262131
|
- |
|
libraryvideocompany
|
safari_montage
|
Multiple cross-site scripting (XSS) vulnerabilities in forgotPW.php in Library Video Company SAFARI Montage 3.1.x allow remote attackers to inject arbitrary web script or HTML via the (1) school and …
|
CWE-79
Cross-site Scripting
|
CVE-2008-6637
|
2017-08-17 10:29 |
2009-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262132
|
- |
|
ajaxplorer
|
ajaxplorer
|
Cross-site request forgery (CSRF) vulnerability in admin.php in AjaXplorer 2.3.3 and 2.3.4 allows remote attackers to hijack the authentication of administrators for requests that modify passwords vi…
|
CWE-352
Origin Validation Error
|
CVE-2008-6639
|
2017-08-17 10:29 |
2009-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262133
|
- |
|
aspindir
|
batmanportal
|
Multiple SQL injection vulnerabilities in BatmanPorTaL allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) uyeadmin.asp and (2) profil.asp. NOTE: the provenance of t…
|
CWE-89
SQL Injection
|
CVE-2008-6640
|
2017-08-17 10:29 |
2009-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262134
|
- |
|
structum
|
infobiz_server
|
Cross-site scripting (XSS) vulnerability in search_results.php in InfoBiz Server allows remote attackers to inject arbitrary web script or HTML via the keywords parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6654
|
2017-08-17 10:29 |
2009-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262135
|
- |
|
comscripts
|
gedcom_to_mysl
|
Multiple cross-site scripting (XSS) vulnerabilities in GEDCOM_TO_MYSQL 2 allow remote attackers to inject arbitrary web script or HTML via the (1) nom_branche and (2) nom parameters to php/prenom.php…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6655
|
2017-08-17 10:29 |
2009-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262136
|
- |
|
vertex4
|
sunage
|
Integer overflow in Vertex4 SunAge 1.08.1 and earlier allows remote attackers to cause a denial of service (crash) via a crafted packet to UDP port 27960.
|
CWE-189
Numeric Errors
|
CVE-2008-6670
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262137
|
- |
|
vertex4
|
sunage
|
Vertex4 SunAge 1.08.1 and earlier allows remote attackers to cause a denial of service (infinite loop and hang) via a crafted join packet to UDP port 27960.
|
CWE-189
Numeric Errors
|
CVE-2008-6671
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262138
|
- |
|
vertex4
|
sunage
|
Vertex4 SunAge 1.08.1 and earlier allows remote attackers to cause a denial of service ("runtime error") via a crafted join packet to UDP port 27960, probably related to an invalid nickname command.
|
CWE-189
Numeric Errors
|
CVE-2008-6672
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262139
|
- |
|
quickersite
|
quickersite
|
Multiple cross-site scripting (XSS) vulnerabilities in QuickerSite 1.8.5 allow remote attackers to inject arbitrary web script or HTML via (1) the close parameter to showThumb.aspx; (2) SB_redirect a…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6675
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262140
|
- |
|
quickersite
|
quickersite
|
QuickerSite 1.8.5 allows remote attackers to obtain sensitive information via a request to showThumb.aspx without any parameters, which reveals the installation path in an error message.
|
CWE-20
Improper Input Validation
|
CVE-2008-6676
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|