260721
|
- |
|
scripteen
|
free_image_hosting_script
|
Multiple SQL injection vulnerabilities in Scripteen Free Image Hosting Script 1.2.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter to admin/lo…
|
CWE-89
SQL Injection
|
CVE-2008-3212
|
2017-08-8 10:31 |
2008-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260722
|
- |
|
thekelleys
|
dnsmasq
|
dnsmasq 2.25 allows remote attackers to cause a denial of service (daemon crash) by (1) renewing a nonexistent lease or (2) sending a DHCPREQUEST for an IP address that is not in the same network, re…
|
CWE-20
Improper Input Validation
|
CVE-2008-3214
|
2017-08-8 10:31 |
2008-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260723
|
- |
|
clam_anti-virus
|
clamav
|
libclamav/petite.c in ClamAV before 0.93.3 allows remote attackers to cause a denial of service via a malformed Petite file that triggers an out-of-bounds memory access. NOTE: this issue exists beca…
|
CWE-399
Resource Management Errors
|
CVE-2008-3215
|
2017-08-8 10:31 |
2008-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260724
|
- |
|
debian
|
projectl
|
The save function in br/prefmanager.d in projectl 1.001 creates a projectL.prf file in the current working directory, which allows local users to overwrite arbitrary files via a symlink attack.
|
CWE-59
Link Following
|
CVE-2008-3216
|
2017-08-8 10:31 |
2008-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260725
|
- |
|
powerdns
|
recursor
|
PowerDNS Recursor before 3.1.6 does not always use the strongest random number generator for source port selection, which makes it easier for remote attack vectors to conduct DNS cache poisoning. NO…
|
CWE-189
Numeric Errors
|
CVE-2008-3217
|
2017-08-8 10:31 |
2008-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260726
|
- |
|
phpbb
|
phpbb
|
Unspecified vulnerability in phpBB before 3.0.1 has unknown impact and attack vectors related to "urls gone through redirect() being used within login_box()."
|
NVD-CWE-noinfo
|
CVE-2008-3224
|
2017-08-8 10:31 |
2008-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260727
|
- |
|
joomla
|
joomla
|
Joomla! before 1.5.4 allows attackers to access administration functionality, which has unknown impact and attack vectors related to a missing "LDAP security fix."
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-3225
|
2017-08-8 10:31 |
2008-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260728
|
- |
|
joomla
|
joomla
|
The file caching implementation in Joomla! before 1.5.4 allows attackers to access cached pages via unknown attack vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-3226
|
2017-08-8 10:31 |
2008-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260729
|
- |
|
joomla
|
joomla
|
Unspecified vulnerability in Joomla! before 1.5.4 has unknown impact and attack vectors related to a "User Redirect Spam fix," possibly an open redirect vulnerability.
|
CWE-59
Link Following
|
CVE-2008-3227
|
2017-08-8 10:31 |
2008-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260730
|
- |
|
joomla
|
joomla
|
Joomla! before 1.5.4 does not configure .htaccess to apply certain security checks that "block common exploits" to SEF URLs, which has unknown impact and remote attack vectors.
|
CWE-16
Configuration
|
CVE-2008-3228
|
2017-08-8 10:31 |
2008-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|