiple cross-site scripting (XSS) vulnerabilities in WebCT Campus Edition 4.1.5.8, when "Don't wrap text" is enabled, allow remote authenticated users to inject arbitrary web script or HTML via a (…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1225
|
2017-08-8 10:29 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266560
|
- |
|
zimbra
|
collaboration_suite
|
Multiple cross-site scripting (XSS) vulnerabilities in Zimbra Collaboration Suite (ZCS) 4.0.3, 4.5.6, and possibly other versions before 4.5.10 allow remote attackers to inject arbitrary web script o…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1226
|
2017-08-8 10:29 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|