260581
|
- |
|
avaya
|
sip_enablement_services communication_manager
|
The SIP Enablement Services (SES) Server in Avaya SIP Enablement Services 5.0, and Communication Manager (CM) 5.0 on the S8300C with SES enabled, writes account names and passwords to the (1) alarm a…
|
CWE-200
Information Exposure
|
CVE-2008-3777
|
2017-08-8 10:32 |
2008-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260582
|
- |
|
avaya
|
sip_enablement_services communication_manager
|
The remote management interface in SIP Enablement Services (SES) Server in Avaya SIP Enablement Services 5.0, and Communication Manager (CM) 5.0 on the S8300C with SES enabled, proceeds with Core rou…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-3778
|
2017-08-8 10:32 |
2008-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260583
|
- |
|
gmod
|
gbrowse
|
Cross-site scripting (XSS) vulnerability in GMOD GBrowse before 1.69 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2008-3781
|
2017-08-8 10:32 |
2008-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260584
|
- |
|
discountedscripts
|
acg_ptp
|
Multiple cross-site scripting (XSS) vulnerabilities in admin/index.php in ACG-PTP 1.0.6 allow remote authenticated administrators to inject arbitrary web script or HTML via the (1) Category name fiel…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3782
|
2017-08-8 10:32 |
2008-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260585
|
- |
|
picturespro
|
picturespro_photo_cart
|
Cross-site scripting (XSS) vulnerability in index.php in PICTURESPRO Photo Cart 3.9 allows remote attackers to inject arbitrary web script or HTML via the qtitle parameter (aka "Gallery or event name…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3786
|
2017-08-8 10:32 |
2008-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260586
|
- |
|
swfdec
|
swfdec
|
Swfdec 0.6 before 0.6.8 allows remote attackers to cause a denial of service (application crash) via a 1x1 JPEG image.
|
CWE-20
Improper Input Validation
|
CVE-2008-3796
|
2017-08-8 10:32 |
2008-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260587
|
- |
|
cisco
|
unity
|
Unspecified vulnerability in Cisco Unity 4.x before 4.2(1)ES161, 5.x before 5.0(1)ES53, and 7.x before 7.0(2)ES8, when using anonymous authentication (aka native Unity authentication), allows remote …
|
CWE-287
Improper Authentication
|
CVE-2008-3814
|
2017-08-8 10:32 |
2008-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260588
|
- |
|
cisco
|
ons ons_15600
|
Cisco ONS 15310-CL, 15310-MA, 15327, 15454, 15454 SDH, and 15600 with software 7.0.2 through 7.0.6, 7.2.2, 8.0.x, 8.5.1, and 8.5.2 allows remote attackers to cause a denial of service (control-card r…
|
CWE-20
Improper Input Validation
|
CVE-2008-3818
|
2017-08-8 10:32 |
2009-01-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260589
|
- |
|
cisco
|
gss_4480_global_site_selector gss_4490_global_site_selector gss_4491_global_site_selector gss_4492r_global_site_selector
|
dnsserver in Cisco Application Control Engine Global Site Selector (GSS) before 3.0(1) allows remote attackers to cause a denial of service (daemon crash) via a series of crafted DNS requests, aka Bu…
|
NVD-CWE-Other
|
CVE-2008-3819
|
2017-08-8 10:32 |
2009-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260590
|
- |
|
cisco
|
security_manager
|
Cisco Security Manager 3.1 and 3.2 before 3.2.2, when Cisco IPS Event Viewer (IEV) is used, exposes TCP ports used by the MySQL daemon and IEV server, which allows remote attackers to obtain "root ac…
|
NVD-CWE-Other
|
CVE-2008-3820
|
2017-08-8 10:32 |
2009-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|