261381
|
- |
|
divx
|
divxdb
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in DivXDB 2002 0.94b allow remote attackers to inject arbitrary web script or HTML via the (1) choice, (2) _page_, (3) zone_admin, (4)…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1800
|
2017-08-8 10:30 |
2008-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261382
|
- |
|
snort
|
snort
|
preprocessors/spp_frag3.c in Sourcefire Snort before 2.8.1 does not properly identify packet fragments that have dissimilar TTL values, which allows remote attackers to bypass detection rules by usin…
|
NVD-CWE-Other
|
CVE-2008-1804
|
2017-08-8 10:30 |
2008-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261383
|
- |
|
novell
|
edirectory
|
Heap-based buffer overflow in Novell eDirectory 8.7.3 before 8.7.3.10b, and 8.8 before 8.8.2 FTF2, allows remote attackers to execute arbitrary code via an LDAP search request containing "NULL search…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1809
|
2017-08-8 10:30 |
2008-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261384
|
- |
|
sap
|
maxdb
|
Untrusted search path vulnerability in dbmsrv in SAP MaxDB 7.6.03.15 on Linux allows local users to gain privileges via a modified PATH environment variable.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-1810
|
2017-08-8 10:30 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261385
|
- |
|
cecilia
|
cecilia
|
lib/prefs.tcl in Cecilia 2.0.5 allows local users to overwrite arbitrary files via a symlink attack on the csvers temporary file.
|
CWE-59
Link Following
|
CVE-2008-1832
|
2017-08-8 10:30 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261386
|
- |
|
clam_anti-virus
|
clamav
|
Heap-based buffer overflow in pe.c in libclamav in ClamAV 0.92.1 allows remote attackers to execute arbitrary code via a crafted WWPack compressed PE binary.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1833
|
2017-08-8 10:30 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261387
|
- |
|
clam_anti-virus
|
clamav
|
ClamAV before 0.93 allows remote attackers to bypass the scanning enging via a RAR file with an invalid version number, which cannot be parsed by ClamAV but can be extracted by Winrar.
|
CWE-20
Improper Input Validation
|
CVE-2008-1835
|
2017-08-8 10:30 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261388
|
- |
|
clam_anti-virus
|
clamav
|
The rfc2231 function in message.c in libclamav in ClamAV before 0.93 allows remote attackers to cause a denial of service (crash) via a crafted message that produces a string that is not null termina…
|
NVD-CWE-Other
|
CVE-2008-1836
|
2017-08-8 10:30 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261389
|
- |
|
clam_anti-virus
|
clamav
|
libclamunrar in ClamAV before 0.93 allows remote attackers to cause a denial of service (crash) via crafted RAR files that trigger "memory problems," as demonstrated by the PROTOS GENOME test suite f…
|
NVD-CWE-noinfo CWE-399
Resource Management Errors
|
CVE-2008-1837
|
2017-08-8 10:30 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261390
|
- |
|
work_system_e-commerce
|
work_system_e-commerce
|
Multgiple cross-site scripting (XSS) vulnerabilities in module/main.php in WORK system e-commerce 4.0.9 allow remote attackers to inject arbitrary web script or HTML via the (1) day, (2) month, and (…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1839
|
2017-08-8 10:30 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|