259061
|
- |
|
davethewebguy
|
battle_blog
|
Cross-site scripting (XSS) vulnerability in comment.asp in Battle Blog 1.25 and 1.30 build 2 allows remote attackers to inject arbitrary web script or HTML via a comment.
|
CWE-79
Cross-site Scripting
|
CVE-2009-3719
|
2017-09-19 10:29 |
2009-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259062
|
- |
|
sun
|
jre
|
Unspecified vulnerability in the TrueType font parsing functionality in Sun Java SE 5.0 before Update 22 and 6 before Update 17 allows remote attackers to cause a denial of service (application crash…
|
NVD-CWE-noinfo
|
CVE-2009-3729
|
2017-09-19 10:29 |
2009-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259063
|
- |
|
gnu
|
libtool
|
ltdl.c in libltdl in GNU Libtool 1.5.x, and 2.2.6 before 2.2.6b, as used in Ham Radio Control Libraries, Q, and possibly other products, attempts to open a .la file in the current working directory, …
|
NVD-CWE-Other
|
CVE-2009-3736
|
2017-09-19 10:29 |
2009-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259064
|
- |
|
sun
|
solaris
|
XScreenSaver in Sun Solaris 10, when the accessibility feature is enabled, allows physically proximate attackers to obtain sensitive information by reading popup windows, which are displayed even whe…
|
CWE-16
Configuration
|
CVE-2009-3746
|
2017-09-19 10:29 |
2009-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259065
|
- |
|
santostefano_giovanni
|
toylog
|
SQL injection vulnerability in read.php in ToyLog 0.1 allows remote attackers to execute arbitrary SQL commands via the idm parameter.
|
CWE-89
SQL Injection
|
CVE-2009-3750
|
2017-09-19 10:29 |
2009-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259066
|
- |
|
opial
|
opial
|
Cross-site scripting (XSS) vulnerability in home.php in Opial 1.0 allows remote attackers to inject arbitrary web script or HTML via the genres_parent parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2009-3751
|
2017-09-19 10:29 |
2009-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259067
|
- |
|
opial
|
opial
|
SQL injection vulnerability in home.php in Opial 1.0 allows remote attackers to execute arbitrary SQL commands via the genres_parent parameter.
|
CWE-89
SQL Injection
|
CVE-2009-3752
|
2017-09-19 10:29 |
2009-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259068
|
- |
|
opial
|
opial
|
Unrestricted file upload vulnerability in Opial 1.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension as a User Image, then accessing it via a request…
|
CWE-20
Improper Input Validation
|
CVE-2009-3753
|
2017-09-19 10:29 |
2009-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259069
|
- |
|
kreotek
|
phpbms
|
Multiple SQL injection vulnerabilities in phpBMS 0.96 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to modules/bms/invoices_discount_ajax.php, (2) f parameter to d…
|
CWE-89
SQL Injection
|
CVE-2009-3754
|
2017-09-19 10:29 |
2009-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259070
|
- |
|
kreotek
|
phpbms
|
Multiple cross-site scripting (XSS) vulnerabilities in phpBMS 0.96 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) index.php and (2) modules\base\myaccount.php;…
|
CWE-79
Cross-site Scripting
|
CVE-2009-3755
|
2017-09-19 10:29 |
2009-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|