262231
|
- |
|
hyperstop
|
web_host_directory
|
HyperStop Web Host Directory 1.2 allows remote attackers to bypass authentication and download a database backup via a direct request to admin/backup/db.
|
CWE-287
Improper Authentication
|
CVE-2008-7008
|
2017-08-17 10:29 |
2009-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262232
|
- |
|
accellion
|
secure_file_transfer_appliance
|
courier/1000@/api_error_email.html (aka "error reporting page") in Accellion File Transfer Appliance FTA_7_0_178, and possibly other versions before FTA_7_0_189, allows remote attackers to send spam …
|
NVD-CWE-noinfo
|
CVE-2008-7012
|
2017-08-17 10:29 |
2009-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262233
|
- |
|
luke_mewburn
|
tnftpd
|
tnftpd before 20080929 splits large command strings into multiple commands, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks via unknown vectors, probably involving …
|
CWE-352
Origin Validation Error
|
CVE-2008-7016
|
2017-08-17 10:29 |
2009-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262234
|
- |
|
cacert
|
cacert
|
Cross-site scripting (XSS) vulnerability in analyse.php in CAcert 20080921, and possibly other versions before 20080928, allows remote attackers to inject arbitrary web script or HTML via the CN (Com…
|
CWE-79
Cross-site Scripting
|
CVE-2008-7017
|
2017-08-17 10:29 |
2009-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262235
|
- |
|
nashtech
|
easy_php_calendar
|
Cross-site scripting (XSS) vulnerability in NashTech Easy PHP Calendar 6.3.25 allows remote attackers to inject arbitrary web script or HTML via the Details field (descr parameter) in an Add New Even…
|
CWE-79
Cross-site Scripting
|
CVE-2008-7018
|
2017-08-17 10:29 |
2009-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262236
|
- |
|
mcafee
|
safeboot_device_encryption
|
McAfee SafeBoot Device Encryption 4 build 4750 and earlier stores pre-boot authentication passwords in the BIOS Keyboard buffer and does not clear this buffer after use, which allows local users to o…
|
CWE-310
Cryptographic Issues
|
CVE-2008-7020
|
2017-08-17 10:29 |
2009-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262237
|
- |
|
galore
|
com_simpleshop
|
SQL injection vulnerability in the Simple Shop Galore (com_simpleshop) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the section parameter in a section action to…
|
CWE-89
SQL Injection
|
CVE-2008-7033
|
2017-08-17 10:29 |
2009-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262238
|
- |
|
tigran_abrahamyan
|
phpecho_cms
|
PHP remote file inclusion vulnerability in kernel/smarty/Smarty.class.php in PHPEcho CMS 2.0 rc3 allows remote attackers to execute arbitrary PHP code via a URL in unspecified vectors that modify the…
|
CWE-94
Code Injection
|
CVE-2008-7034
|
2017-08-17 10:29 |
2009-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262239
|
- |
|
phpraider simple_machines
|
phpraider
|
Cross-site scripting (XSS) vulnerability in an unspecified component in Simple Machines phpRaider 1.0.7 allows remote attackers to inject arbitrary web script or HTML via the resistance field. NOTE:…
|
CWE-79
Cross-site Scripting
|
CVE-2008-7035
|
2017-08-17 10:29 |
2009-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262240
|
- |
|
e-xoops bcoos
|
e-xoops devtracker bcoos
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in DevTracker module 3.0 for bcoos 1.1.11 and earlier, and DevTracker module 0.20 for E-XooPS 1.0.8 and earlier, allow remote attacker…
|
CWE-79
Cross-site Scripting
|
CVE-2008-7036
|
2017-08-17 10:29 |
2009-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|