261141
|
- |
|
ibm
|
websphere_application_server
|
Unspecified vulnerability in the Performance Monitoring Infrastructure (PMI) feature in the Servlet Engine/Web Container component in IBM WebSphere Application Server (WAS) 6.1.x before 6.1.0.19, whe…
|
CWE-399
Resource Management Errors
|
CVE-2008-4285
|
2017-08-8 10:32 |
2009-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261142
|
- |
|
opera
|
opera_browser
|
Opera before 9.52 does not check the CRL override upon encountering a certificate that lacks a CRL, which has unknown impact and attack vectors. NOTE: it is not clear whether this is a vulnerability…
|
NVD-CWE-noinfo CWE-255
Credentials Management
|
CVE-2008-4292
|
2017-08-8 10:32 |
2008-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261143
|
- |
|
opera
|
opera
|
Unspecified vulnerability in Opera before 9.52 on Windows, when registered as a protocol handler, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via …
|
NVD-CWE-noinfo
|
CVE-2008-4293
|
2017-08-8 10:32 |
2008-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261144
|
- |
|
ibm
|
tivoli_netcool_webtop
|
IBM Tivoli Netcool/Webtop 2.1 before 2.1.0.5 preserves cached user privileges after logout, which allows physically proximate attackers to hijack a session by visiting an unattended workstation, as d…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4294
|
2017-08-8 10:32 |
2008-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261145
|
- |
|
php-collab
|
php-collab
|
Multiple SQL injection vulnerabilities in phpCollab 2.5 rc3, 2.4, and earlier allow remote attackers to execute arbitrary SQL commands via the loginForm parameter to general/login.php, and unspecifie…
|
CWE-89
SQL Injection
|
CVE-2008-4303
|
2017-08-8 10:32 |
2008-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261146
|
- |
|
phpcollab
|
phpcollab
|
general/login.php in phpCollab 2.5 rc3 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified input related to the SSL_CLIENT_CERT environment varia…
|
CWE-78
OS Command
|
CVE-2008-4304
|
2017-08-8 10:32 |
2008-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261147
|
- |
|
php-collab
|
php-collab
|
Static code injection vulnerability in installation/setup.php in phpCollab 2.5 rc3 and earlier allows remote authenticated administrators to inject arbitrary PHP code into include/settings.php via th…
|
CWE-94
Code Injection
|
CVE-2008-4305
|
2017-08-8 10:32 |
2008-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261148
|
- |
|
freedesktop
|
dbus
|
The default configuration of system.conf in D-Bus (aka DBus) before 1.2.6 omits the send_type attribute in certain rules, which allows local users to bypass intended access restrictions by (1) sendin…
|
CWE-16
Configuration
|
CVE-2008-4311
|
2017-08-8 10:32 |
2008-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261149
|
- |
|
opennms.org
|
opennms
|
Multiple cross-site scripting (XSS) vulnerabilities in OpenNMS before 1.5.94 allow remote attackers to inject arbitrary web script or HTML via (1) the j_username parameter to j_acegi_security_check, …
|
CWE-79
Cross-site Scripting
|
CVE-2008-4320
|
2017-08-8 10:32 |
2008-09-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261150
|
- |
|
bitweaver
|
bitweaver
|
Cross-site scripting (XSS) vulnerability in Bitweaver 2.0.2 allows remote attackers to inject arbitrary web script or HTML via the URL parameter to (1) edit.php and (2) list.php in articles/; (3) lis…
|
CWE-79
Cross-site Scripting
|
CVE-2008-4337
|
2017-08-8 10:32 |
2008-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|