263231
|
- |
|
novell
|
edirectory
|
Cross-site scripting (XSS) vulnerability in the HTTP Protocol Stack (HTTPSTK) in Novell eDirectory before 8.8 SP3 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2008-5093
|
2017-08-8 10:33 |
2008-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263232
|
- |
|
typo3
|
file_list_extension
|
Unspecified vulnerability in the TYPO3 File List (file_list) extension 0.2.1 and earlier allows remote attackers to obtain sensitive information via unknown attack vectors.
|
NVD-CWE-noinfo CWE-200
Information Exposure
|
CVE-2008-5096
|
2017-08-8 10:33 |
2008-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263233
|
- |
|
sun
|
logical_domain_manager
|
Sun Logical Domain Manager (aka LDoms Manager or ldm) 1.0 through 1.0.3 displays the value of the OpenBoot PROM (OBP) security-password variable in cleartext, which allows local users to bypass the S…
|
CWE-200
Information Exposure
|
CVE-2008-5099
|
2017-08-8 10:33 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263234
|
- |
|
sun
|
logical_domain_manager
|
http://sunsolve.sun.com/search/document.do?assetkey=1-26-243606-1
Note: The x86 Platform is not affected by this issue, as Logical Domains (LDoms) software is supported only on the Sun SPARC Platf…
|
CWE-200
Information Exposure
|
CVE-2008-5099
|
2017-08-8 10:33 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263235
|
- |
|
optipng
|
optipng
|
Buffer overflow in the BMP reader in OptiPNG 0.6 and 0.6.1 allows user-assisted attackers to execute arbitrary code via a crafted BMP image, related to an "array overflow."
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5101
|
2017-08-8 10:33 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263236
|
- |
|
dcgrendel
|
vmbuilder
|
The (1) python-vm-builder and (2) ubuntu-vm-builder implementations in VMBuilder 0.9 in Ubuntu 8.10 omit the -e option when invoking chpasswd with a root:! argument, which configures the root account…
|
CWE-255
Credentials Management
|
CVE-2008-5103
|
2017-08-8 10:33 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263237
|
- |
|
dcgrendel
|
vmbuilder
|
Ubuntu 6.06 LTS, 7.10, 8.04 LTS, and 8.10, when installed as a virtual machine by (1) python-vm-builder or (2) ubuntu-vm-builder in VMBuilder 0.9 in Ubuntu 8.10, have ! (exclamation point) as the def…
|
CWE-255
Credentials Management
|
CVE-2008-5104
|
2017-08-8 10:33 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263238
|
- |
|
sun
|
opensolaris solaris
|
Unspecified vulnerability in the socket function in Sun Solaris 10 and OpenSolaris snv_57 through snv_91, when InfiniBand hardware is not installed, allows local users to cause a denial of service (p…
|
NVD-CWE-noinfo
|
CVE-2008-5111
|
2017-08-8 10:33 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263239
|
- |
|
wordpress
|
wordpress
|
WordPress 2.6.3 relies on the REQUEST superglobal array in certain dangerous situations, which makes it easier for remote attackers to conduct delayed and persistent cross-site request forgery (CSRF)…
|
CWE-352
Origin Validation Error
|
CVE-2008-5113
|
2017-08-8 10:33 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263240
|
- |
|
sun
|
java_system_identity_manager
|
Multiple cross-site scripting (XSS) vulnerabilities in Sun Java System Identity Manager 6.0 through 6.0 SP4, 7.0, and 7.1 allow remote attackers to inject arbitrary web script or HTML via unspecified…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5114
|
2017-08-8 10:33 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|