263111
|
- |
|
phpnuke
|
php-nuke
|
SQL injection vulnerability in main/tracking/userLog.php in Francisco Burzi PHP-Nuke 8.0 allows remote attackers to execute arbitrary SQL commands via the HTTP Referer header.
|
CWE-89
SQL Injection
|
CVE-2009-1842
|
2017-08-17 10:30 |
2009-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263112
|
- |
|
adobe
|
acrobat acrobat_reader
|
Integer overflow in Adobe Reader 7 and Acrobat 7 before 7.1.3, Adobe Reader 8 and Acrobat 8 before 8.1.6, and Adobe Reader 9 and Acrobat 9 before 9.1.2 allows attackers to cause a denial of service o…
|
CWE-189
Numeric Errors
|
CVE-2009-1856
|
2017-08-17 10:30 |
2009-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263113
|
- |
|
adobe
|
acrobat acrobat_reader
|
The JBIG2 filter in Adobe Reader 7 and Acrobat 7 before 7.1.3, Adobe Reader 8 and Acrobat 8 before 8.1.6, and Adobe Reader 9 and Acrobat 9 before 9.1.2 might allow remote attackers to execute arbitra…
|
CWE-399
Resource Management Errors
|
CVE-2009-1858
|
2017-08-17 10:30 |
2009-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263114
|
- |
|
apache
|
xerces-c\+\+
|
Stack consumption vulnerability in validators/DTD/DTDScanner.cpp in Apache Xerces C++ 2.7.0 and 2.8.0 allows context-dependent attackers to cause a denial of service (application crash) via vectors i…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-1885
|
2017-08-17 10:30 |
2009-08-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263115
|
- |
|
samba
|
samba
|
Multiple format string vulnerabilities in client/client.c in smbclient in Samba 3.2.0 through 3.2.12 might allow context-dependent attackers to execute arbitrary code via format string specifiers in …
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2009-1886
|
2017-08-17 10:30 |
2009-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263116
|
- |
|
isc
|
dhcp
|
dhcpd in ISC DHCP 3.0.4 and 3.1.1, when the dhcp-client-identifier and hardware ethernet configuration settings are both used, allows remote attackers to cause a denial of service (daemon crash) via …
|
CWE-16
Configuration
|
CVE-2009-1892
|
2017-08-17 10:30 |
2009-07-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263117
|
- |
|
ibm
|
websphere_application_server
|
The secure login page in the Administrative Console component in IBM WebSphere Application Server (WAS) 6.0.2 before 6.0.2.35 does not redirect to an https page upon receiving an http request, which …
|
CWE-200
Information Exposure
|
CVE-2009-1898
|
2017-08-17 10:30 |
2009-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263118
|
- |
|
ibm
|
websphere_application_server
|
Unspecified vulnerability in the Administrative Configservice API in the System Management/Repository component in IBM WebSphere Application Server (WAS) 6.0.2 before 6.0.2.35, 6.1 before 6.1.0.25, a…
|
NVD-CWE-noinfo
|
CVE-2009-1899
|
2017-08-17 10:30 |
2009-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263119
|
- |
|
ibm
|
websphere_application_server
|
The Configservice APIs in the Administrative Console component in IBM WebSphere Application Server (WAS) 6.0.2 before 6.0.2.35, 6.1 before 6.1.0.25, and 7.0 before 7.0.0.5, when tracing is enabled, a…
|
CWE-200
Information Exposure
|
CVE-2009-1900
|
2017-08-17 10:30 |
2009-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263120
|
- |
|
ibm
|
websphere_application_server
|
The Security component in IBM WebSphere Application Server (WAS) 6.0.2 before 6.0.2.35 permits "non-standard http methods," which has unknown impact and remote attack vectors.
|
NVD-CWE-noinfo
|
CVE-2009-1901
|
2017-08-17 10:30 |
2009-06-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|