261061
|
- |
|
drupal
|
aggregation_module
|
Per Hyperlink Record 1026625, Drupal core is not affected. If you do not use the contributed Aggregation module, there is nothing you need to do.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-3000
|
2017-08-8 10:31 |
2008-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261062
|
- |
|
drupal
|
aggregation_module
|
The Aggregation module 5.x before 5.x-4.4 for Drupal allows remote attackers to upload files with arbitrary extensions, and possibly execute arbitrary code, via a crafted feed that allows upload of f…
|
CWE-94
Code Injection
|
CVE-2008-3001
|
2017-08-8 10:31 |
2008-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261063
|
- |
|
drupal
|
aggregation_module
|
Per Hyperlink Record 1026625, Drupal core is not affected. If you do not use the contributed Aggregation module, there is nothing you need to do.
|
CWE-94
Code Injection
|
CVE-2008-3001
|
2017-08-8 10:31 |
2008-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261064
|
- |
|
typo3
|
send_a_card
|
Multiple cross-site scripting (XSS) vulnerabilities in the Send-A-Card (sr_sendcard) extension 2.2.2 and earlier for TYPO3 allow remote attackers to inject arbitrary web script or HTML via unspecifie…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3028
|
2017-08-8 10:31 |
2008-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261065
|
- |
|
typo3
|
wec_discussion_forum
|
Cross-site scripting (XSS) vulnerability in the WEC Discussion Forum (wec_discussion) extension 1.6.2 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecif…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3029
|
2017-08-8 10:31 |
2008-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261066
|
- |
|
typo3
|
phpmyadmin
|
Cross-site scripting (XSS) vulnerability in the phpMyAdmin (phpmyadmin) extension 3.0.1 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2008-3032
|
2017-08-8 10:31 |
2008-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261067
|
- |
|
typo3
|
address_directory
|
Cross-site scripting (XSS) vulnerability in the Address Directory (sp_directory) extension 0.2.10 and earlier for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified …
|
CWE-79
Cross-site Scripting
|
CVE-2008-3037
|
2017-08-8 10:31 |
2008-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261068
|
- |
|
typo3
|
address_directory
|
SQL injection vulnerability in the Address Directory (sp_directory) extension 0.2.10 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2008-3038
|
2017-08-8 10:31 |
2008-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261069
|
- |
|
typo3
|
dam_frontend_extension
|
SQL injection vulnerability in the DAM Frontend (dam_frontend) extension 0.1.0 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2008-3039
|
2017-08-8 10:31 |
2008-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261070
|
- |
|
typo3
|
dam_frontend_extension
|
Unspecified vulnerability in the DAM Frontend (dam_frontend) extension 0.1.0 and earlier for TYPO3 allows remote attackers to obtain sensitive information via unknown vectors.
|
CWE-200
Information Exposure
|
CVE-2008-3040
|
2017-08-8 10:31 |
2008-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|