262951
|
- |
|
databay
|
maxcms
|
PHP remote file inclusion vulnerability in includes/file_manager/special.php in MaxCMS 3.11.20b allows remote attackers to execute arbitrary PHP code via a URL in the fm_includes_special parameter.
|
CWE-94
Code Injection
|
CVE-2009-3426
|
2017-09-19 10:29 |
2009-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262952
|
- |
|
otbcode
|
easy_music_player
|
Stack-based buffer overflow in Easy Music Player 1.0.0.2 allows remote attackers to execute arbitrary code via a crafted .wav file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-3428
|
2017-09-19 10:29 |
2009-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262953
|
- |
|
pirateradio
|
destiny_media_player
|
Stack-based buffer overflow in Pirate Radio Destiny Media Player 1.61 allows remote attackers to execute arbitrary code via a long string in a .pls playlist file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-3429
|
2017-09-19 10:29 |
2009-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262954
|
- |
|
allomani
|
mobile
|
SQL injection vulnerability in login.php in Allomani Mobile 2.5 allows remote attackers to execute arbitrary SQL commands via the username parameter in a login action.
|
CWE-89
SQL Injection
|
CVE-2009-3430
|
2017-09-19 10:29 |
2009-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262955
|
- |
|
adobe
|
acrobat acrobat_reader
|
Stack consumption vulnerability in Adobe Reader and Acrobat 9.1.3, 9.1.2, 9.1.1, and earlier 9.x versions; 8.1.6 and earlier 8.x versions; and possibly 7.1.4 and earlier 7.x versions allows remote at…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-3431
|
2017-09-19 10:29 |
2009-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262956
|
- |
|
rick_estrada
|
com_mytube
|
SQL injection vulnerability in the MyRemote Video Gallery (com_mytube) component 1.0 Beta for Joomla! allows remote attackers to execute arbitrary SQL commands via the user_id parameter in a videos a…
|
CWE-89
SQL Injection
|
CVE-2009-3446
|
2017-09-19 10:29 |
2009-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262957
|
- |
|
collectorz
|
mp3_collector
|
MP3 Collector 2.3 allows remote attackers to cause a denial of service (application crash) via a long URL in a .m3u playlist file.
|
NVD-CWE-noinfo
|
CVE-2009-3449
|
2017-09-19 10:29 |
2009-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262958
|
- |
|
adobe
|
acrobat
|
Unspecified vulnerability in Adobe Acrobat 9.x before 9.2 allows attackers to bypass intended file-extension restrictions via unknown vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-3461
|
2017-09-19 10:29 |
2009-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262959
|
- |
|
adobe
|
acrobat
|
Per: http://www.adobe.com/support/security/bulletins/apsb09-15.html
This update resolves an issue that could allow a malicious user to bypass file extension security controls. This issue is specif…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-3461
|
2017-09-19 10:29 |
2009-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262960
|
- |
|
adobe
|
acrobat
|
Per: http://www.adobe.com/support/security/bulletins/apsb09-15.html
Acrobat
Acrobat Standard and Pro users on Windows can find the appropriate update here:
http://www.adobe.com/support/downloa…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-3461
|
2017-09-19 10:29 |
2009-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|