262821
|
- |
|
dokeos
|
dokeos
|
Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) search_term parameter to main/auth…
|
CWE-79
Cross-site Scripting
|
CVE-2009-2006
|
2017-08-17 10:30 |
2009-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262822
|
- |
|
dokeos
|
dokeos
|
Multiple directory traversal vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to (1) read portions of arbitrary files via a .. (dot dot) and a ..\ (dot dot backslash) in …
|
CWE-22
Path Traversal
|
CVE-2009-2007
|
2017-08-17 10:30 |
2009-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262823
|
- |
|
dokeos
|
dokeos
|
Multiple SQL injection vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to execute arbitrary SQL commands via the (1) uInfo parameter to main/tracking/userLog.php and the…
|
CWE-89
SQL Injection
|
CVE-2009-2008
|
2017-08-17 10:30 |
2009-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262824
|
- |
|
dokeos
|
dokeos
|
Multiple cross-site scripting (XSS) vulnerabilities in Dokeos 1.8.5, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) curdirpath parameter to main/docum…
|
CWE-79
Cross-site Scripting
|
CVE-2009-2009
|
2017-08-17 10:30 |
2009-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262825
|
- |
|
apple
|
safari
|
The Installer in Apple Safari before 4.0 on Windows allows local users to gain privileges by checking a box that specifies an immediate launch of the application after installation, related to an uns…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-2027
|
2017-08-17 10:30 |
2009-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262826
|
- |
|
adobe
|
acrobat acrobat_reader
|
Multiple unspecified vulnerabilities in Adobe Reader 7 and Acrobat 7 before 7.1.3, Adobe Reader 8 and Acrobat 8 before 8.1.6, and Adobe Reader 9 and Acrobat 9 before 9.1.2 have unknown impact and att…
|
NVD-CWE-noinfo
|
CVE-2009-2028
|
2017-08-17 10:30 |
2009-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262827
|
- |
|
sun ibm
|
jdk os\/400
|
Unspecified vulnerability in the XML Digital Signature verification functionality in JVA-RUN in JDK 6.0 in IBM OS/400 i5/OS V5R4M0 and V6R1M0 has unknown impact and attack vectors related to "XML SEC…
|
NVD-CWE-noinfo
|
CVE-2009-2030
|
2017-08-17 10:30 |
2009-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262828
|
- |
|
oscommerce
|
finnish_bank_payment
|
Unspecified vulnerability in the Finnish Bank Payment module 2.2 for osCommerce has unknown impact and attack vectors related to bank charges.
|
NVD-CWE-noinfo
|
CVE-2009-2038
|
2017-08-17 10:30 |
2009-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262829
|
- |
|
oscommerce
|
luottokunta
|
Unspecified vulnerability in the Luottokunta module before 1.3 for osCommerce has unknown impact and attack vectors related to orders.
|
NVD-CWE-noinfo
|
CVE-2009-2039
|
2017-08-17 10:30 |
2009-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262830
|
- |
|
activecollab
|
activecollab
|
Cross-site scripting (XSS) vulnerability in A51 D.O.O. activeCollab 0.7.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-20…
|
CWE-79
Cross-site Scripting
|
CVE-2009-2041
|
2017-08-17 10:30 |
2009-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|