259601
|
- |
|
jspwiki
|
jspwiki
|
Unrestricted file upload vulnerability in JSPWiki 2.4.104 and 2.5.139 allows remote attackers to upload and execute arbitrary .jsp files via an unspecified manipulation that attaches a .jsp file to a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-1230
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259602
|
- |
|
jspwiki
|
jspwiki
|
Reference links suggest possible solution upgrade to latest version (2.6.1) at:
http://www.jspwiki.org/wiki/JSPWikiDownload
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-1230
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259603
|
- |
|
jspwiki
|
jspwiki
|
Directory traversal vulnerability in Edit.jsp in JSPWiki 2.4.104 and 2.5.139 allows remote attackers to include and execute arbitrary local .jsp files, and obtain sensitive information, via a .. (dot…
|
CWE-22
Path Traversal
|
CVE-2008-1231
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259604
|
- |
|
jspwiki
|
jspwiki
|
Reference links suggest possible solution upgrade to latest version (2.6.1) at:
http://www.jspwiki.org/wiki/JSPWikiDownload
|
CWE-22
Path Traversal
|
CVE-2008-1231
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259605
|
- |
|
bmscripts
|
bm_classifieds
|
Multiple SQL injection vulnerabilities in BM Classifieds 20080309 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter to showad.php and the (2) ad parameter…
|
CWE-89
SQL Injection
|
CVE-2008-1272
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259606
|
- |
|
ibm
|
aix
|
Untrusted search path vulnerability in man in IBM AIX 6.1.0 allows local users to execute arbitrary code via a malicious program in the man directory.
|
NVD-CWE-Other
|
CVE-2008-1274
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259607
|
- |
|
ibm
|
aix
|
Per: http://cwe.mitre.org/data/definitions/426.html
'CWE-426: Untrusted Search Path'
|
NVD-CWE-Other
|
CVE-2008-1274
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259608
|
- |
|
mailenable
|
mailenable_enterprise mailenable_professional mailenable_standard
|
Multiple unspecified vulnerabilities in the SMTP service in MailEnable Standard Edition 1.x, Professional Edition 3.x and earlier, and Enterprise Edition 3.x and earlier allow remote attackers to cau…
|
NVD-CWE-noinfo
|
CVE-2008-1275
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259609
|
- |
|
gregory_kokanosky
|
phpmynewsletter
|
SQL injection vulnerability in archives.php in Gregory Kokanosky (aka Greg's Place) phpMyNewsletter 0.8 beta 5 and earlier allows remote attackers to execute arbitrary SQL commands via the msg_id par…
|
CWE-89
SQL Injection
|
CVE-2008-1295
|
2017-09-29 10:30 |
2008-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259610
|
- |
|
ewriting joomla mambo
|
ewriting com_ewriting
|
SQL injection vulnerability in index.php in the eWriting (com_ewriting) 1.2.1 module for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the cat parameter in a selectc…
|
CWE-89
SQL Injection
|
CVE-2008-1297
|
2017-09-29 10:30 |
2008-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|