257191
|
- |
|
nullsoft
|
winamp
|
Cross-zone scripting vulnerability in the NowPlaying functionality in NullSoft Winamp before 5.541 allows remote attackers to conduct cross-site scripting (XSS) attacks via an MP3 file with JavaScrip…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3567
|
2017-09-29 10:31 |
2008-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257192
|
- |
|
africabegone
|
africa_be_gone
|
PHP remote file inclusion vulnerability in index.php in Africa Be Gone (ABG) 1.0a allows remote attackers to execute arbitrary PHP code via a URL in the abg_path parameter.
|
CWE-94
Code Injection
|
CVE-2008-3570
|
2017-09-29 10:31 |
2008-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257193
|
- |
|
xerox
|
phaser
|
The Xerox Phaser 8400 allows remote attackers to cause a denial of service (reboot) via an empty UDP packet to port 1900.
|
CWE-20
Improper Input Validation
|
CVE-2008-3571
|
2017-09-29 10:31 |
2008-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257194
|
- |
|
hydrairc
|
hydrairc
|
HydraIRC 0.3.164 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a long irc:// URI.
|
CWE-20
Improper Input Validation
|
CVE-2008-3578
|
2017-09-29 10:31 |
2008-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257195
|
- |
|
qsoft
|
k-links
|
Multiple SQL injection vulnerabilities in Qsoft K-Links allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to visit.php, or the PATH_INFO to the default URI under (2) r…
|
CWE-89
SQL Injection
|
CVE-2008-3580
|
2017-09-29 10:31 |
2008-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257196
|
- |
|
qsoft
|
k-links
|
Cross-site scripting (XSS) vulnerability in index.php in Qsoft K-Links allows remote attackers to inject arbitrary web script or HTML via the login_message parameter in a login action.
|
CWE-79
Cross-site Scripting
|
CVE-2008-3581
|
2017-09-29 10:31 |
2008-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257197
|
- |
|
intellitamper
|
intellitamper
|
Buffer overflow in the HTML parser in IntelliTamper 2.07 allows remote attackers to execute arbitrary code via a long URL in the SRC attribute of an IMG element. NOTE: this might be related to CVE-2…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-3583
|
2017-09-29 10:31 |
2008-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257198
|
- |
|
pozscripts
|
greencart_php_shopping_cart
|
Multiple SQL injection vulnerabilities in PozScripts GreenCart PHP Shopping Cart allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) product_desc.php and (2) store_in…
|
CWE-89
SQL Injection
|
CVE-2008-3585
|
2017-09-29 10:31 |
2008-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257199
|
- |
|
joomla
|
com_ezstore
|
SQL injection vulnerability in the EZ Store (com_ezstore) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action to index.php.
|
CWE-89
SQL Injection
|
CVE-2008-3586
|
2017-09-29 10:31 |
2008-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257200
|
- |
|
phsblog
|
phsblog
|
Multiple SQL injection vulnerabilities in phsBlog 0.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) eid parameter to comments.php, (2) cid parameter to index.php, and the (3)…
|
CWE-89
SQL Injection
|
CVE-2008-3588
|
2017-09-29 10:31 |
2008-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|