257551
|
- |
|
sabros.us
|
sabros.us
|
Directory traversal vulnerability in thumbnails.php in sabros.us 1.75 allows remote attackers to read arbitrary files via a .. (dot dot) in the img parameter.
|
CWE-22
Path Traversal
|
CVE-2008-1799
|
2017-09-29 10:30 |
2008-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257552
|
- |
|
rdesktop
|
rdesktop
|
Integer underflow in the iso_recv_msg function (iso.c) in rdesktop 1.5.0 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a Remote Desktop Protocol…
|
CWE-189
Numeric Errors
|
CVE-2008-1801
|
2017-09-29 10:30 |
2008-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257553
|
- |
|
rdesktop
|
rdesktop
|
Buffer overflow in the process_redirect_pdu (rdp.c) function in rdesktop 1.5.0 allows remote attackers to execute arbitrary code via a Remote Desktop Protocol (RDP) redirect request with modified len…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1802
|
2017-09-29 10:30 |
2008-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257554
|
- |
|
rdesktop
|
rdesktop
|
Integer signedness error in the xrealloc function (rdesktop.c) in RDesktop 1.5.0 allows remote attackers to execute arbitrary code via unknown parameters that trigger a heap-based overflow. NOTE: th…
|
CWE-189
Numeric Errors
|
CVE-2008-1803
|
2017-09-29 10:30 |
2008-05-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257555
|
- |
|
bosdev
|
bosclassifieds_ads_systems
|
SQL injection vulnerability in BosClassifieds Classified Ads System 3.0 allows remote attackers to execute arbitrary SQL commands via the cat parameter to index.php.
|
CWE-89
SQL Injection
|
CVE-2008-1838
|
2017-09-29 10:30 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257556
|
- |
|
coronamatrix
|
phpaddressbook
|
SQL injection vulnerability in view.php in CoronaMatrix phpAddressBook 2.11 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-1847
|
2017-09-29 10:30 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257557
|
- |
|
joomlacode
|
joomlaexplorer
|
Cross-site scripting (XSS) vulnerability in the joomlaXplorer (com_joomlaxplorer) Mambo/Joomla! component 1.6.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the erro…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1848
|
2017-09-29 10:30 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257558
|
- |
|
joomlacode
|
joomlaexplorer
|
Directory traversal vulnerability in index.php in the joomlaXplorer (com_joomlaxplorer) Mambo/Joomla! component 1.6.2 and earlier allows remote attackers to list arbitrary directories via a .. (dot d…
|
CWE-22
Path Traversal
|
CVE-2008-1849
|
2017-09-29 10:30 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257559
|
- |
|
mcafee
|
cma
|
FrameworkService.exe in McAfee Common Management Agent (CMA) 3.6.0.574 Patch 3 and earlier, as used by ePolicy Orchestrator (ePO) and ProtectionPilot (PrP), allows remote attackers to corrupt memory …
|
CWE-399
Resource Management Errors
|
CVE-2008-1855
|
2017-09-29 10:30 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257560
|
- |
|
linpha
|
linpha
|
plugins/maps/db_handler.php in LinPHA 1.3.3 and earlier does not require authentication for a settings action that modifies the configuration file, which allows remote attackers to conduct directory …
|
CWE-22 CWE-20
Path Traversal Improper Input Validation
|
CVE-2008-1856
|
2017-09-29 10:30 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|