257491
|
- |
|
typo3
|
pmk_rssnewsexport_extension
|
SQL injection vulnerability in the pmk_rssnewsexport extension for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2008-6595
|
2017-08-17 10:29 |
2009-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257492
|
- |
|
sangoma
|
wanpipe
|
Multiple race conditions in WANPIPE before 3.3.6 have unknown impact and attack vectors related to "bri restart logic."
|
CWE-362
Race Condition
|
CVE-2008-6598
|
2017-08-17 10:29 |
2009-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257493
|
- |
|
jath_pala
|
cookiecheck
|
cookiecheck.php in CookieCheck 1.0 stores tmp/cc_sessions under the web root with insufficient access control, which allows remote attackers to obtain session data via a direct request related to the…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-6599
|
2017-08-17 10:29 |
2009-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257494
|
- |
|
epona
|
epona
|
Unspecified vulnerability in Epona 1.5rc3 allows remote attackers to obtain the real IP address of users via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2008-6601
|
2017-08-17 10:29 |
2009-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257495
|
- |
|
stadtaus
|
download_center_lite
|
Unspecified vulnerability in Download Center Lite before 2.1 has unknown impact and attack vectors related to "A minor security fix."
|
NVD-CWE-noinfo
|
CVE-2008-6602
|
2017-08-17 10:29 |
2009-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257496
|
- |
|
moinmo
|
moinmoin
|
MoinMoin 1.6.2 and 1.7 does not properly enforce ACL checks when acl_hierarchic is set to True, which might allow remote attackers to bypass intended access restrictions, a different vulnerability th…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-6603
|
2017-08-17 10:29 |
2009-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257497
|
- |
|
ott
|
phpcksec
|
Cross-site scripting (XSS) vulnerability in phpcksec.php in Stefan Ott phpcksec 0.2 allows remote attackers to inject arbitrary web script or HTML via the path parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6609
|
2017-08-17 10:29 |
2009-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257498
|
- |
|
ott
|
phpcksec
|
Absolute path traversal vulnerability in phpcksec.php in Stefan Ott phpcksec 0.2.0 allows remote attackers to list arbitrary directories and read arbitrary files via a full pathname in the file param…
|
CWE-22
Path Traversal
|
CVE-2008-6610
|
2017-08-17 10:29 |
2009-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257499
|
- |
|
zen-cart
|
zen_cart
|
SQL injection vulnerability in index.php in Zen Software Zen Cart 2008 allows remote attackers to execute arbitrary SQL commands via the keyword parameter in the advanced_search_result page. NOTE: t…
|
CWE-89
SQL Injection
|
CVE-2008-6615
|
2017-08-17 10:29 |
2009-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257500
|
- |
|
zen-cart
|
zen_cart
|
Cross-site scripting (XSS) vulnerability in index.php in Zen Software Zen Cart 2008 allows remote attackers to inject arbitrary web script or HTML via the keyword parameter in the advanced_search_res…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6616
|
2017-08-17 10:29 |
2009-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|