261941
|
- |
|
planetluc
|
signme
|
Cross-site scripting (XSS) vulnerability in signme.inc.php in Planetluc SignMe 1.5 before 1.55 allows remote attackers to inject arbitrary web script or HTML via the hash parameter. NOTE: some of th…
|
CWE-79
Cross-site Scripting
|
CVE-2008-4891
|
2017-08-8 10:32 |
2008-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261942
|
- |
|
planetluc
|
mygallery
|
Cross-site scripting (XSS) vulnerability in gallery.inc.php in Planetluc MyGallery 1.7.2 and earlier, and possibly other versions before 1.8.1, allows remote attackers to inject arbitrary web script …
|
CWE-79
Cross-site Scripting
|
CVE-2008-4892
|
2017-08-8 10:32 |
2008-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261943
|
- |
|
planetluc
|
mygallery
|
Patch Information - http://planetluc.com/en/scripts_mygallery.php
|
CWE-79
Cross-site Scripting
|
CVE-2008-4892
|
2017-08-8 10:32 |
2008-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261944
|
- |
|
tribiq
|
tribiq_cms
|
Cross-site scripting (XSS) vulnerability in templates/mytribiqsite/tribal-GPL-1066/includes/header.inc.php in Tribiq CMS 5.0.10a, when register_globals is enabled, allows remote attackers to inject a…
|
CWE-79
Cross-site Scripting
|
CVE-2008-4893
|
2017-08-8 10:32 |
2008-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261945
|
- |
|
logz
|
logz
|
Cross-site scripting (XSS) vulnerability in fichiers/add_url.php in Logz CMS 1.3.1 allows remote attackers to inject arbitrary web script or HTML via the art parameter. NOTE: the provenance of this …
|
CWE-79
Cross-site Scripting
|
CVE-2008-4896
|
2017-08-8 10:32 |
2008-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261946
|
- |
|
planetluc
|
rateme
|
Cross-site scripting (XSS) vulnerability in planetluc RateMe 1.3.3 allows remote attackers to inject arbitrary web script or HTML via the rate parameter in a submit rate action.
|
CWE-79
Cross-site Scripting
|
CVE-2008-4898
|
2017-08-8 10:32 |
2008-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261947
|
- |
|
planetluc
|
rateme
|
Cross-site request forgery (CSRF) vulnerability in Planetluc RateMe 1.3.3 allows remote attackers to perform unauthorized actions as other users via unspecified vectors.
|
CWE-352
Origin Validation Error
|
CVE-2008-4899
|
2017-08-8 10:32 |
2008-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261948
|
- |
|
typosphere
|
typo
|
Cross-site scripting (XSS) vulnerability in the leave comment (feedback) feature in Typo 5.1.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) comment[author] (…
|
CWE-79
Cross-site Scripting
|
CVE-2008-4903
|
2017-08-8 10:32 |
2008-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261949
|
- |
|
typosphere
|
typo
|
SQL injection vulnerability in the "Manage pages" feature (admin/pages) in Typo 5.1.3 and earlier allows remote authenticated users with "blog publisher" rights to execute arbitrary SQL commands via …
|
CWE-89
SQL Injection
|
CVE-2008-4904
|
2017-08-8 10:32 |
2008-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261950
|
- |
|
dovecot
|
dovecot
|
The message parsing feature in Dovecot 1.1.4 and 1.1.5, when using the FETCH ENVELOPE command in the IMAP client, allows remote attackers to cause a denial of service (persistent crash) via an email …
|
CWE-20
Improper Input Validation
|
CVE-2008-4907
|
2017-08-8 10:32 |
2008-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|