258561
|
- |
|
google
|
chrome
|
Google Chrome 0.2.149.27 allows user-assisted remote attackers to cause a denial of service (browser crash) via an IMG tag with a long src attribute, which triggers the crash when the victim performs…
|
NVD-CWE-Other
|
CVE-2008-6997
|
2017-09-29 10:33 |
2009-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258562
|
- |
|
google
|
chrome
|
Stack-based buffer overflow in chrome/common/gfx/url_elider.cc in Google Chrome 0.2.149.27 and other versions before 0.2.149.29 might allow user-assisted remote attackers to execute arbitrary code vi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-6998
|
2017-09-29 10:33 |
2009-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258563
|
- |
|
creative_mind
|
creator_cms
|
Unrestricted file upload vulnerability in the file manager in Creative Mind Creator CMS 5.0 allows remote attackers to execute arbitrary code via unknown vectors.
|
NVD-CWE-Other
|
CVE-2008-7001
|
2017-09-29 10:33 |
2009-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258564
|
- |
|
the-rat-cms
|
the-rat-cms
|
Multiple SQL injection vulnerabilities in login.php in The Rat CMS Alpha 2 allow remote attackers to execute arbitrary SQL commands via the (1) user_id and (2) password parameter.
|
CWE-89
SQL Injection
|
CVE-2008-7003
|
2017-09-29 10:33 |
2009-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258565
|
- |
|
phpversion
|
php_vx_guestbook
|
Free PHP VX Guestbook 1.06 allows remote attackers to bypass authentication and download a backup of the database via a direct request to admin/backupdb.php.
|
CWE-287
Improper Authentication
|
CVE-2008-7006
|
2017-09-29 10:33 |
2009-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258566
|
- |
|
phpversion
|
php_vx_guestbook
|
Free PHP VX Guestbook 1.06 allows remote attackers to bypass authentication and gain administrative access by setting the (1) admin_name and (2) admin_pass cookie values to 1.
|
CWE-287
Improper Authentication
|
CVE-2008-7007
|
2017-09-29 10:33 |
2009-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258567
|
- |
|
skalinks
|
exchange_script
|
Skalfa Software SkaLinks Exchange Script 1.5 allows remote attackers to add new administrators and gain privileges via a direct request to admin/register.php.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-7010
|
2017-09-29 10:33 |
2009-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258568
|
- |
|
fhttpd
|
fhttpd
|
fhttpd 0.4.2 allows remote attackers to cause a denial of service (crash) via an Authorization HTTP header with an invalid character after the Basic value.
|
NVD-CWE-Other
|
CVE-2008-7014
|
2017-09-29 10:33 |
2009-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258569
|
- |
|
esqlanelapse
|
esqlanelapse
|
Esqlanelapse 2.6.1 and 2.6.2 allows remote attackers to bypass authentication and gain privileges via modified (1) enombre and (2) euri cookies.
|
CWE-287
Improper Authentication
|
CVE-2008-7019
|
2017-09-29 10:33 |
2009-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258570
|
- |
|
availscript
|
jobs_portal_script
|
Unrestricted file upload vulnerability in editlogo.php in AvailScript Jobs Portal Script allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension a…
|
NVD-CWE-Other
|
CVE-2008-7021
|
2017-09-29 10:33 |
2009-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|