260491
|
- |
|
structum
|
infobiz_server
|
Cross-site scripting (XSS) vulnerability in search_results.php in InfoBiz Server allows remote attackers to inject arbitrary web script or HTML via the keywords parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6654
|
2017-08-17 10:29 |
2009-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260492
|
- |
|
comscripts
|
gedcom_to_mysl
|
Multiple cross-site scripting (XSS) vulnerabilities in GEDCOM_TO_MYSQL 2 allow remote attackers to inject arbitrary web script or HTML via the (1) nom_branche and (2) nom parameters to php/prenom.php…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6655
|
2017-08-17 10:29 |
2009-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260493
|
- |
|
vertex4
|
sunage
|
Integer overflow in Vertex4 SunAge 1.08.1 and earlier allows remote attackers to cause a denial of service (crash) via a crafted packet to UDP port 27960.
|
CWE-189
Numeric Errors
|
CVE-2008-6670
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260494
|
- |
|
vertex4
|
sunage
|
Vertex4 SunAge 1.08.1 and earlier allows remote attackers to cause a denial of service (infinite loop and hang) via a crafted join packet to UDP port 27960.
|
CWE-189
Numeric Errors
|
CVE-2008-6671
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260495
|
- |
|
vertex4
|
sunage
|
Vertex4 SunAge 1.08.1 and earlier allows remote attackers to cause a denial of service ("runtime error") via a crafted join packet to UDP port 27960, probably related to an invalid nickname command.
|
CWE-189
Numeric Errors
|
CVE-2008-6672
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260496
|
- |
|
quickersite
|
quickersite
|
Multiple cross-site scripting (XSS) vulnerabilities in QuickerSite 1.8.5 allow remote attackers to inject arbitrary web script or HTML via (1) the close parameter to showThumb.aspx; (2) SB_redirect a…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6675
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260497
|
- |
|
quickersite
|
quickersite
|
QuickerSite 1.8.5 allows remote attackers to obtain sensitive information via a request to showThumb.aspx without any parameters, which reveals the installation path in an error message.
|
CWE-20
Improper Input Validation
|
CVE-2008-6676
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260498
|
- |
|
quickersite
|
quickersite
|
SQL injection vulnerability in asp/includes/contact.asp in QuickerSite 1.8.5 allows remote attackers to execute arbitrary SQL commands via the sNickName parameter in a profile action to default.asp.
|
CWE-89
SQL Injection
|
CVE-2008-6678
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260499
|
- |
|
clamav
|
clamav
|
libclamav/pe.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (crash) via a crafted EXE file that triggers a divide-by-zero error.
|
CWE-189
Numeric Errors
|
CVE-2008-6680
|
2017-08-17 10:29 |
2009-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260500
|
- |
|
dojotoolkit
|
dojo
|
Cross-site scripting (XSS) vulnerability in dijit.Editor in Dojo before 1.1 allows remote attackers to inject arbitrary web script or HTML via XML entities in a TEXTAREA element.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6681
|
2017-08-17 10:29 |
2009-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|