260591
|
- |
|
cacert
|
cacert
|
Cross-site scripting (XSS) vulnerability in analyse.php in CAcert 20080921, and possibly other versions before 20080928, allows remote attackers to inject arbitrary web script or HTML via the CN (Com…
|
CWE-79
Cross-site Scripting
|
CVE-2008-7017
|
2017-08-17 10:29 |
2009-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260592
|
- |
|
nashtech
|
easy_php_calendar
|
Cross-site scripting (XSS) vulnerability in NashTech Easy PHP Calendar 6.3.25 allows remote attackers to inject arbitrary web script or HTML via the Details field (descr parameter) in an Add New Even…
|
CWE-79
Cross-site Scripting
|
CVE-2008-7018
|
2017-08-17 10:29 |
2009-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260593
|
- |
|
mcafee
|
safeboot_device_encryption
|
McAfee SafeBoot Device Encryption 4 build 4750 and earlier stores pre-boot authentication passwords in the BIOS Keyboard buffer and does not clear this buffer after use, which allows local users to o…
|
CWE-310
Cryptographic Issues
|
CVE-2008-7020
|
2017-08-17 10:29 |
2009-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260594
|
- |
|
galore
|
com_simpleshop
|
SQL injection vulnerability in the Simple Shop Galore (com_simpleshop) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the section parameter in a section action to…
|
CWE-89
SQL Injection
|
CVE-2008-7033
|
2017-08-17 10:29 |
2009-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260595
|
- |
|
tigran_abrahamyan
|
phpecho_cms
|
PHP remote file inclusion vulnerability in kernel/smarty/Smarty.class.php in PHPEcho CMS 2.0 rc3 allows remote attackers to execute arbitrary PHP code via a URL in unspecified vectors that modify the…
|
CWE-94
Code Injection
|
CVE-2008-7034
|
2017-08-17 10:29 |
2009-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260596
|
- |
|
phpraider simple_machines
|
phpraider
|
Cross-site scripting (XSS) vulnerability in an unspecified component in Simple Machines phpRaider 1.0.7 allows remote attackers to inject arbitrary web script or HTML via the resistance field. NOTE:…
|
CWE-79
Cross-site Scripting
|
CVE-2008-7035
|
2017-08-17 10:29 |
2009-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260597
|
- |
|
e-xoops bcoos
|
e-xoops devtracker bcoos
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in DevTracker module 3.0 for bcoos 1.1.11 and earlier, and DevTracker module 0.20 for E-XooPS 1.0.8 and earlier, allow remote attacker…
|
CWE-79
Cross-site Scripting
|
CVE-2008-7036
|
2017-08-17 10:29 |
2009-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260598
|
- |
|
itn
|
itn_news_gadget
|
The Sidebar gadget in ITN News Gadget (aka ITN Hub Gadget) 1.06 for Windows Vista, and possibly other versions before 1.23, allows remote web servers or man-in-the-middle attackers to execute arbitra…
|
CWE-20
Improper Input Validation
|
CVE-2008-7037
|
2017-08-17 10:29 |
2009-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260599
|
- |
|
gelatocms
|
gelatocms
|
Cross-site scripting (XSS) vulnerability in admin/comments.php in Gelato CMS 0.95 allows remote attackers to inject arbitrary web script or HTML via the content parameter in a comment. NOTE: some of…
|
CWE-79
Cross-site Scripting
|
CVE-2008-7039
|
2017-08-17 10:29 |
2009-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260600
|
- |
|
yellowswordfish
|
simple_forum
|
SQL injection vulnerability in ahah/sf-profile.php in the Yellow Swordfish Simple Forum module for Wordpress allows remote attackers to execute arbitrary SQL commands via the u parameter. NOTE: this…
|
CWE-89
SQL Injection
|
CVE-2008-7040
|
2017-08-17 10:29 |
2009-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|