261671
|
- |
|
opentext
|
livelink_ecm
|
Cross-site scripting (XSS) vulnerability in Livelink ECM 9.0.0 through 9.7.0 and possibly earlier does not set the charset, which allows remote attackers to inject arbitrary web script or HTML via UT…
|
CWE-79
Cross-site Scripting
|
CVE-2008-0769
|
2017-08-8 10:29 |
2008-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261672
|
- |
|
f-secure
|
f-secure_anti-virus f-secure_anti-virus_client_security f-secure_anti-virus_for_linux f-secure_anti-virus_for_workstations f-secure_anti-virus_linux_client_security f-secure_internet_s…
|
Multiple F-Secure anti-virus products, including Internet Security 2006 through 2008, Anti-Virus 2006 through 2008, F-Secure Protection Service, and others, allow remote attackers to bypass malware d…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-0792
|
2017-08-8 10:29 |
2008-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261673
|
- |
|
tendenci
|
cms
|
Multiple cross-site scripting (XSS) vulnerabilities in search.asp in Tendenci CMS allow remote attackers to inject arbitrary web script or HTML via the (1) category, (2) searchtext, (3) jobcategoryid…
|
CWE-79
Cross-site Scripting
|
CVE-2008-0793
|
2017-08-8 10:29 |
2008-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261674
|
- |
|
itheora
|
itheora
|
Directory traversal vulnerability in lib/download.php in iTheora 1.0 rc1 allows remote attackers to read arbitrary files via directory traversal sequences in the url parameter.
|
CWE-22
Path Traversal
|
CVE-2008-0797
|
2017-08-8 10:29 |
2008-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261675
|
- |
|
drupal
|
header_image
|
Unspecified vulnerability in the Header Image Module before 5.x-1.1 for Drupal allows remote attackers to access the administration pages via unknown attack vectors.
|
CWE-287
Improper Authentication
|
CVE-2008-0823
|
2017-08-8 10:29 |
2008-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261676
|
- |
|
e-vision
|
e-vision_cms
|
Multiple SQL injection vulnerabilities in e-Vision CMS 2.02 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) iframe.php and (2) print.php. NOTE: the provenance of…
|
CWE-89
SQL Injection
|
CVE-2008-0856
|
2017-08-8 10:29 |
2008-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261677
|
- |
|
adobe
|
acrobat_reader
|
acroread in Adobe Acrobat Reader 8.1.2 allows local users to overwrite arbitrary files via a symlink attack on temporary files related to SSL certificate handling.
|
CWE-59
Link Following
|
CVE-2008-0883
|
2017-08-8 10:29 |
2008-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261678
|
- |
|
redhat
|
directory_server
|
Red Hat Directory Server 7.1 before SP4 uses insecure permissions for certain directories, which allows local users to modify JAR files and execute arbitrary code via unknown vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-0890
|
2017-08-8 10:29 |
2008-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261679
|
- |
|
redhat
|
directory_server
|
Red Hat Administration Server, as used by Red Hat Directory Server 8.0 EL4 and EL5, does not properly restrict access to CGI scripts, which allows remote attackers to perform administrative actions.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-0893
|
2017-08-8 10:29 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261680
|
- |
|
schoolwires
|
academic_portal
|
SQL injection vulnerability in browse.asp in Schoolwires Academic Portal allows remote attackers to execute arbitrary SQL commands via the c parameter. NOTE: the provenance of this information is un…
|
CWE-89
SQL Injection
|
CVE-2008-0908
|
2017-08-8 10:29 |
2008-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|