258131
|
- |
|
dutchmonkey
|
dm_filemanager
|
PHP remote file inclusion vulnerability in dm-albums/template/album.php in DM FileManager 3.9.4, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in t…
|
CWE-94
Code Injection
|
CVE-2009-2399
|
2017-09-19 10:29 |
2009-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258132
|
- |
|
fijiwebdesign
|
com_php
|
SQL injection vulnerability in the PHP (com_php) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.
|
CWE-89
SQL Injection
|
CVE-2009-2400
|
2017-09-19 10:29 |
2009-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258133
|
- |
|
phpecho_cms
|
phpecho_cms
|
Cross-site scripting (XSS) vulnerability in PHPEcho CMS 2.0-rc3 allows remote attackers to inject arbitrary web script or HTML via a forum post.
|
CWE-79
Cross-site Scripting
|
CVE-2009-2401
|
2017-09-19 10:29 |
2009-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258134
|
- |
|
phpecho_cms
|
phpecho_cms
|
SQL injection vulnerability in index.php in the forum module in PHPEcho CMS 2.0-rc3 allows remote attackers to execute arbitrary SQL commands via the id parameter in a thread action, a different vect…
|
CWE-89
SQL Injection
|
CVE-2009-2402
|
2017-09-19 10:29 |
2009-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258135
|
- |
|
subversion
|
subversion
|
Multiple integer overflows in the libsvn_delta library in Subversion before 1.5.7, and 1.6.x before 1.6.4, allow remote authenticated users and remote Subversion servers to execute arbitrary code via…
|
CWE-189
Numeric Errors
|
CVE-2009-2411
|
2017-09-19 10:29 |
2009-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258136
|
- |
|
tallemu
|
online_armor_personal_firewall_av\+ personal_firewall
|
The OAmon.sys kernel driver 3.1.0.0 and earlier in Tall Emu Online Armor Personal Firewall AV+ before 3.5.0.12, and Personal Firewall 3.5 before 3.5.0.14, allows local users to gain privileges via cr…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-2450
|
2017-09-19 10:29 |
2009-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258137
|
- |
|
mozilla
|
firefox
|
Mozilla Firefox before 3.0.12 and 3.5 before 3.5.1 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors involving a Flash object, a …
|
NVD-CWE-Other
|
CVE-2009-2467
|
2017-09-19 10:29 |
2009-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258138
|
- |
|
mozilla
|
firefox
|
Mozilla Firefox before 3.0.12 does not properly handle an SVG element that has a property with a watch function and an __defineSetter__ function, which allows remote attackers to cause a denial of se…
|
CWE-399
Resource Management Errors
|
CVE-2009-2469
|
2017-09-19 10:29 |
2009-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258139
|
- |
|
mozilla
|
firefox
|
Mozilla Firefox before 3.0.12, and 3.5.x before 3.5.2, allows remote SOCKS5 proxy servers to cause a denial of service (data stream corruption) via a long domain name in a reply.
|
CWE-20
Improper Input Validation
|
CVE-2009-2470
|
2017-09-19 10:29 |
2009-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258140
|
- |
|
mozilla
|
firefox
|
The setTimeout function in Mozilla Firefox before 3.0.12 does not properly preserve object wrapping, which allows remote attackers to execute arbitrary JavaScript with chrome privileges via a crafted…
|
NVD-CWE-Other
|
CVE-2009-2471
|
2017-09-19 10:29 |
2009-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|