260881
|
- |
|
link3
|
simplenews
|
Cross-site scripting (XSS) vulnerability in the Simplenews module 5.x before 5.x-1.5 and 6.x before 6.x-1.0-beta4, a module for Drupal, allows remote authenticated users, with "administer taxonomy" p…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5996
|
2017-08-8 10:33 |
2009-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260882
|
- |
|
ocp2
|
omnicom_content_platform
|
Absolute path traversal vulnerability in admin/fileKontrola/browser.asp in Omnicom Content Platform (OCP) 2.0 allows remote attackers to list arbitrary directories via a full pathname in the root par…
|
CWE-22
Path Traversal
|
CVE-2008-5997
|
2017-08-8 10:33 |
2009-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260883
|
- |
|
drupal
|
ajax_checklist
|
Cross-site scripting (XSS) vulnerability in the Ajax Checklist module 5.x before 5.x-1.1 for Drupal allows remote authenticated users, with create and edit permissions for posts, to inject arbitrary …
|
CWE-79
Cross-site Scripting
|
CVE-2008-5999
|
2017-08-8 10:33 |
2009-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260884
|
- |
|
gdata
|
antivirus_2008 internetsecurity_2008 totalcare_2008
|
The GDTdiIcpt.sys driver in G DATA AntiVirus 2008, InternetSecurity 2008, and TotalCare 2008 populates kernel registers with IOCTL 0x8317001c input values, which allows local users to cause a denial …
|
CWE-399
Resource Management Errors
|
CVE-2008-6000
|
2017-08-8 10:33 |
2009-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260885
|
- |
|
gdata
|
antivirus_2008 internetsecurity_2008 totalcare_2008
|
Per http://trapkit.de/advisories/TKADV2008-008.txt
Upgrade to G DATA AntiVirus/InternetSecurity/TotalCare 2009.
http://www.gdata.de/
|
CWE-399
Resource Management Errors
|
CVE-2008-6000
|
2017-08-8 10:33 |
2009-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260886
|
- |
|
openfreeway
|
freeway
|
Multiple SQL injection vulnerabilities in Freeway before 1.4.3.210 allow remote attackers to execute arbitrary SQL commands via unspecified vectors involving the (1) advanced search result and (2) se…
|
CWE-89
SQL Injection
|
CVE-2008-6013
|
2017-08-8 10:33 |
2009-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260887
|
- |
|
editeurscripts
|
esfaq
|
Multiple SQL injection vulnerabilities in search.php in EsFaq 2.0 allow remote attackers to execute arbitrary SQL commands via the (1) keywords and (2) cat parameters. NOTE: the provenance of this i…
|
CWE-89
SQL Injection
|
CVE-2008-6015
|
2017-08-8 10:33 |
2009-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260888
|
- |
|
editeurscripts
|
esfaq
|
SQL injection vulnerability in questions.php in EsFaq 2.0 allows remote attackers to execute arbitrary SQL commands via the cid parameter, a different vector than CVE-2008-3952. NOTE: the provenance…
|
CWE-89
SQL Injection
|
CVE-2008-6016
|
2017-08-8 10:33 |
2009-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260889
|
- |
|
do-cms
|
do-cms
|
SQL injection vulnerability in index.php in EACOMM DO-CMS 3.0 allows remote attackers to execute arbitrary SQL commands via the p parameter. NOTE: the provenance of this information is unknown; the …
|
CWE-89
SQL Injection
|
CVE-2008-6019
|
2017-08-8 10:33 |
2009-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260890
|
- |
|
drupal
|
views
|
SQL injection vulnerability in the Views module 6.x before 6.x-2.2 for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors related to "an exposed filter on CCK te…
|
CWE-89
SQL Injection
|
CVE-2008-6020
|
2017-08-8 10:33 |
2009-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|