257011
|
- |
|
realvnc
|
realvnc_windows_client
|
vncviewer.exe in RealVNC Windows Client 4.1.2.0 allows remote VNC servers to cause a denial of service (application crash) via a crafted frame buffer update packet.
|
CWE-20
Improper Input Validation
|
CVE-2008-3493
|
2017-09-29 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257012
|
- |
|
myphp_cms
|
myphp_cms
|
SQL injection vulnerability in pages.php in MyPHP CMS 0.3.1 allows remote attackers to execute arbitrary SQL commands via the pid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3497
|
2017-09-29 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257013
|
- |
|
polypager
|
polypager
|
Cross-site scripting (XSS) vulnerability in PolyPager 1.0 rc2 and earlier allows remote attackers to inject arbitrary web script or HTML via the nr parameter to the default URI.
|
CWE-79
Cross-site Scripting
|
CVE-2008-3505
|
2017-09-29 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257014
|
- |
|
polypager
|
polypager
|
SQL injection vulnerability in PolyPager 1.0 rc2 and earlier allows remote attackers to execute arbitrary SQL commands via the nr parameter to the default URI.
|
CWE-89
SQL Injection
|
CVE-2008-3506
|
2017-09-29 10:31 |
2008-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257015
|
- |
|
wogan_may
|
litenews
|
SQL injection vulnerability in index.php in LiteNews 0.1 (aka 01), and possibly 1.2 and earlier, allows remote attackers to execute arbitrary SQL commands via the id parameter in a view action.
|
CWE-89
SQL Injection
|
CVE-2008-3507
|
2017-09-29 10:31 |
2008-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257016
|
- |
|
wogan_may
|
litenews
|
LiteNews 0.1 (aka 01), and possibly 1.2 and earlier, allows remote attackers to bypass authentication and gain administrative access by setting the admin cookie.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-3508
|
2017-09-29 10:31 |
2008-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257017
|
- |
|
lovecms
|
lovecms
|
LoveCMS 1.6.2 does not require administrative authentication for (1) addblock.php, (2) blocks.php, and (3) themes.php in system/admin/, which allows remote attackers to change the configuration or ex…
|
CWE-94
Code Injection
|
CVE-2008-3509
|
2017-09-29 10:31 |
2008-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257018
|
- |
|
jasper_project
|
jasper
|
Multiple integer overflows in JasPer 1.900.1 might allow context-dependent attackers to have an unknown impact via a crafted image file, related to integer multiplication for memory allocation.
|
CWE-189
Numeric Errors
|
CVE-2008-3520
|
2017-09-29 10:31 |
2008-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257019
|
- |
|
pidgin
|
pidgin
|
The NSS plugin in libpurple in Pidgin 2.4.3 does not verify SSL certificates, which makes it easier for remote attackers to trick a user into accepting an invalid server certificate for a spoofed ser…
|
CWE-310
Cryptographic Issues
|
CVE-2008-3532
|
2017-09-29 10:31 |
2008-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257020
|
- |
|
sun
|
opensolaris solaris
|
Unspecified vulnerability in the pthread_mutex_reltimedlock_np API in Sun Solaris 10 and OpenSolaris before snv_90 allows local users to cause a denial of service (system hang or panic) via unknown v…
|
NVD-CWE-noinfo CWE-399
Resource Management Errors
|
CVE-2008-3549
|
2017-09-29 10:31 |
2008-08-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|