260911
|
- |
|
sun
|
java_asp_server
|
Stack-based buffer overflow in the request handling implementation in Sun Java Active Server Pages (ASP) Server before 4.0.3 allows remote attackers to execute arbitrary code via an unspecified strin…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-2404
|
2017-08-8 10:31 |
2008-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260912
|
- |
|
sun
|
java_active_server_pages
|
Sun Java Active Server Pages (ASP) Server before 4.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in HTTP requests to unspecified ASP applications.
|
CWE-20
Improper Input Validation
|
CVE-2008-2405
|
2017-08-8 10:31 |
2008-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260913
|
- |
|
sun
|
java_asp_server
|
The administration application server in Sun Java Active Server Pages (ASP) Server before 4.0.3 allows remote attackers to bypass authentication via direct requests on TCP port 5102.
|
CWE-287
Improper Authentication
|
CVE-2008-2406
|
2017-08-8 10:31 |
2008-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260914
|
- |
|
ceruleanstudios
|
trillian_pro
|
Heap-based buffer overflow in the XML parsing functionality in talk.dll in Cerulean Studios Trillian Pro before 3.1.10.0 allows remote attackers to execute arbitrary code via a malformed attribute in…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-2408
|
2017-08-8 10:31 |
2008-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260915
|
- |
|
cerulean_studios
|
trillian
|
Stack-based buffer overflow in Cerulean Studios Trillian before 3.1.10.0 allows remote attackers to execute arbitrary code via unspecified attributes in the X-MMS-IM-FORMAT header in an MSN message.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-2409
|
2017-08-8 10:31 |
2008-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260916
|
- |
|
ibm
|
lotus_domino_web_server
|
Cross-site scripting (XSS) vulnerability in the servlet engine and Web container in the Web Server service in IBM Lotus Domino before 7.0.3 FP1, and 8.x before 8.0.1, allows remote authenticated user…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2410
|
2017-08-8 10:31 |
2008-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260917
|
- |
|
acgv.free
|
acgv_news
|
SQL injection vulnerability in glossaire.php in ACGV News 0.9.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2412
|
2017-08-8 10:31 |
2008-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260918
|
- |
|
acgv.free
|
acgv_news
|
Cross-site scripting (XSS) vulnerability in glossaire.php in ACGV News 0.9.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-2413
|
2017-08-8 10:31 |
2008-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260919
|
- |
|
aguestbook
|
an_guestbook
|
Cross-site scripting (XSS) vulnerability in send_email.php in AN Guestbook (ANG) 0.4 allows remote attackers to inject arbitrary web script or HTML via the postid parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-2414
|
2017-08-8 10:31 |
2008-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260920
|
- |
|
digitalhive
|
digitalhive
|
Directory traversal vulnerability in template/purpletech/base_include.php in DigitalHive (aka hive) 2.0 RC2 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in …
|
CWE-22
Path Traversal
|
CVE-2008-2415
|
2017-08-8 10:31 |
2008-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|