260771
|
- |
|
owl
|
intranet_knowledgebase
|
SQL injection vulnerability in register.php in Steve Bourgeois and Chris Vincent Owl Intranet Knowledgebase 0.95 and earlier allows remote attackers to execute arbitrary SQL commands via the username…
|
CWE-89
SQL Injection
|
CVE-2008-3359
|
2017-08-8 10:31 |
2008-07-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260772
|
- |
|
emc
|
centera_universal_access
|
SQL injection vulnerability in the CUA Login Module in EMC Centera Universal Access (CUA) 4.0_4735.p4 allows remote attackers to execute arbitrary SQL commands via the user (user name) field.
|
CWE-89
SQL Injection
|
CVE-2008-3370
|
2017-08-8 10:31 |
2008-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260773
|
- |
|
snarky
|
visualpic
|
Cross-site scripting (XSS) vulnerability in Snark VisualPic 0.3.1 allows remote attackers to inject arbitrary web script or HTML via the pic parameter to the default URI. NOTE: the provenance of thi…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3379
|
2017-08-8 10:31 |
2008-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260774
|
- |
|
moinmoin
|
moinmoin
|
Multiple cross-site scripting (XSS) vulnerabilities in macro/AdvancedSearch.py in moin (and MoinMoin) 1.6.3 and 1.7.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vec…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3381
|
2017-08-8 10:31 |
2008-07-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260775
|
- |
|
webwizguide
|
web_wiz_forum
|
Multiple cross-site scripting (XSS) vulnerabilities in Web Wiz Forum 9.5 allow remote attackers to inject arbitrary web script or HTML via the mode parameter to (1) admin_group_details.asp and (2) ad…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3391
|
2017-08-8 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260776
|
- |
|
webwizguide
|
web_wiz_forum
|
Cross-site request forgery (CSRF) vulnerability in Web Wiz Forum 9.5 allows remote attackers to log out a user via a link or IMG tag to log_off_user.asp.
|
CWE-352
Origin Validation Error
|
CVE-2008-3392
|
2017-08-8 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260777
|
- |
|
infomining
|
bookmine
|
SQL injection vulnerability in events.cfm in BookMine allows remote attackers to execute arbitrary SQL commands via the events_id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3393
|
2017-08-8 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260778
|
- |
|
infomining
|
bookmine
|
Multiple cross-site scripting (XSS) vulnerabilities in search.cfm in BookMine allow remote attackers to inject arbitrary web script or HTML via the (1) gallery and (2) search_string parameters.
|
CWE-79
Cross-site Scripting
|
CVE-2008-3394
|
2017-08-8 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260779
|
- |
|
calacode
|
atmail
|
Calacode @Mail 5.41 on Linux uses weak world-readable permissions for (1) webmail/libs/Atmail/Config.php and (2) webmail/webadmin/.htpasswd, which allows local users to obtain sensitive information b…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-3395
|
2017-08-8 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260780
|
- |
|
ibm
|
websphere_portal
|
IBM WebSphere Portal 5.1 through 6.1.0.0 allows remote attackers to bypass authentication and obtain administrative access via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-3423
|
2017-08-8 10:31 |
2008-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|