261501
|
- |
|
oued
|
cyrixmed
|
Cross-site scripting (XSS) vulnerability in index.php in CyrixMED 1.4 allows remote attackers to inject arbitrary web script or HTML via the msg_erreur parameter. NOTE: the provenance of this inform…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2264
|
2017-08-8 10:30 |
2008-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261502
|
- |
|
nzbget uudeview
|
nzbget uudeview
|
uulib/uunconc.c in UUDeview 0.5.20, as used in nzbget before 0.3.0 and possibly other products, allows local users to overwrite arbitrary files via a symlink attack on a temporary filename generated …
|
CWE-59
Link Following
|
CVE-2008-2266
|
2017-08-8 10:30 |
2008-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261503
|
- |
|
typo3
|
sr_feuser_register_extension
|
Cross-site scripting (XSS) vulnerability in the sr_feuser_register 1.4.0, 1.6.0, 2.2.1 to 2.2.7, 2.3.0 to 2.3.6, 2.4.0, and 2.5.0 to 2.5.9 extension for TYPO3 allows remote attackers to inject arbitr…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2274
|
2017-08-8 10:30 |
2008-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261504
|
- |
|
typo3
|
sr_feuser_register_extension
|
Unspecified vulnerability in sr_feuser_register 1.4.0, 1.6.0, 2.2.1 to 2.2.7, 2.3.0 to 2.3.6, 2.4.0, and 2.5.0 to 2.5.9 extension for TYPO3 allows remote attackers to execute arbitrary code and delet…
|
NVD-CWE-noinfo CWE-94
Code Injection
|
CVE-2008-2275
|
2017-08-8 10:30 |
2008-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261505
|
- |
|
scriptphp
|
picengine
|
Cross-site scripting (XSS) vulnerability in admin/index.php in Script PHP PicEngine 1.0 allows remote attackers to inject arbitrary web script or HTML via the l parameter. NOTE: the provenance of th…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2280
|
2017-08-8 10:30 |
2008-05-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261506
|
- |
|
fusebox
|
fusebox
|
PHP remote file inclusion vulnerability in fusebox5.php in Fusebox 5.5.1 allows remote attackers to execute arbitrary PHP code via a URL in the FUSEBOX_APPLICATION_PATH parameter. NOTE: the provenan…
|
CWE-94
Code Injection
|
CVE-2008-2284
|
2017-08-8 10:30 |
2008-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261507
|
- |
|
ubuntu
|
linux
|
The ssh-vulnkey tool on Ubuntu Linux 7.04, 7.10, and 8.04 LTS does not recognize authorized_keys lines that contain options, which makes it easier for remote attackers to exploit CVE-2008-0166 by gue…
|
CWE-310
Cryptographic Issues
|
CVE-2008-2285
|
2017-08-8 10:30 |
2008-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261508
|
- |
|
symantec
|
altiris_deployment_solution
|
Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 does not properly protect the install directory, which might allow local users to gain privileges by replacing an application compo…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-2287
|
2017-08-8 10:30 |
2008-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261509
|
- |
|
symantec
|
altiris_deployment_solution
|
Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 has insufficient access control for deletion and modification of registry keys, which allows local users to cause a denial of servi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-2288
|
2017-08-8 10:30 |
2008-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261510
|
- |
|
symantec
|
altiris_deployment_solution
|
Unspecified vulnerability in a tooltip element in Symantec Altiris Deployment Solution 6.8.x and 6.9.x before 6.9.176 allows local users to gain privileges via unknown attack vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-2289
|
2017-08-8 10:30 |
2008-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|