261321
|
- |
|
sun
|
java_asp_server
|
The Admin Server in Sun Java Active Server Pages (ASP) Server before 4.0.3 stores sensitive information under the web root with insufficient access control, which allows remote attackers to read pass…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-2402
|
2017-08-8 10:31 |
2008-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261322
|
- |
|
sun
|
java_asp_server
|
Multiple directory traversal vulnerabilities in unspecified ASP applications in Sun Java Active Server Pages (ASP) Server before 4.0.3 allow remote attackers to read or delete arbitrary files via a .…
|
CWE-22
Path Traversal
|
CVE-2008-2403
|
2017-08-8 10:31 |
2008-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261323
|
- |
|
sun
|
java_asp_server
|
Stack-based buffer overflow in the request handling implementation in Sun Java Active Server Pages (ASP) Server before 4.0.3 allows remote attackers to execute arbitrary code via an unspecified strin…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-2404
|
2017-08-8 10:31 |
2008-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261324
|
- |
|
sun
|
java_active_server_pages
|
Sun Java Active Server Pages (ASP) Server before 4.0.3 allows remote attackers to execute arbitrary commands via shell metacharacters in HTTP requests to unspecified ASP applications.
|
CWE-20
Improper Input Validation
|
CVE-2008-2405
|
2017-08-8 10:31 |
2008-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261325
|
- |
|
sun
|
java_asp_server
|
The administration application server in Sun Java Active Server Pages (ASP) Server before 4.0.3 allows remote attackers to bypass authentication via direct requests on TCP port 5102.
|
CWE-287
Improper Authentication
|
CVE-2008-2406
|
2017-08-8 10:31 |
2008-06-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261326
|
- |
|
ceruleanstudios
|
trillian_pro
|
Heap-based buffer overflow in the XML parsing functionality in talk.dll in Cerulean Studios Trillian Pro before 3.1.10.0 allows remote attackers to execute arbitrary code via a malformed attribute in…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-2408
|
2017-08-8 10:31 |
2008-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261327
|
- |
|
cerulean_studios
|
trillian
|
Stack-based buffer overflow in Cerulean Studios Trillian before 3.1.10.0 allows remote attackers to execute arbitrary code via unspecified attributes in the X-MMS-IM-FORMAT header in an MSN message.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-2409
|
2017-08-8 10:31 |
2008-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261328
|
- |
|
ibm
|
lotus_domino_web_server
|
Cross-site scripting (XSS) vulnerability in the servlet engine and Web container in the Web Server service in IBM Lotus Domino before 7.0.3 FP1, and 8.x before 8.0.1, allows remote authenticated user…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2410
|
2017-08-8 10:31 |
2008-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261329
|
- |
|
acgv.free
|
acgv_news
|
SQL injection vulnerability in glossaire.php in ACGV News 0.9.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2412
|
2017-08-8 10:31 |
2008-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261330
|
- |
|
acgv.free
|
acgv_news
|
Cross-site scripting (XSS) vulnerability in glossaire.php in ACGV News 0.9.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-2413
|
2017-08-8 10:31 |
2008-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|