256551
|
- |
|
microsoft
|
windows_xp
|
The Microsoft Wireless Zero Configuration system (WZCS) stores WEP keys and pair-wise Master Keys (PMK) of the WPA pre-shared key in plaintext in memory of the explorer process, which allows attacker…
|
NVD-CWE-Other
|
CVE-2005-4696
|
2017-10-5 10:29 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256552
|
- |
|
proftpd_project
|
proftpd
|
ProFTPD 1.2.7 through 1.2.9rc2 does not properly translate newline characters when transferring files in ASCII mode, which allows remote attackers to execute arbitrary code via a buffer overflow usin…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2003-0831
|
2017-10-5 10:29 |
2003-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256553
|
- |
|
savant
|
savant_web_server
|
Buffer overflow in Savant Web Server 3.1 and earlier allows remote attackers to execute arbitrary code via a long HTTP GET request.
|
NVD-CWE-Other
|
CVE-2002-1120
|
2017-10-5 10:29 |
2002-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256554
|
- |
|
randomsoftware
|
icarus
|
Stack-based buffer overflow in Icarus 2.0 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a crafted Portable Game Notation (.pgn) file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-1071
|
2017-10-4 10:29 |
2009-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256555
|
- |
|
microtik
|
routeros
|
SNMPd in MikroTik RouterOS 3.2 and earlier allows remote attackers to cause a denial of service (daemon crash) via a crafted SNMP SET request.
|
NVD-CWE-Other
|
CVE-2008-0680
|
2017-10-4 10:29 |
2008-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256556
|
- |
|
yaws
|
yaws
|
Yaws before 1.80 allows remote attackers to cause a denial of service (memory consumption and crash) via a request with a large number of headers.
|
CWE-399
Resource Management Errors
|
CVE-2009-0751
|
2017-09-29 10:34 |
2009-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256557
|
- |
|
mldonkey
|
mldonkey
|
Absolute path traversal vulnerability in MLDonkey 2.8.4 through 2.9.7 allows remote attackers to read arbitrary files via a leading "//" (double slash) in the filename.
|
CWE-22
Path Traversal
|
CVE-2009-0753
|
2017-09-29 10:34 |
2009-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256558
|
- |
|
team5
|
team_board
|
Team Board 1.x and 2.x stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing credentials via a direct reque…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-0760
|
2017-09-29 10:34 |
2009-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256559
|
- |
|
team5.team_board
|
1.0 1.0.1 1.0.2 1.0.3 1.0.4 1.0.5
|
Cross-site scripting (XSS) vulnerability in online.asp in Team Board 1.x allows remote attackers to inject arbitrary web script or HTML via the lookname parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2009-0761
|
2017-09-29 10:34 |
2009-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256560
|
- |
|
bookelves
|
kipper
|
Cross-site scripting (XSS) vulnerability in default.php in Kipper 2.01 allows remote attackers to inject arbitrary web script or HTML via the charm parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2009-0763
|
2017-09-29 10:34 |
2009-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|