266461
|
- |
|
freenas
|
freenas
|
Cross-site scripting (XSS) vulnerability in FreeNAS before 0.69.2 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2009-2739
|
2009-09-2 14:24 |
2009-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266462
|
- |
|
igno_saitz
|
libmikmod
|
libmikmod 3.1.11 through 3.2.0, as used by MikMod and possibly other products, allows user-assisted attackers to cause a denial of service (application crash) by loading an XM file.
|
NVD-CWE-noinfo
|
CVE-2009-0179
|
2009-09-2 14:20 |
2009-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266463
|
- |
|
zope
|
zope
|
PythonScripts in Zope 2 2.11.2 and earlier, as used in Conga and other products, allows remote authenticated users to cause a denial of service (resource consumption or application halt) via certain …
|
CWE-399
Resource Management Errors
|
CVE-2008-5102
|
2009-09-1 14:21 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266464
|
- |
|
zope
|
zope
|
http://www.zope.org/Products/Zope/Hotfix-2008-08-12/README.txt
Affected Versions
* Zope 2.7.0 to Zope 2.11.2
---
http://openwall.com/lists/oss-security/2008/11/12/2
Affected Conga versio…
|
CWE-399
Resource Management Errors
|
CVE-2008-5102
|
2009-09-1 14:21 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266465
|
- |
|
punbb
|
punbb
|
Cross-site scripting (XSS) vulnerability in PunBB 1.2.16 and earlier allows remote attackers to inject arbitrary web script or HTML via the get_host parameter to moderate.php.
|
CWE-79
Cross-site Scripting
|
CVE-2008-1485
|
2009-09-1 14:14 |
2008-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266466
|
- |
|
mozilla
|
firefox
|
Mozilla Firefox 3.0.13 and earlier, 3.5, 3.6 a1 pre, and 3.7 a1 pre does not properly block data: URIs in Location headers in HTTP responses, which allows remote attackers to conduct cross-site scrip…
|
CWE-79
Cross-site Scripting
|
CVE-2009-3012
|
2009-09-1 13:00 |
2009-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266467
|
- |
|
sun
|
opensolaris solaris
|
The sockfs module in the kernel in Sun Solaris 10 and OpenSolaris snv_41 through snv_122, when Network Cache Accelerator (NCA) logging is enabled, allows remote attackers to cause a denial of service…
|
CWE-399
Resource Management Errors
|
CVE-2009-3000
|
2009-08-31 13:00 |
2009-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266468
|
- |
|
avant_force
|
avant_browser
|
Avant Browser 11.7 Builds 35 and 36 allows remote attackers to spoof the address bar, via window.open with a relative URI, to show an arbitrary URL on the web site visited by the victim, as demonstra…
|
NVD-CWE-Other
|
CVE-2009-3004
|
2009-08-31 13:00 |
2009-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266469
|
- |
|
mrcgiguy
|
hot_links_sql-php
|
SQL injection vulnerability in Mr. CGI Guy Hot Links SQL-PHP 3 and earlier allows remote attackers to execute arbitrary SQL commands via the news.php parameter.
|
CWE-89
SQL Injection
|
CVE-2008-7120
|
2009-08-29 00:30 |
2009-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266470
|
- |
|
mrcgiguy
|
hot_links_sql-php
|
Cross-site scripting (XSS) vulnerability in Mr. CGI Guy Hot Links SQL-PHP 3 and earlier allows remote attackers to inject arbitrary web script or HTML via the search bar.
|
CWE-79
Cross-site Scripting
|
CVE-2008-7121
|
2009-08-29 00:30 |
2009-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|