266961
|
- |
|
sun
|
opensolaris solaris
|
The name service cache daemon (nscd) in Sun Solaris 10 and OpenSolaris snv_50 through snv_104 does not properly check permissions, which allows local users to gain privileges and obtain sensitive inf…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-5699
|
2009-01-6 15:02 |
2008-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266962
|
- |
|
fujitsu-siemens
|
webtransactions
|
Multiple cross-site scripting (XSS) vulnerabilities in Fujitsu-Siemens WebTransactions 7.0, 7.1, and possibly other versions allow remote attackers to inject arbitrary web script or HTML via vectors …
|
CWE-79
Cross-site Scripting
|
CVE-2008-5842
|
2009-01-6 14:00 |
2009-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266963
|
- |
|
ibm
|
aix
|
enq in bos.rte.printers in IBM AIX 6.1.0 through 6.1.2, when a print queue is defined in /etc/qconfig, allows local users to delete arbitrary files via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-5385
|
2008-12-17 15:40 |
2008-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266964
|
- |
|
ibm
|
aix
|
Buffer overflow in ndp in IBM AIX 6.1.0 through 6.1.2, when the netcd daemon is running, allows local users to gain privileges via unspecified vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5386
|
2008-12-17 15:40 |
2008-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266965
|
- |
|
magnolia
|
ce
|
ActivationHandler in Magnolia CE 3.5.x before 3.5.4 does not check permissions during importing, which allows remote attackers to have an unknown impact via activation of a new item, possibly involvi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-0701
|
2008-12-17 15:24 |
2008-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266966
|
- |
|
rsyslog
|
rsyslog
|
imudp in rsyslog 4.x before 4.1.2, 3.21 before 3.21.9 beta, and 3.20 before 3.20.2 generates a message even when it is sent by an unauthorized sender, which allows remote attackers to cause a denial …
|
NVD-CWE-Other
|
CVE-2008-5618
|
2008-12-17 14:00 |
2008-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266967
|
- |
|
pvpgn
|
pvpgn
|
pvpgn-support-installer in pvpgn 1.8.1 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/pvpgn-support-1.0.tar.gz temporary file.
|
CWE-59
Link Following
|
CVE-2008-5370
|
2008-12-16 14:00 |
2008-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266968
|
- |
|
netwin
|
smsgate
|
The SSL web administration service in NetWin SmsGate 1.1n and earlier allows remote attackers to cause a denial of service (hang) via (1) a large integer in the Content-Length HTTP header; (2) an inv…
|
CWE-399
Resource Management Errors
|
CVE-2008-5421
|
2008-12-12 14:00 |
2008-12-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266969
|
- |
|
netbsd
|
netbsd netbsd_current
|
The ipsec4_get_ulp function in the kernel in NetBSD 2.0 through 3.1 and NetBSD-current before 20071028, when the fast_ipsec subsystem is enabled, allows remote attackers to bypass the IPsec policy by…
|
NVD-CWE-Other
|
CVE-2008-1335
|
2008-12-10 15:34 |
2008-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266970
|
- |
|
marco_d\'itri
|
ppp-udeb
|
ip-up in ppp-udeb 2.4.4rel on Debian GNU/Linux allows local users to overwrite arbitrary files via a symlink attack on the /tmp/resolv.conf.tmp temporary file.
|
CWE-59
Link Following
|
CVE-2008-5367
|
2008-12-9 14:00 |
2008-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|