260861
|
- |
|
trend_micro
|
officescan
|
Multiple buffer overflows in CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 Patch 1 before build 3087 allow remote attackers to execute arbitrary code via u…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-4402
|
2017-08-8 10:32 |
2008-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260862
|
- |
|
trend_micro
|
officescan
|
The CGI modules in the server in Trend Micro OfficeScan 8.0 SP1 before build 2439 and 8.0 SP1 Patch 1 before build 3087 allow remote attackers to cause a denial of service (NULL pointer dereference a…
|
CWE-399
Resource Management Errors
|
CVE-2008-4403
|
2017-08-8 10:32 |
2008-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260863
|
- |
|
debian
|
xsabre
|
A certain Debian patch to the run scripts for sabre (aka xsabre) 0.2.4b allows local users to delete or overwrite arbitrary files via a symlink attack on unspecified .tmp files.
|
CWE-59
Link Following
|
CVE-2008-4406
|
2017-08-8 10:32 |
2008-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260864
|
- |
|
mediawiki
|
mediawiki
|
Cross-site scripting (XSS) vulnerability in MediaWiki 1.13.1, 1.12.0, and possibly other versions before 1.13.2 allows remote attackers to inject arbitrary web script or HTML via the useskin paramete…
|
CWE-79
Cross-site Scripting
|
CVE-2008-4408
|
2017-08-8 10:32 |
2008-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260865
|
- |
|
xmlsoft
|
libxml2
|
libxml2 2.7.0 and 2.7.1 does not properly handle "predefined entities definitions" in entities, which allows context-dependent attackers to cause a denial of service (memory consumption and applicati…
|
CWE-399
Resource Management Errors
|
CVE-2008-4409
|
2017-08-8 10:32 |
2008-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260866
|
- |
|
xmlsoft
|
libxml2
|
Patch Information - http://www.securityfocus.com/bid/30783/solution
|
CWE-399
Resource Management Errors
|
CVE-2008-4409
|
2017-08-8 10:32 |
2008-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260867
|
- |
|
hp
|
system_management_homepage
|
Cross-site scripting (XSS) vulnerability in HP System Management Homepage (SMH) before 2.1.15.210 on Linux and Windows allows remote attackers to inject arbitrary web script or HTML via unspecified v…
|
CWE-79
Cross-site Scripting
|
CVE-2008-4411
|
2017-08-8 10:32 |
2008-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260868
|
- |
|
hp
|
systems_insight_manager
|
Unspecified vulnerability in HP Systems Insight Manager (SIM) before 5.2 Update 2 (C.05.02.02.00) allows remote attackers to obtain sensitive information via unspecified vectors.
|
NVD-CWE-noinfo CWE-200
Information Exposure
|
CVE-2008-4412
|
2017-08-8 10:32 |
2008-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260869
|
- |
|
hp
|
system_management_homepage
|
Unspecified vulnerability in HP System Management Homepage (SMH) 2.2.6 and earlier on HP-UX B.11.11 and B.11.23, and SMH 2.2.6 and 2.2.8 and earlier on HP-UX B.11.23 and B.11.31, allows local users t…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4413
|
2017-08-8 10:32 |
2008-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260870
|
- |
|
hp
|
tru64
|
Unspecified vulnerability in the AdvFS showfile command in HP Tru64 UNIX 5.1B-3 and 5.1B-4 allows local users to gain privileges via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4414
|
2017-08-8 10:32 |
2008-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|