256371
|
- |
|
yapbb
|
yapbb
|
SQL injection vulnerability in forumhop.php in YapBB 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the forumID parameter in a next action.
|
CWE-89
SQL Injection
|
CVE-2009-0768
|
2017-09-29 10:34 |
2009-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256372
|
- |
|
mozilla
|
firefox seamonkey thunderbird
|
The JavaScript engine in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey 1.1.15 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary co…
|
CWE-399
Resource Management Errors
|
CVE-2009-0773
|
2017-09-29 10:34 |
2009-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256373
|
- |
|
mozilla
|
firefox seamonkey thunderbird
|
Double free vulnerability in Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 allows remote attackers to execute arbitrary code via "cloned XUL DOM elements whic…
|
CWE-399
Resource Management Errors
|
CVE-2009-0775
|
2017-09-29 10:34 |
2009-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256374
|
- |
|
mozilla
|
firefox seamonkey thunderbird
|
Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and SeaMonkey before 1.1.15 decode invisible characters when they are displayed in the location bar, which causes an incorrect address to be…
|
CWE-20
Improper Input Validation
|
CVE-2009-0777
|
2017-09-29 10:34 |
2009-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256375
|
- |
|
tim_hockin
|
acpid
|
ACPI Event Daemon (acpid) before 1.0.10 allows remote attackers to cause a denial of service (CPU consumption and connectivity loss) by opening a large number of UNIX sockets without closing them, wh…
|
CWE-399
Resource Management Errors
|
CVE-2009-0798
|
2017-09-29 10:34 |
2009-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256376
|
- |
|
zfeeder
|
zfeeder
|
zFeeder 1.6 allows remote attackers to gain administrative access via a direct request to admin.php.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-0807
|
2017-09-29 10:34 |
2009-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256377
|
- |
|
xatrix
|
xguestbook
|
SQL injection vulnerability in login.php in xGuestbook 2.0 allows remote attackers to execute arbitrary SQL commands via the user parameter.
|
CWE-89
SQL Injection
|
CVE-2009-0810
|
2017-09-29 10:34 |
2009-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256378
|
- |
|
imera
|
teamlinks
|
Insecure method vulnerability in the ImeraIEPlugin ActiveX control (ImeraIEPlugin.dll 1.0.2.54) in Imera TeamLinks Client allows remote attackers to force the download and execution of arbitrary URLs…
|
CWE-20
Improper Input Validation
|
CVE-2009-0813
|
2017-09-29 10:34 |
2009-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256379
|
- |
|
freedville
|
bloghelper
|
BlogHelper stores common_db.inc under the web root with insufficient access control, which allows remote attackers to download the database file containing user credentials via a direct request.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-0826
|
2017-09-29 10:34 |
2009-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256380
|
- |
|
freedville
|
pollhelper
|
PollHelper stores poll.inc under the web root with insufficient access control, which allows remote attackers to download the database file containing user credentials via a direct request.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-0827
|
2017-09-29 10:34 |
2009-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|