257361
|
- |
|
rick_estrada
|
com_mytube
|
SQL injection vulnerability in the MyRemote Video Gallery (com_mytube) component 1.0 Beta for Joomla! allows remote attackers to execute arbitrary SQL commands via the user_id parameter in a videos a…
|
CWE-89
SQL Injection
|
CVE-2009-3446
|
2017-09-19 10:29 |
2009-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257362
|
- |
|
collectorz
|
mp3_collector
|
MP3 Collector 2.3 allows remote attackers to cause a denial of service (application crash) via a long URL in a .m3u playlist file.
|
NVD-CWE-noinfo
|
CVE-2009-3449
|
2017-09-19 10:29 |
2009-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257363
|
- |
|
adobe
|
acrobat
|
Unspecified vulnerability in Adobe Acrobat 9.x before 9.2 allows attackers to bypass intended file-extension restrictions via unknown vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-3461
|
2017-09-19 10:29 |
2009-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257364
|
- |
|
adobe
|
acrobat
|
Per: http://www.adobe.com/support/security/bulletins/apsb09-15.html
This update resolves an issue that could allow a malicious user to bypass file extension security controls. This issue is specif…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-3461
|
2017-09-19 10:29 |
2009-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257365
|
- |
|
adobe
|
acrobat
|
Per: http://www.adobe.com/support/security/bulletins/apsb09-15.html
Acrobat
Acrobat Standard and Pro users on Windows can find the appropriate update here:
http://www.adobe.com/support/downloa…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-3461
|
2017-09-19 10:29 |
2009-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257366
|
- |
|
adobe
|
shockwave_player
|
Array index error in Adobe Shockwave Player before 11.5.2.602 allows remote attackers to execute arbitrary code via crafted Shockwave content on a web site. NOTE: some of these details are obtained …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-3463
|
2017-09-19 10:29 |
2009-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257367
|
- |
|
adobe
|
shockwave_player
|
Adobe Shockwave Player before 11.5.2.602 allows remote attackers to execute arbitrary code via crafted Shockwave content on a web site, related to an "invalid pointer vulnerability," a different issu…
|
CWE-94
Code Injection
|
CVE-2009-3464
|
2017-09-19 10:29 |
2009-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257368
|
- |
|
adobe
|
shockwave_player
|
Adobe Shockwave Player before 11.5.2.602 allows remote attackers to execute arbitrary code via crafted Shockwave content on a web site, related to an "invalid pointer vulnerability," a different issu…
|
CWE-94
Code Injection
|
CVE-2009-3465
|
2017-09-19 10:29 |
2009-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257369
|
- |
|
adobe
|
shockwave_player
|
Adobe Shockwave Player before 11.5.2.602 allows remote attackers to execute arbitrary code via a crafted web page that triggers memory corruption, related to an "invalid string length vulnerability."…
|
CWE-399
Resource Management Errors
|
CVE-2009-3466
|
2017-09-19 10:29 |
2009-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257370
|
- |
|
gnu
|
wget
|
GNU Wget before 1.12 does not properly handle a '\0' character in a domain name in the Common Name field of an X.509 certificate, which allows man-in-the-middle remote attackers to spoof arbitrary SS…
|
CWE-310
Cryptographic Issues
|
CVE-2009-3490
|
2017-09-19 10:29 |
2009-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|