261601
|
- |
|
sun
|
java_system_web_server_plugin n1_service_provisioning_system
|
Unspecified vulnerability in the Sun Java System Web Server 7.0 plugin in Sun N1 Service Provisioning System (SPS) 5.2 and 6.0 allows remote authenticated SPS users to gain administrative access to t…
|
CWE-287
Improper Authentication
|
CVE-2008-3425
|
2017-08-8 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261602
|
- |
|
phpfreechat
|
phpfreechat
|
Session fixation vulnerability in phpFreeChat 1.1 allows remote authenticated users to hijack web sessions by setting the session_id parameter to match the victim's nickid parameter.
|
CWE-287
Improper Authentication
|
CVE-2008-3428
|
2017-08-8 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261603
|
- |
|
httrack
|
httrack winhttrack
|
Buffer overflow in URI processing in HTTrack and WinHTTrack before 3.42-3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long URL.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-3429
|
2017-08-8 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261604
|
- |
|
eyeball_networks
|
eyeball_messenger_sdk
|
Buffer overflow in the CoVideoWindow.ocx ActiveX control 5.0.907.1 in Eyeball MessengerSDK, as used in products such as SiOL Komunikator 1.3, allows remote attackers to execute arbitrary code via a l…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-3430
|
2017-08-8 10:31 |
2008-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261605
|
- |
|
mozilla
|
firefox
|
The content layout component in Mozilla Firefox 3.0 and 3.0.1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted but well-formed web p…
|
CWE-20
Improper Input Validation
|
CVE-2008-3444
|
2017-08-8 10:31 |
2008-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261606
|
- |
|
mailenable
|
mailenable
|
MailEnable Professional 3.5.2 and Enterprise 3.52 allow remote attackers to cause a denial of service (crash) via multiple IMAP connection requests to the same folder.
|
CWE-399
Resource Management Errors
|
CVE-2008-3449
|
2017-08-8 10:31 |
2008-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261607
|
- |
|
phpwebgallery
|
phpwebgallery
|
PhpWebGallery 1.7.0 and 1.7.1 allows remote authenticated users with advisor privileges to obtain the real e-mail addresses of other users by editing the user's profile.
|
CWE-200
Information Exposure
|
CVE-2008-3451
|
2017-08-8 10:31 |
2008-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261608
|
- |
|
impresscms
|
impresscms
|
Multiple unspecified vulnerabilities in ImpressCMS 1.0 have unknown impact and attack vectors, related to modules/admin.php and "a few files."
|
NVD-CWE-noinfo
|
CVE-2008-3453
|
2017-08-8 10:31 |
2008-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261609
|
- |
|
phpmyadmin
|
phpmyadmin
|
phpMyAdmin before 2.11.8 does not sufficiently prevent its pages from using frames that point to pages in other domains, which makes it easier for remote attackers to conduct spoofing or phishing act…
|
CWE-59
Link Following
|
CVE-2008-3456
|
2017-08-8 10:31 |
2008-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261610
|
- |
|
phpmyadmin
|
phpmyadmin
|
Cross-site scripting (XSS) vulnerability in setup.php in phpMyAdmin before 2.11.8 allows user-assisted remote attackers to inject arbitrary web script or HTML via crafted setup arguments. NOTE: this…
|
CWE-79
Cross-site Scripting
|
CVE-2008-3457
|
2017-08-8 10:31 |
2008-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|