256791
|
- |
|
cisco
|
adaptive_security_appliance_5500_series pix_security_appliance
|
Memory leak in Cisco Adaptive Security Appliances (ASA) 5500 Series and PIX Security Appliances 8.0 before 8.0(4) and 8.1 before 8.1(2) allows remote attackers to cause a denial of service (memory co…
|
CWE-399
Resource Management Errors
|
CVE-2008-3817
|
2017-09-29 10:31 |
2008-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256792
|
- |
|
freedesktop
|
dbus dbus1.0 dbus1.1.0
|
The dbus_signature_validate function in the D-bus library (libdbus) before 1.2.4 allows remote attackers to cause a denial of service (application abort) via a message containing a malformed signatur…
|
CWE-20
Improper Input Validation
|
CVE-2008-3834
|
2017-09-29 10:31 |
2008-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256793
|
- |
|
mozilla
|
firefox seamonkey thunderbird
|
The nsXMLDocument::OnChannelRedirect function in Mozilla Firefox before 2.0.0.17, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allows remote attackers to bypass the Same Origin Policy and…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-3835
|
2017-09-29 10:31 |
2008-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256794
|
- |
|
mozilla
|
firefox seamonkey thunderbird
|
NOTE: Thunderbird shares the browser engine with Firefox and could be vulnerable if JavaScript were to be enabled in mail. This is not the default setting and we strongly discourage users from runnin…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-3835
|
2017-09-29 10:31 |
2008-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256795
|
- |
|
pdesigner
|
z-breaknews
|
SQL injection vulnerability in single.php in Z-Breaknews 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3848
|
2017-09-29 10:31 |
2008-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256796
|
- |
|
davlin
|
thickbox_gallery
|
Davlin Thickbox Gallery 2 allows remote attackers to obtain the administrative username and MD5 password hash via a direct request to conf/admins.php.
|
CWE-255
Credentials Management
|
CVE-2008-3859
|
2017-09-29 10:31 |
2008-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256797
|
- |
|
phpmyrealty
|
phpmyrealty
|
Multiple SQL injection vulnerabilities in phpMyRealty (PMR) 1.0.9 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in pages.php and (2) the price_max para…
|
CWE-89
SQL Injection
|
CVE-2008-3861
|
2017-09-29 10:31 |
2008-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256798
|
- |
|
sun
|
opensolaris solaris
|
The kernel in Sun Solaris 8 through 10 and OpenSolaris before snv_90 allows local users to bypass chroot, zones, and the Solaris Trusted Extensions multi-level security policy, and establish a covert…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-3875
|
2017-09-29 10:31 |
2008-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256799
|
- |
|
acoustica
|
mixcraft
|
Stack-based buffer overflow in Acoustica Mixcraft 4.1 Build 96 and 4.2 Build 98 allows user-assisted attackers to execute arbitrary code via a crafted .mx4 file. NOTE: it was later reported that ver…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-3877
|
2017-09-29 10:31 |
2008-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256800
|
- |
|
hans_oesterholt
|
cmme
|
Multiple cross-site scripting (XSS) vulnerabilities in statistics.php in Content Management Made Easy (CMME) 1.12 allow remote attackers to inject arbitrary web script or HTML via the (1) page and (2…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3923
|
2017-09-29 10:31 |
2008-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|