258461
|
- |
|
roxio
|
cineplayer
|
Heap-based buffer overflow in the SonicMediaPlayer ActiveX control in SonicMediaPlayer.dll in Roxio CinePlayer 3.2 allows remote attackers to execute arbitrary code via a long argument to the DiskTyp…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-4841
|
2017-09-19 10:30 |
2010-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258462
|
- |
|
scripts.oldguy
|
talkback
|
addons/import.php in TalkBack 2.3.14 allows remote attackers to execute arbitrary commands via the result parameter.
|
CWE-20
Improper Input Validation
|
CVE-2009-4854
|
2017-09-19 10:30 |
2010-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258463
|
- |
|
demarque
|
typing_pal
|
SQL injection vulnerability in demo.php in Typing Pal 1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the idTableProduit parameter.
|
CWE-89
SQL Injection
|
CVE-2009-4860
|
2017-09-19 10:30 |
2010-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258464
|
- |
|
abushhab
|
alwasel
|
Multiple SQL injection vulnerabilities in Alwasel 1.5 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) show.php and (2) xml.php.
|
CWE-89
SQL Injection
|
CVE-2009-4862
|
2017-09-19 10:30 |
2010-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258465
|
- |
|
ultraplayer
|
ultraplayer_media_player
|
Stack-based buffer overflow in UltraPlayer Media Player 2.112 allows remote attackers to execute arbitrary code via a long string in a .usk file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-4863
|
2017-09-19 10:30 |
2010-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258466
|
- |
|
tony_million
|
tuniac
|
Buffer overflow in Tuniac 090517c allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long URL in a .m3u playlist file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-4867
|
2017-09-19 10:30 |
2010-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258467
|
- |
|
phpcityportal
|
phpcityportal
|
Multiple SQL injection vulnerabilities in login.php in PHPCityPortal allow remote attackers to execute arbitrary SQL commands via the (1) req_username (aka Username) and (2) req_password (aka Passwor…
|
CWE-89
SQL Injection
|
CVE-2009-4870
|
2017-09-19 10:30 |
2010-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258468
|
- |
|
logoshows
|
logoshows_bbs
|
SQL injection vulnerability in globepersonnel_forum.asp in Logoshows BBS 2.0 allows remote attackers to execute arbitrary SQL commands via the forumid parameter.
|
CWE-89
SQL Injection
|
CVE-2009-4871
|
2017-09-19 10:30 |
2010-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258469
|
- |
|
logoshows
|
logoshows_bbs
|
Multiple SQL injection vulnerabilities in globepersonnel_login.asp in Logoshows BBS 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) username and (2) password fields.
|
CWE-89
SQL Injection
|
CVE-2009-4872
|
2017-09-19 10:30 |
2010-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258470
|
- |
|
scripts.oldguy
|
talkback
|
TalkBack 2.3.14 does not properly restrict access to the edit comment feature (comments.php), which allows remote attackers to modify comments.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-4874
|
2017-09-19 10:30 |
2010-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|