268171
|
- |
|
kkeim
|
kmita_gallery
|
Multiple cross-site scripting (XSS) vulnerabilities in Kmita Gallery allow remote attackers to inject arbitrary web script or HTML via the (1) begin parameter to index.php and the (2) searchtext para…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5068
|
2012-10-31 12:06 |
2008-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268172
|
- |
|
novell
|
edirectory
|
Heap-based buffer overflows in Novell eDirectory HTTP protocol stack (HTTPSTK) before 8.8 SP3 have unknown impact and attack vectors related to the (1) HTTP language header and (2) HTTP content-lengt…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5092
|
2012-10-31 12:06 |
2008-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268173
|
- |
|
novell
|
edirectory
|
Heap-based buffer overflow in the NDS Service in Novell eDirectory before 8.8 SP3 has unknown impact and attack vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5094
|
2012-10-31 12:06 |
2008-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268174
|
- |
|
novell
|
identity_manager_roles_based_provisioning_module user_application
|
Cross-site scripting (XSS) vulnerability in the Novell User Application 3.0.1, 3.5.0, and 3.5.1; and Identity Manager Roles Based Provisioning Module 3.6.0 and 3.6.1 allows remote attackers to inject…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5095
|
2012-10-31 12:06 |
2008-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268175
|
- |
|
adobe
|
adobe_air
|
Unspecified vulnerability in Adobe AIR 1.1 and earlier allows context-dependent attackers to execute untrusted JavaScript in an AIR application via unknown attack vectors.
|
NVD-CWE-noinfo CWE-94
Code Injection
|
CVE-2008-5108
|
2012-10-31 12:06 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268176
|
- |
|
freebsd
|
freebsd-sendpr
|
sendbug in freebsd-sendpr 3.113+5.3 on Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink attack on a /tmp/pr.##### temporary file.
|
CWE-59
Link Following
|
CVE-2008-5142
|
2012-10-31 12:06 |
2008-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268177
|
- |
|
dann_frazier
|
systemimager-server
|
si_mkbootserver in systemimager-server 3.6.3 allows local users to overwrite arbitrary files via a symlink attack on a (1) /tmp/*.inetd.conf or (2) /tmp/pxe.conf.*.tmp temporary file.
|
CWE-59
Link Following
|
CVE-2008-5156
|
2012-10-31 12:06 |
2008-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268178
|
- |
|
apple
|
safari
|
The plug-in interface in WebKit in Apple Safari before 3.2 does not prevent plug-ins from accessing local URLs, which allows remote attackers to obtain sensitive information via vectors that "launch …
|
CWE-200
Information Exposure
|
CVE-2008-4216
|
2012-10-31 12:04 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268179
|
- |
|
hp
|
service_manager
|
Unspecified vulnerability in HP Service Manager (HPSM) before 7.01.71 allows remote authenticated users to execute arbitrary code via unknown vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4415
|
2012-10-31 12:04 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
268180
|
- |
|
apple
|
safari
|
Apple Safari before 3.2 does not properly prevent caching of form data for form fields that have autocomplete disabled, which allows local users to obtain sensitive information by reading the browser…
|
CWE-200
Information Exposure
|
CVE-2008-3644
|
2012-10-31 12:01 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|