266711
|
- |
|
unisys
|
business_information_server
|
Stack-based buffer overflow in mnet.exe in Unisys Business Information Server (BIS) 10 and 10.1 on Windows allows remote attackers to execute arbitrary code via a crafted TCP packet.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-1628
|
2009-06-29 13:00 |
2009-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266712
|
- |
|
paessler
|
prtg_traffic_grapher prtg_traffic_grapher6.0.5.416
|
Cross-site scripting (XSS) vulnerability in the Monitor_Bandwidth function in PRTG Traffic Grapher 6.2.2.977 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified…
|
CWE-79
Cross-site Scripting
|
CVE-2009-1849
|
2009-06-29 13:00 |
2009-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266713
|
- |
|
microsoft
|
windows_2003_server windows_vista
|
win32k.sys in Microsoft Windows Server 2003 and Vista allows local users to cause a denial of service (system crash) via vectors related to CreateWindow, TranslateMessage, and DispatchMessage, possib…
|
CWE-362
Race Condition
|
CVE-2008-6819
|
2009-06-29 13:00 |
2009-06-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266714
|
- |
|
peter_wolanin
|
openid
|
Cross-site scripting (XSS) vulnerability in OpenID 5.x before 5.x-1.2, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6835
|
2009-06-29 13:00 |
2009-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266715
|
- |
|
peter_wolanin
|
openid
|
Cross-site request forgery (CSRF) vulnerability in OpenID 5.x before 5x.-1.2, a module for Drupal, allows remote attackers to hijack the authentication of unspecified victims to delete OpenID identit…
|
CWE-352
Origin Validation Error
|
CVE-2008-6836
|
2009-06-29 13:00 |
2009-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266716
|
- |
|
foxitsoftware
|
jpeg2000_jbig2_decoder_add-on foxit_reader
|
The Foxit JPEG2000/JBIG2 Decoder add-on before 2.0.2009.616 for Foxit Reader 3.0 before Build 1817 does not properly handle a fatal error during decoding of a JPEG2000 (aka JPX) header, which allows …
|
CWE-399
Resource Management Errors
|
CVE-2009-0691
|
2009-06-26 13:00 |
2009-06-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266717
|
- |
|
serendipitynz
|
serene_bach
|
SerendipityNZ (aka SimpleBoxes) Serene Bach 2.20R and earlier, and 3.00 beta023 and earlier 3.x versions, uses a predictable session id, which makes it easier for remote attackers to hijack sessions …
|
NVD-CWE-Other
|
CVE-2009-2165
|
2009-06-26 13:00 |
2009-06-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266718
|
- |
|
urdland
|
urd
|
Multiple cross-site scripting (XSS) vulnerabilities in URD before 0.6.2 allow remote attackers to inject arbitrary web script or HTML via vectors related to the fatal_error page and unspecified other…
|
CWE-79
Cross-site Scripting
|
CVE-2009-2215
|
2009-06-26 13:00 |
2009-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266719
|
- |
|
wowbb
|
wowbb_web_forum
|
Multiple SQL injection vulnerabilities in WowBB Forum 1.61 allow remote attackers to execute arbitrary SQL commands via the (1) sort_by or (2) page parameters to view_user.php, or the (3) forum_id pa…
|
NVD-CWE-Other
|
CVE-2004-2181
|
2009-06-25 13:25 |
2004-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266720
|
- |
|
openssl
|
openssl
|
OpenSSL, probably 0.9.6, does not verify the Basic Constraints for an intermediate CA-signed certificate, which allows remote attackers to spoof the certificates of trusted sites via a man-in-the-mid…
|
CWE-287
Improper Authentication
|
CVE-2009-0653
|
2009-06-25 13:00 |
2009-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|