256781
|
- |
|
maxsite
|
maxsite
|
SQL injection vulnerability in index.php in MAXSITE 1.10 and earlier allows remote attackers to execute arbitrary SQL commands via the category parameter in a webboard action.
|
CWE-89
SQL Injection
|
CVE-2008-2487
|
2017-09-29 10:31 |
2008-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256782
|
- |
|
beaussier
|
roomphplanning
|
admin/userform.php in RoomPHPlanning 1.5 does not require administrative credentials, which allows remote authenticated users to create new admin accounts.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-2488
|
2017-09-29 10:31 |
2008-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256783
|
- |
|
quate
|
quate_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in Quate CMS 0.3.4 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) index.php, (2) login.php, and (3) credits…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2496
|
2017-09-29 10:31 |
2008-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256784
|
- |
|
henning_stoverud
|
phphotoalbum
|
Multiple SQL injection vulnerabilities in PHPhotoalbum 0.5 allow remote attackers to execute arbitrary SQL commands via the (1) album parameter to thumbnails.php and the (2) pid parameter to displayi…
|
CWE-89
SQL Injection
|
CVE-2008-2501
|
2017-09-29 10:31 |
2008-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256785
|
- |
|
simpel_side
|
netbutik
|
Multiple SQL injection vulnerabilities in Simpel Side Netbutik 1 through 4 allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter to netbutik.php and the (2) id parameter …
|
CWE-89
SQL Injection
|
CVE-2008-2504
|
2017-09-29 10:31 |
2008-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256786
|
- |
|
simpel_side
|
weblosninger
|
Cross-site scripting (XSS) vulnerability in result.php in Simpel Side Weblosning 1 through 4 allows remote attackers to inject arbitrary web script or HTML via the search parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-2505
|
2017-09-29 10:31 |
2008-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256787
|
- |
|
simpel_side
|
weblosning
|
Multiple SQL injection vulnerabilities in Simpel Side Weblosning 1 through 4 allow remote attackers to execute arbitrary SQL commands via the (1) mainid and (2) id parameters to index2.php.
|
CWE-89
SQL Injection
|
CVE-2008-2506
|
2017-09-29 10:31 |
2008-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256788
|
- |
|
ibm
|
aix
|
Buffer overflow in the kernel in IBM AIX 5.2, 5.3, and 6.1 allows local users to execute arbitrary code in kernel mode via unknown attack vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-2513
|
2017-09-29 10:31 |
2008-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256789
|
- |
|
ibm
|
aix
|
Buffer overflow in errpt in IBM AIX 5.2, 5.3, and 6.1 allows local users to gain privileges via unknown attack vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-2514
|
2017-09-29 10:31 |
2008-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
256790
|
- |
|
ibm
|
aix
|
Unspecified vulnerability in iostat in IBM AIX 5.2, 5.3, and 6.1 allows local users to gain privileges via unknown vectors related to an "environment variable handling error."
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-2515
|
2017-09-29 10:31 |
2008-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|