263781
|
- |
|
screwturn
|
screwturn_wiki
|
Cross-site scripting (XSS) vulnerability in ScrewTurn Wiki 2.0.29 and 2.0.30 allows remote attackers to inject arbitrary web script or HTML via error messages in the "/admin.aspx - System Log" page.
|
CWE-79
Cross-site Scripting
|
CVE-2008-3483
|
2017-08-8 10:31 |
2008-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263782
|
- |
|
aspindir
|
pcshey_portal
|
SQL injection vulnerability in kategori.asp in Pcshey Portal allows remote attackers to execute arbitrary SQL commands via the kid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3495
|
2017-08-8 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263783
|
- |
|
ektron
|
cms4000.net
|
Unspecified vulnerability in "a page in the workarea folder" in Ektron CMS400.NET 7.00 through 7.04 and 7.50 through 7.52 has unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2008-3499
|
2017-08-8 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263784
|
- |
|
drupal
|
suggested_terms_module
|
Cross-site scripting (XSS) vulnerability in the Suggested Terms module 5.x before 5.x-1.2 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via crafted Taxonomy term…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3500
|
2017-08-8 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263785
|
- |
|
novell
|
groupwise
|
Cross-site scripting (XSS) vulnerability in the WebAccess simple interface in Novell Groupwise 7.0.x allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2008-3501
|
2017-08-8 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263786
|
- |
|
bestpractical
|
rt
|
Unspecified vulnerability in Best Practical Solutions RT 3.0.0 through 3.6.6 allows remote authenticated users to cause a denial of service (CPU or memory consumption) via unspecified vectors related…
|
NVD-CWE-noinfo
|
CVE-2008-3502
|
2017-08-8 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263787
|
- |
|
webgui
|
plain_black_webgui
|
RSSFromParent in Plain Black WebGUI before 7.5.13 does not restrict view access to Collaboration System (CS) RSS feeds, which allows remote attackers to obtain sensitive information (CS data).
|
CWE-287
Improper Authentication
|
CVE-2008-3503
|
2017-08-8 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263788
|
- |
|
mpfm
|
mask_php_file_manager
|
Unspecified vulnerability in mask PHP File Manager (mPFM) before 2.3 has unknown impact and remote attack vectors related to "manipulation of cookies."
|
CWE-287
Improper Authentication
|
CVE-2008-3504
|
2017-08-8 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263789
|
- |
|
crafty_syntax_live_help
|
crafty_syntax_live_help
|
Cross-site scripting (XSS) vulnerability in livehelp_js.php in Crafty Syntax Live Help (CSLH) 2.14.6 allows remote attackers to inject arbitrary web script or HTML via the department parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-3510
|
2017-08-8 10:31 |
2008-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263790
|
- |
|
softbiz
|
image_gallery
|
Multiple cross-site scripting (XSS) vulnerabilities in Softbiz Image Gallery (Photo Gallery) allow remote attackers to inject arbitrary web script or HTML via the (1) latest parameter to (a) index.ph…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3511
|
2017-08-8 10:31 |
2008-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|