257501
|
- |
|
neat_web
|
neat-web
|
SQL injection vulnerability in index.php in Neat weblog 0.2 allows remote attackers to execute arbitrary SQL commands via the articleId parameter in a show action, probably related to the showArticle…
|
CWE-89
SQL Injection
|
CVE-2008-1639
|
2017-09-29 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257502
|
- |
|
jgs-xa
|
jgs_treffen
|
SQL injection vulnerability in jgs_treffen.php in the JGS-XA JGS-Treffen 2.0.2 and earlier addon for Woltlab Burning Board (wBB) allows remote attackers to execute arbitrary SQL commands via the view…
|
CWE-89
SQL Injection
|
CVE-2008-1640
|
2017-09-29 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257503
|
- |
|
guillaume_meister
|
php_spammanager
|
Directory traversal vulnerability in body.php in phpSpamManager (phpSM) 0.53 beta allows remote attackers to read arbitrary local files via a .. (dot dot) in the filename parameter.
|
CWE-22
Path Traversal
|
CVE-2008-1645
|
2017-09-29 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257504
|
- |
|
arnos_toolbox wordpress
|
wp-download wp_download
|
SQL injection vulnerability in wp-download.php in the WP-Download 1.2 plugin for WordPress allows remote attackers to execute arbitrary SQL commands via the dl_id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-1646
|
2017-09-29 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257505
|
- |
|
chilkat_software
|
chilkathttp_activex
|
The ChilkatHttp.ChilkatHttp.1 and ChilkatHttp.ChilkatHttpRequest.1 ActiveX controls in ChilkatHttp.dll 2.4.0.0, 2.3.0.0, and earlier in ChilkatHttp ActiveX expose the unsafe SaveLastError method, whi…
|
CWE-20
Improper Input Validation
|
CVE-2008-1647
|
2017-09-29 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257506
|
- |
|
adobe
|
flash_player
|
Interaction error between Adobe Flash and multiple Universal Plug and Play (UPnP) services allow remote attackers to perform Cross-Site Request Forgery (CSRF) style attacks by using the Flash navigat…
|
CWE-352
Origin Validation Error
|
CVE-2008-1654
|
2017-09-29 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257507
|
- |
|
adobe
|
air flash_player flex
|
Unspecified vulnerability in Adobe Flash Player 9.0.115.0 and earlier, and 8.0.39.0 and earlier, makes it easier for remote attackers to conduct DNS rebinding attacks via unknown vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2008-1655
|
2017-09-29 10:30 |
2008-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257508
|
- |
|
hp
|
ldap-ux
|
Unspecified vulnerability in HP LDAP-UX vB.04.10 through vB.04.15 allows local users to gain privileges via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2008-1659
|
2017-09-29 10:30 |
2008-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257509
|
- |
|
hp
|
hp-ux
|
Unspecified vulnerability in useradd on HP-UX B.11.11, B.11.23, and B.11.31 allows local users to access arbitrary files and directories via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2008-1660
|
2017-09-29 10:30 |
2008-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257510
|
- |
|
hp
|
hp-ux system_administration_manager
|
Unspecified vulnerability in the HP System Administration Manager (SAM) on HP-UX B.11.11 and B.11.23, when used to configure NFS, might allow remote attackers to read or modify arbitrary files, relat…
|
CWE-16
Configuration
|
CVE-2008-1662
|
2017-09-29 10:30 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|