258181
|
- |
|
prozilla
|
reviews
|
Prozilla Reviews 1.0 allows remote attackers to delete arbitrary users via a modified UserID parameter in a direct request to siteadmin/DeleteUser.php.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-1783
|
2017-09-29 10:30 |
2008-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258182
|
- |
|
prozilla
|
topsites
|
Prozilla Topsites 1.0 allows remote attackers to perform administrative actions via a direct request to (1) addu.php, (2) editu.php, and (3) uidx.php in siteadmin/.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-1784
|
2017-09-29 10:30 |
2008-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258183
|
- |
|
prozilla
|
top_100
|
delete.php in Prozilla Top 100 1.2 allows remote authenticated users to delete statistics and accounts of arbitrary users via a modified s parameter.
|
CWE-20
Improper Input Validation
|
CVE-2008-1785
|
2017-09-29 10:30 |
2008-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258184
|
- |
|
prozilla
|
forum
|
SQL injection vulnerability in forum.php in Prozilla Forum allows remote attackers to execute arbitrary SQL commands via the forum parameter.
|
CWE-89
SQL Injection
|
CVE-2008-1789
|
2017-09-29 10:30 |
2008-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258185
|
- |
|
iscripts
|
socialware
|
Unrestricted file upload vulnerability in iScripts SocialWare allows remote authenticated administrators to upload arbitrary files via a crafted logo file in the "Manage Settings" functionality. NOT…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-1790
|
2017-09-29 10:30 |
2008-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258186
|
- |
|
mygamingladder
|
mygamingladder
|
SQL injection vulnerability in ladder.php in My Gaming Ladder 7.5 and earlier allows remote attackers to execute arbitrary SQL commands via the ladderid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-1791
|
2017-09-29 10:30 |
2008-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258187
|
- |
|
dragoon
|
dragoon
|
Directory traversal vulnerability in forum/kietu/libs/calendrier.php in Dragoon 0.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the cal[lng] parameter.
|
CWE-22
Path Traversal
|
CVE-2008-1798
|
2017-09-29 10:30 |
2008-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258188
|
- |
|
sabros.us
|
sabros.us
|
Directory traversal vulnerability in thumbnails.php in sabros.us 1.75 allows remote attackers to read arbitrary files via a .. (dot dot) in the img parameter.
|
CWE-22
Path Traversal
|
CVE-2008-1799
|
2017-09-29 10:30 |
2008-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258189
|
- |
|
rdesktop
|
rdesktop
|
Integer underflow in the iso_recv_msg function (iso.c) in rdesktop 1.5.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Remote Desktop Protocol…
|
CWE-189
Numeric Errors
|
CVE-2008-1801
|
2017-09-29 10:30 |
2008-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258190
|
- |
|
rdesktop
|
rdesktop
|
Buffer overflow in the process_redirect_pdu (rdp.c) function in rdesktop 1.5.0 allows remote attackers to execute arbitrary code via a Remote Desktop Protocol (RDP) redirect request with modified len…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1802
|
2017-09-29 10:30 |
2008-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|