261271
|
- |
|
roundup-tracker
|
roundup
|
The xml-rpc server in Roundup 1.4.4 does not check property permissions, which allows attackers to bypass restrictions and edit or read restricted properties via the (1) list, (2) display, and (3) se…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-1475
|
2017-08-8 10:30 |
2008-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261272
|
- |
|
serendipity
|
serendipity
|
Cross-site scripting (XSS) vulnerability in Serendipity (S9Y) before 1.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to received trackbacks.
|
CWE-79
Cross-site Scripting
|
CVE-2008-1476
|
2017-08-8 10:30 |
2008-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261273
|
- |
|
cyberfrogs
|
cfnetgs
|
Cross-site scripting (XSS) vulnerability in index.php in cyberfrogs.net cfnetgs 0.24 allows remote attackers to inject arbitrary web script or HTML via the directory parameter. NOTE: the provenance …
|
CWE-79
Cross-site Scripting
|
CVE-2008-1479
|
2017-08-8 10:30 |
2008-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261274
|
- |
|
webspell
|
webspell
|
Cross-site scripting (XSS) vulnerability in index.php in webSPELL 4.1.2 allows remote attackers to inject arbitrary web script or HTML via the board parameter. NOTE: the provenance of this informati…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1481
|
2017-08-8 10:30 |
2008-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261275
|
- |
|
pecl-php
|
alternative_php_cache
|
Stack-based buffer overflow in apc.c in Alternative PHP Cache (APC) 3.0.11 through 3.0.16 allows remote attackers to execute arbitrary code via a long filename.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1488
|
2017-08-8 10:30 |
2008-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261276
|
- |
|
aurigma piczo
|
image_uploader_activex_control imageuploader4
|
Buffer overflow in a certain Aurigma ActiveX control in ImageUploader4.ocx 4.1.36.0, as used with Piczo (aka Pizco) and possibly other online services, allows remote attackers to execute arbitrary co…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1490
|
2017-08-8 10:30 |
2008-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261277
|
- |
|
tinyportal
|
tinyportal
|
Cross-site scripting (XSS) vulnerability in index.php in TinyPortal 0.8.6 and 1.0.3 allows remote attackers to inject arbitrary web script or HTML via the PHPSESSID parameter. NOTE: the provenance o…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1500
|
2017-08-8 10:30 |
2008-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261278
|
- |
|
phpheaven
|
phpmychat
|
Cross-site scripting (XSS) vulnerability in setup.php3 in phpHeaven phpMyChat 0.14.5 allows remote attackers to inject arbitrary web script or HTML via the Lang parameter. NOTE: the provenance of th…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1504
|
2017-08-8 10:30 |
2008-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261279
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Array index error in the xnu (Mach) kernel in Apple Mac OS X 10.5 before 10.5.7 allows local users to gain privileges or cause a denial of service (system shutdown) via unspecified vectors related to…
|
CWE-20
Improper Input Validation
|
CVE-2008-1517
|
2017-08-8 10:30 |
2009-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261280
|
- |
|
kaspersky_lab
|
kaspersky_anti-virus kaspersky_internet_security
|
Stack-based buffer overflow in kl1.sys in Kaspersky Anti-Virus 6.0 and 7.0 and Internet Security 6.0 and 7.0 allows local users to gain privileges via an IOCTL 0x800520e8 call.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1518
|
2017-08-8 10:30 |
2008-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|