259251
|
- |
|
hp
|
hp-ux
|
Unspecified vulnerability in useradd on HP-UX B.11.11, B.11.23, and B.11.31 allows local users to access arbitrary files and directories via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2008-1660
|
2017-09-29 10:30 |
2008-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259252
|
- |
|
hp
|
hp-ux system_administration_manager
|
Unspecified vulnerability in the HP System Administration Manager (SAM) on HP-UX B.11.11 and B.11.23, when used to configure NFS, might allow remote attackers to read or modify arbitrary files, relat…
|
CWE-16
Configuration
|
CVE-2008-1662
|
2017-09-29 10:30 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259253
|
- |
|
hp
|
hp-ux
|
Unspecified vulnerability in libc on HP HP-UX B.11.23 and B.11.31 allows remote attackers to cause a denial of service via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2008-1664
|
2017-09-29 10:30 |
2008-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259254
|
- |
|
hp
|
hp-ux
|
ftpd.c in (1) wu-ftpd 2.4.2 and (2) ftpd in HP HP-UX B.11.11 assigns uid 0 to the FTP client in certain operating-system misconfigurations in which PAM authentication can succeed even though no passw…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-1668
|
2017-09-29 10:30 |
2008-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259255
|
- |
|
future_nuke
|
php-nuke_platinum
|
PHP-Nuke Platinum 7.6.b.5 allows remote attackers to obtain configuration information via a direct request to maintenance/index.php, which reveals settings such as magic_quotes_gpc.
|
CWE-200
Information Exposure
|
CVE-2008-1680
|
2017-09-29 10:30 |
2008-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259256
|
- |
|
elearningforce
|
online_flashquiz
|
PHP remote file inclusion vulnerability in quiz/common/db_config.inc.php in the Online FlashQuiz (com_onlineflashquiz) 1.0.2 component for Joomla! allows remote attackers to execute arbitrary PHP cod…
|
CWE-94
Code Injection
|
CVE-2008-1682
|
2017-09-29 10:30 |
2008-04-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259257
|
- |
|
sun
|
solaris
|
inetd on Sun Solaris 10, when debug logging is enabled, allows local users to write to arbitrary files via a symlink attack on the /var/tmp/inetd.log temporary file.
|
CWE-59 CWE-362
Link Following Race Condition
|
CVE-2008-1684
|
2017-09-29 10:30 |
2008-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259258
|
- |
|
poppler
|
poppler
|
The CairoFont::create function in CairoFontEngine.cc in Poppler, possibly before 0.8.0, as used in Xpdf, Evince, ePDFview, KWord, and other applications, does not properly handle embedded fonts in PD…
|
CWE-20
Improper Input Validation
|
CVE-2008-1693
|
2017-09-29 10:30 |
2008-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259259
|
- |
|
dazphp
|
dazphpnews
|
Directory traversal vulnerability in makepost.php in DaZPHPNews 0.1-1, when register_globals is enabled and magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary loca…
|
CWE-22
Path Traversal
|
CVE-2008-1696
|
2017-09-29 10:30 |
2008-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259260
|
- |
|
hp
|
openview_network_node_manager
|
Stack-based buffer overflow in ovwparser.dll in HP OpenView Network Node Manager (OV NNM) 7.53, 7.51, and earlier allows remote attackers to execute arbitrary code via a long URI in an HTTP request p…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1697
|
2017-09-29 10:30 |
2008-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|