261511
|
- |
|
blogator_script
|
blogator_script
|
Cross-site scripting (XSS) vulnerability in bs_auth.php in Blogator-script 0.95 and 1.01 allows remote attackers to inject arbitrary web script or HTML via the msg parameter. NOTE: the provenance of…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1892
|
2017-08-8 10:30 |
2008-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261512
|
- |
|
w2b
|
online_banking
|
PHP remote file inclusion vulnerability in index.php in W2B Online Banking allows remote attackers to execute arbitrary PHP code via a URL in the ilang parameter.
|
CWE-94
Code Injection
|
CVE-2008-1893
|
2017-08-8 10:30 |
2008-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261513
|
- |
|
businessobjects
|
infoview
|
Cross-site scripting (XSS) vulnerability in desktoplaunch/InfoView/logon/logon.object in BusinessObjects InfoView XI R2 SP1, SP2, and SP3 Java version before FixPack 3.5 allows remote attackers to in…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1894
|
2017-08-8 10:30 |
2008-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261514
|
- |
|
debian
|
aptlinex
|
aptlinex before 0.91 allows local users to overwrite arbitrary files via a symlink attack on the gambas-apt.lock temporary file.
|
CWE-59
Link Following
|
CVE-2008-1901
|
2017-08-8 10:30 |
2008-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261515
|
- |
|
debian
|
aptlinex
|
The GUI for aptlinex before 0.91 does not sufficiently warn the user of potentially dangerous actions, which allows remote attackers to remove or modify packages via an apt:// URL.
|
NVD-CWE-Other
|
CVE-2008-1902
|
2017-08-8 10:30 |
2008-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261516
|
- |
|
nero
|
mediahome nero
|
NMMediaServer.exe in Nero MediaHome 3.3.3.0 and earlier, as used in Nero 8.3.2.1 and earlier, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via…
|
CWE-20
Improper Input Validation
|
CVE-2008-1905
|
2017-08-8 10:30 |
2008-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261517
|
- |
|
drupal
|
ubercart_module
|
Multiple cross-site scripting (XSS) vulnerabilities in the Ubercart 5.x before 5.x-1.0-rc1 module for Drupal allow remote attackers to inject arbitrary web script or HTML via text fields intended for…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1916
|
2017-08-8 10:30 |
2008-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261518
|
- |
|
amfphp
|
amfphp
|
Multiple cross-site scripting (XSS) vulnerabilities in AMFPHP 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) class parameter to (a) methodTable.php, (b) code.php, and (…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1917
|
2017-08-8 10:30 |
2008-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261519
|
- |
|
sarg
|
squid_analysis_report_generator
|
Multiple stack-based buffer overflows in Sarg might allow attackers to execute arbitrary code via unknown vectors, probably a crafted Squid log file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1922
|
2017-08-8 10:30 |
2008-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261520
|
- |
|
asterisk
|
asterisk_appliance_developer_kit asterisk_business_edition asterisknow open_source s800i
|
The IAX2 channel driver (chan_iax2) in Asterisk 1.2 before revision 72630 and 1.4 before revision 65679, when configured to allow unauthenticated calls, sends "early audio" to an unverified source IP…
|
CWE-16
Configuration
|
CVE-2008-1923
|
2017-08-8 10:30 |
2008-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|