260751
|
- |
|
f5
|
firepass_4100 firepass_ssl_vpn
|
Cross-site scripting (XSS) vulnerability in installControl.php3 in F5 FirePass 4100 SSL VPN 5.4.2-5.5.2 and 6.0-6.2 allows remote attackers to inject arbitrary web script or HTML via the query string…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2030
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260752
|
- |
|
vicftps
|
vicftps
|
VicFTPS 5.0 allows remote attackers to cause a denial of service (crash) via a crafted LIST command, which triggers a NULL pointer dereference. NOTE: the provenance of this information is unknown; t…
|
CWE-20
Improper Input Validation
|
CVE-2008-2031
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260753
|
- |
|
acritum
|
femitter_server
|
The FTP service in Acritum Femitter Server 1.03 allows remote attackers to cause a denial of service (crash) by sending multiple crafted RETR commands. NOTE: the provenance of this information is un…
|
CWE-20
Improper Input Validation
|
CVE-2008-2032
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260754
|
- |
|
wordpress
|
download_monitor_plugin
|
SQL injection vulnerability in wp-download_monitor/download.php in the Download Monitor 2.0.6 plugin for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter. NOT…
|
CWE-89
SQL Injection
|
CVE-2008-2034
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260755
|
- |
|
bluemoon xoops
|
backpack bmsurvey newbb_fileup news_fileup popnupblog xoops xoops_cube
|
Cross-site scripting (XSS) vulnerability in the Bluemoon, Inc. (1) BackPack 0.91 and earlier, (2) BmSurvey 0.84 and earlier, (3) newbb_fileup 1.83 and earlier, (4) News_embed (news_fileup) 1.44 and e…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2035
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260756
|
- |
|
editeurscripts
|
escontacts
|
Multiple cross-site scripting (XSS) vulnerabilities in EditeurScripts EsContacts 1.0 allow remote authenticated users to inject arbitrary web script or HTML via the msg parameter to (1) login.php, (2…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2037
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260757
|
- |
|
turnkey_solutions
|
sunshop_shopping_cart
|
Multiple SQL injection vulnerabilities in admin/adminindex.php in Turnkey Web Tools SunShop Shopping Cart 4.1.0 allow remote authenticated administrators to execute arbitrary SQL commands via the (1)…
|
CWE-89
SQL Injection
|
CVE-2008-2038
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260758
|
- |
|
peercast
|
peercast
|
Stack-based buffer overflow in the HTTP::getAuthUserPass function (core/common/http.cpp) in Peercast 0.1218 and gnome-peercast allows remote attackers to cause a denial of service (crash) and possibl…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-2040
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260759
|
- |
|
egroupware
|
egroupware
|
Multiple unspecified vulnerabilities in eGroupWare before 1.4.004 have unspecified attack vectors and "grave" impact when the web server has write access to a directory under the web document root.
|
NVD-CWE-noinfo CWE-94
Code Injection
|
CVE-2008-2041
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260760
|
- |
|
cpanel
|
cpanel
|
Multiple cross-site request forgery (CSRF) vulnerabilities in cPanel, possibly 11.18.3 and 11.19.3, allow remote attackers to (1) execute arbitrary code via the command1 parameter to frontend/x2/cron…
|
CWE-352
Origin Validation Error
|
CVE-2008-2043
|
2017-08-8 10:30 |
2008-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|