261301
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
The sso_util program in Single Sign-On in Apple Mac OS X before 10.5.3 places passwords on the command line, which allows local users to obtain sensitive information by listing the process.
|
CWE-200
Information Exposure
|
CVE-2008-1578
|
2017-08-8 10:30 |
2008-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261302
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Wiki Server in Apple Mac OS X 10.5 before 10.5.3 allows remote attackers to obtain sensitive information (user names) by reading the error message produced upon access to a nonexistent blog.
|
CWE-200
Information Exposure
|
CVE-2008-1579
|
2017-08-8 10:30 |
2008-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261303
|
- |
|
apple
|
safari
|
CFNetwork in Safari in Apple Mac OS X before 10.5.3 automatically sends an SSL client certificate in response to a web server's certificate request, which allows remote web sites to obtain sensitive …
|
CWE-200
Information Exposure
|
CVE-2008-1580
|
2017-08-8 10:30 |
2008-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261304
|
- |
|
apple
|
quicktime
|
Unspecified vulnerability in Apple QuickTime before 7.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted AAC-encoded file that triggers m…
|
CWE-399
Resource Management Errors
|
CVE-2008-1582
|
2017-08-8 10:30 |
2008-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261305
|
- |
|
apple
|
quicktime
|
Heap-based buffer overflow in Apple QuickTime before 7.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PICT image, a different vulnera…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1583
|
2017-08-8 10:30 |
2008-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261306
|
- |
|
gnb
|
designform
|
Cross-site scripting (XSS) vulnerability in GNB DesignForm before 3.9 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in the email form.
|
CWE-79
Cross-site Scripting
|
CVE-2008-1603
|
2017-08-8 10:30 |
2008-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261307
|
- |
|
perlmailer
|
perlmailer
|
Cross-site scripting (XSS) vulnerability in PerlMailer before 3.02 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2008-1604
|
2017-08-8 10:30 |
2008-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261308
|
- |
|
leadtools
|
multimedia_toolkit
|
The (1) ltmmCaptureCtrl Class, (2) ltmmConvertCtrl Class, and (3) ltmmPlayCtrl Class ActiveX controls (ltmm15.dll 15.1.0.17 and earlier) in LEADTOOLS Multimedia Toolkit 15 allow attackers to overwrit…
|
CWE-20
Improper Input Validation
|
CVE-2008-1605
|
2017-08-8 10:30 |
2008-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261309
|
- |
|
serby_arslanhan
|
bomba_haber
|
SQL injection vulnerability in haberoku.php in Serbay Arslanhan Bomba Haber 2.0 allows remote attackers to execute arbitrary SQL commands via the haber parameter.
|
CWE-89
SQL Injection
|
CVE-2008-1607
|
2017-08-8 10:30 |
2008-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261310
|
- |
|
sebastian_marsching
|
suphp
|
suPHP before 0.6.3 allows local users to gain privileges via (1) a race condition that involves multiple symlink changes to point a file owned by a different user, or (2) a symlink to the directory o…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-1614
|
2017-08-8 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|