258111
|
- |
|
phpyabs
|
phpyabs
|
PHP remote file inclusion vulnerability in moduli/libri/index.php in phpyabs 0.1.2 allows remote attackers to execute arbitrary PHP code via a URL in the Azione parameter.
|
CWE-94
Code Injection
|
CVE-2009-0639
|
2017-09-29 10:33 |
2009-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258112
|
- |
|
freebsd
|
freebsd
|
sys_term.c in telnetd in FreeBSD 7.0-RELEASE and other 7.x versions deletes dangerous environment variables with a method that was valid only in older FreeBSD distributions, which might allow remote …
|
CWE-16 CWE-264
Configuration Permissions, Privileges, and Access Controls
|
CVE-2009-0641
|
2017-09-29 10:33 |
2009-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258113
|
- |
|
ruby-lang
|
ruby
|
ext/openssl/ossl_ocsp.c in Ruby 1.8 and 1.9 does not properly check the return value from the OCSP_basic_verify function, which might allow remote attackers to successfully present an invalid X.509 c…
|
CWE-287
Improper Authentication
|
CVE-2009-0642
|
2017-09-29 10:33 |
2009-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258114
|
- |
|
dminnich
|
simple_php_news
|
Static code injection vulnerability in post.php in Simple PHP News 1.0 final allows remote attackers to inject arbitrary PHP code into news.txt via the post parameter, and then execute the code via a…
|
CWE-94
Code Injection
|
CVE-2009-0643
|
2017-09-29 10:33 |
2009-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258115
|
- |
|
jaws
|
jaws
|
Directory traversal vulnerability in index.php in Jaws 0.8.8 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the (1) language, (2) Introduction_complete, and (3) use_l…
|
CWE-22
Path Traversal
|
CVE-2009-0645
|
2017-09-29 10:33 |
2009-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258116
|
- |
|
jaws
|
jaws
|
Reference links indicate file inclusion and script or code execution in addition to information exposure.
|
CWE-22
Path Traversal
|
CVE-2009-0645
|
2017-09-29 10:33 |
2009-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258117
|
- |
|
tptest
|
tptest
|
Stack-based buffer overflow in the GetStatsFromLine function in TPTEST 3.1.7 and earlier, and possibly 5.02, allows remote attackers to cause a denial of service (application crash) and possibly exec…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-0650
|
2017-09-29 10:33 |
2009-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258118
|
- |
|
cmu
|
dbd\
|
Heap-based buffer overflow in the DBD::Pg (aka DBD-Pg or libdbd-pg-perl) module 1.49 for Perl might allow context-dependent attackers to execute arbitrary code via unspecified input to an application…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-0663
|
2017-09-29 10:33 |
2009-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258119
|
- |
|
netgear
|
ssl312
|
cgi-bin/welcome/VPN_only in the web interface in Netgear SSL312 allows remote attackers to cause a denial of service (device crash) via a crafted query string, as demonstrated using directory travers…
|
CWE-22
Path Traversal
|
CVE-2009-0680
|
2017-09-29 10:33 |
2009-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258120
|
- |
|
midnightbsd mirbsd netbsd openbsd
|
midnightbsd miros netbsd openbsd
|
The pf_test_rule function in OpenBSD Packet Filter (PF), as used in OpenBSD 4.2 through 4.5, NetBSD 5.0 before RC3, MirOS 10 and earlier, and MidnightBSD 0.3-current allows remote attackers to cause …
|
CWE-399
Resource Management Errors
|
CVE-2009-0687
|
2017-09-29 10:33 |
2009-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|