260741
|
- |
|
uoregon
|
tau
|
tau 2.16.4 allows local users to overwrite arbitrary files via a symlink attack on a (1) /tmp/makefile.tau.*.##### or (2) /tmp/makefile.tau*.##### temporary file, related to the (a) tau_cxx, (b) tau_…
|
CWE-59
Link Following
|
CVE-2008-5157
|
2017-08-8 10:33 |
2008-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260742
|
- |
|
eticket
|
eticket
|
Multiple SQL injection vulnerabilities in eTicket 1.5.7 allow remote attackers to execute arbitrary SQL commands via the pri parameter to (1) index.php, (2) open.php, (3) open_raw.php, and (4) newtic…
|
CWE-89
SQL Injection
|
CVE-2008-5165
|
2017-08-8 10:33 |
2008-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260743
|
- |
|
forumsoftware
|
yazd_forum_software
|
Multiple cross-site scripting (XSS) vulnerabilities in Yazd Forum Software 3.x allow remote attackers to inject arbitrary web script or HTML via the (1) q parameter to (a) search.jsp, and the (2) msg…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5172
|
2017-08-8 10:33 |
2008-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260744
|
- |
|
testmaker
|
testmaker
|
Unspecified vulnerability in testMaker before 3.0p16 allows remote authenticated users to execute arbitrary PHP code via unspecified attack vectors.
|
NVD-CWE-noinfo CWE-94
Code Injection
|
CVE-2008-5173
|
2017-08-8 10:33 |
2008-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260745
|
- |
|
visicommedia
|
aceftp
|
Directory traversal vulnerability in the FTP client in AceFTP Freeware 3.80.3 and AceFTP Pro 3.80.3 allows remote FTP servers to create or overwrite arbitrary files via a .. (dot dot) in a response t…
|
CWE-22
Path Traversal
|
CVE-2008-5175
|
2017-08-8 10:33 |
2008-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260746
|
- |
|
microsoft
|
office_communications_server office_communicator windows_live_messenger
|
Unspecified vulnerability in Microsoft Office Communications Server (OCS), Office Communicator, and Windows Live Messenger allows remote attackers to cause a denial of service (crash) via a crafted R…
|
NVD-CWE-noinfo
|
CVE-2008-5179
|
2017-08-8 10:33 |
2008-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260747
|
- |
|
microsoft
|
office_communicator
|
Microsoft Communicator allows remote attackers to cause a denial of service (application or device outage) via instant messages containing large numbers of emoticons.
|
CWE-399
Resource Management Errors
|
CVE-2008-5181
|
2017-08-8 10:33 |
2008-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260748
|
- |
|
geshi
|
geshi
|
The highlighting functionality in geshi.php in GeSHi before 1.0.8 allows remote attackers to cause a denial of service (infinite loop) via an XML sequence containing an opening delimiter without a cl…
|
CWE-399
Resource Management Errors
|
CVE-2008-5185
|
2017-08-8 10:33 |
2008-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260749
|
- |
|
phpoutsourcing
|
ideabox
|
PHP remote file inclusion vulnerability in include.php in PHPOutsourcing IdeaBox (aka IdeBox) 1.1 allows remote attackers to execute arbitrary PHP code via a URL in the gorumDir parameter.
|
CWE-94
Code Injection
|
CVE-2008-5199
|
2017-08-8 10:33 |
2008-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260750
|
- |
|
mosxml
|
mosxml
|
PHP remote file inclusion vulnerability in modules/mod_mainmenu.php in MosXML 1 Alpha allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path parameter. NOTE: …
|
CWE-94
Code Injection
|
CVE-2008-5206
|
2017-08-8 10:33 |
2008-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|