258371
|
- |
|
68_classifieds
|
68_classifieds
|
Multiple cross-site scripting (XSS) vulnerabilities in 68 Classifieds 4.1 allow remote attackers to inject arbitrary web script or HTML via the (1) cat parameter to category.php, view parameter to (2…
|
CWE-79
Cross-site Scripting
|
CVE-2009-2780
|
2017-08-17 10:30 |
2009-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258372
|
- |
|
classifiedphpscript
|
php_open_classifieds_script
|
Multiple cross-site scripting (XSS) vulnerabilities in PHP Open Classifieds Script allow remote attackers to inject arbitrary web script or HTML via the (1) page parameter to buy.php and the id param…
|
CWE-79
Cross-site Scripting
|
CVE-2009-2785
|
2017-08-17 10:30 |
2009-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258373
|
- |
|
permis
|
com_groups
|
SQL injection vulnerability in the Permis (com_groups) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a list action to index.php. NOTE: t…
|
CWE-89
SQL Injection
|
CVE-2009-2789
|
2017-08-17 10:30 |
2009-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258374
|
- |
|
softbiz
|
dating_script
|
SQL injection vulnerability in cat_products.php in SoftBiz Dating Script allows remote attackers to execute arbitrary SQL commands via the cid parameter. NOTE: this might overlap CVE-2006-3271.4.
|
CWE-89
SQL Injection
|
CVE-2009-2790
|
2017-08-17 10:30 |
2009-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258375
|
- |
|
apple
|
iphone_os
|
The Exchange Support component in Apple iPhone OS before 3.1, and iPhone OS before 3.1.1 for iPod touch, does not properly implement the "Maximum inactivity time lock" functionality, which allows loc…
|
CWE-362
Race Condition
|
CVE-2009-2794
|
2017-08-17 10:30 |
2009-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258376
|
- |
|
apple
|
iphone_os
|
The UIKit component in Apple iPhone OS 3.0, and iPhone OS 3.0.1 for iPod touch, allows physically proximate attackers to discover a password by watching a user undo deletions of characters in the pas…
|
CWE-200
Information Exposure
|
CVE-2009-2796
|
2017-08-17 10:30 |
2009-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258377
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Buffer overflow in Alias Manager in Apple Mac OS X 10.4.11 and 10.5.8 allows attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted alias file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-2800
|
2017-08-17 10:30 |
2009-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258378
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
CarbonCore in Apple Mac OS X 10.4.11 and 10.5.8 allows attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a file with a crafted resource fo…
|
CWE-399
Resource Management Errors
|
CVE-2009-2803
|
2017-08-17 10:30 |
2009-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258379
|
- |
|
apple
|
mac_os_x mac_os_x_server safari
|
Integer overflow in ColorSync in Apple Mac OS X 10.4.11 and 10.5.8, and Safari before 4.0.4 on Windows, allows remote attackers to execute arbitrary code or cause a denial of service (application cra…
|
CWE-189
Numeric Errors
|
CVE-2009-2804
|
2017-08-17 10:30 |
2009-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258380
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Integer overflow in CoreGraphics in Apple Mac OS X 10.4.11 and 10.5.8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted JBIG2 stream in …
|
CWE-189
Numeric Errors
|
CVE-2009-2805
|
2017-08-17 10:30 |
2009-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|