260411
|
- |
|
3com
|
wireless_8760_dual-radio
|
The web management interface in 3Com Wireless 8760 Dual Radio 11a/b/g PoE Access Point allows remote attackers to cause a denial of service (device crash) via a malformed HTTP POST request.
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2008-6395
|
2017-08-17 10:29 |
2009-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260412
|
- |
|
celerondude
|
uploader
|
Cross-site scripting (XSS) vulnerability in account.php in Celerondude Uploader 6.1 allows remote attackers to inject arbitrary web script or HTML via the username parameter. NOTE: some of these det…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6396
|
2017-08-17 10:29 |
2009-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260413
|
- |
|
alcovebook
|
sgml2x
|
rlatex in AlcoveBook sgml2x 1.0.0 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
|
CWE-59
Link Following
|
CVE-2008-6397
|
2017-08-17 10:29 |
2009-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260414
|
- |
|
eric_raymond
|
sng
|
sng_regress in SNG 1.0.2 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/recompiled$$.png, (2) /tmp/decompiled$$.sng, and (3) /tmp/canonicalized$$.sng temporary f…
|
CWE-59
Link Following
|
CVE-2008-6398
|
2017-08-17 10:29 |
2009-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260415
|
- |
|
refbase
|
refbase
|
Cross-site scripting (XSS) vulnerability in refbase before 0.9.5 allows remote attackers to inject arbitrary web script or HTML via the headerMsg parameter to (1) show.php and (2) search.php. NOTE: …
|
CWE-79
Cross-site Scripting
|
CVE-2008-6400
|
2017-08-17 10:29 |
2009-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260416
|
- |
|
extrosoft
|
thyme
|
Cross-site scripting (XSS) vulnerability in add_calendars.php in eXtrovert Software Thyme 1.3 allows remote attackers to inject arbitrary web script or HTML via the callback parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6404
|
2017-08-17 10:29 |
2009-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260417
|
- |
|
vignette
|
vignette_content_management
|
Unspecified vulnerability in Vignette Content Management 7.3.0.5, 7.3.1, 7.3.1.1, 7.4, and 7.5 allows "low privileged" users to gain administrator privileges via unknown attack vectors.
|
NVD-CWE-noinfo
|
CVE-2008-6412
|
2017-08-17 10:29 |
2009-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260418
|
- |
|
ticklespace
|
answers_module
|
Cross-site scripting (XSS) vulnerability in the Answers module 5.x-1.x-dev and possibly other 5.x versions, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via a S…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6413
|
2017-08-17 10:29 |
2009-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260419
|
- |
|
youngzsoft
|
ccproxy
|
Buffer overflow in YoungZSoft CCProxy 6.5 might allow remote attackers to execute arbitrary code via a CONNECTION request with a long hostname.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-6415
|
2017-08-17 10:29 |
2009-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260420
|
- |
|
greensql
|
greensql-console
|
Multiple cross-site scripting (XSS) vulnerabilities in GreenSQL-Console before 0.3.5 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors related to "internal pages."
|
CWE-79
Cross-site Scripting
|
CVE-2008-6416
|
2017-08-17 10:29 |
2009-03-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|