260641
|
- |
|
citrix
|
web_interface
|
The disconnection feature in Citrix Web Interface 5.0 and 5.0.1 for Java Application Servers does not properly terminate a user's web interface session, which allows attackers with access to the same…
|
NVD-CWE-Other
|
CVE-2008-6830
|
2017-08-17 10:29 |
2009-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260642
|
- |
|
atlassian
|
jira
|
Multiple cross-site scripting (XSS) vulnerabilities in Atlassian JIRA Enterprise Edition 3.13 allow remote attackers to inject arbitrary web script or HTML via the (1) fullname (Full Name) parameter …
|
CWE-79
Cross-site Scripting
|
CVE-2008-6831
|
2017-08-17 10:29 |
2009-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260643
|
- |
|
atlassian
|
jira
|
Cross-site request forgery (CSRF) vulnerability in Atlassian JIRA Enterprise Edition 3.13 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors. NOTE: the p…
|
CWE-352
Origin Validation Error
|
CVE-2008-6832
|
2017-08-17 10:29 |
2009-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260644
|
- |
|
zoph
|
zoph
|
SQL injection vulnerability in Zoph 0.7.2.1 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, a different issue than CVE-2008-3258. NOTE: the provenance of this info…
|
CWE-89
SQL Injection
|
CVE-2008-6837
|
2017-08-17 10:29 |
2009-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260645
|
- |
|
zoph
|
zoph
|
Cross-site scripting (XSS) vulnerability in search.php in Zoph 0.7.2.1 allows remote attackers to inject arbitrary web script or HTML via the _off parameter. NOTE: the provenance of this information…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6838
|
2017-08-17 10:29 |
2009-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260646
|
- |
|
tgs-cms
|
tgs_content_management
|
Multiple cross-site scripting (XSS) vulnerabilities in TGS Content Management 0.3.2r2 allow remote attackers to inject arbitrary web script or HTML via the (1) msg and (2) goodmsg parameters to (a) l…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6839
|
2017-08-17 10:29 |
2009-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260647
|
- |
|
christof_bruyland
|
v-webmail
|
Multiple PHP remote file inclusion vulnerabilities in V-webmail 1.6.4 allow remote attackers to execute arbitrary PHP code via a URL in the (1) CONFIG[pear_dir] parameter to (a) Mail/RFC822.php, (b) …
|
CWE-94
Code Injection
|
CVE-2008-6840
|
2017-08-17 10:29 |
2009-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260648
|
- |
|
preproject
|
pre_asp_job_board
|
Cross-site scripting (XSS) vulnerability in Employee/emp_login.asp in Pre ASP Job Board allows remote attackers to inject arbitrary web script or HTML via the msg parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6847
|
2017-08-17 10:29 |
2009-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260649
|
- |
|
php-fusion
|
php-fusion
|
Cross-site scripting (XSS) vulnerability in messages.php in PHP-Fusion 6.01.17 and 7.00.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6850
|
2017-08-17 10:29 |
2009-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260650
|
- |
|
editeurscripts
|
esbaseadmin
|
Cross-site scripting (XSS) vulnerability in default/login.php in EditeurScripts EsBaseAdmin 2.1 allows remote attackers to inject arbitrary web script or HTML via the msg parameter. NOTE: the EsCont…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6868
|
2017-08-17 10:29 |
2009-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|