261031
|
- |
|
vertex4
|
sunage
|
Integer overflow in Vertex4 SunAge 1.08.1 and earlier allows remote attackers to cause a denial of service (crash) via a crafted packet to UDP port 27960.
|
CWE-189
Numeric Errors
|
CVE-2008-6670
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261032
|
- |
|
vertex4
|
sunage
|
Vertex4 SunAge 1.08.1 and earlier allows remote attackers to cause a denial of service (infinite loop and hang) via a crafted join packet to UDP port 27960.
|
CWE-189
Numeric Errors
|
CVE-2008-6671
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261033
|
- |
|
vertex4
|
sunage
|
Vertex4 SunAge 1.08.1 and earlier allows remote attackers to cause a denial of service ("runtime error") via a crafted join packet to UDP port 27960, probably related to an invalid nickname command.
|
CWE-189
Numeric Errors
|
CVE-2008-6672
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261034
|
- |
|
quickersite
|
quickersite
|
Multiple cross-site scripting (XSS) vulnerabilities in QuickerSite 1.8.5 allow remote attackers to inject arbitrary web script or HTML via (1) the close parameter to showThumb.aspx; (2) SB_redirect a…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6675
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261035
|
- |
|
quickersite
|
quickersite
|
QuickerSite 1.8.5 allows remote attackers to obtain sensitive information via a request to showThumb.aspx without any parameters, which reveals the installation path in an error message.
|
CWE-20
Improper Input Validation
|
CVE-2008-6676
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261036
|
- |
|
quickersite
|
quickersite
|
SQL injection vulnerability in asp/includes/contact.asp in QuickerSite 1.8.5 allows remote attackers to execute arbitrary SQL commands via the sNickName parameter in a profile action to default.asp.
|
CWE-89
SQL Injection
|
CVE-2008-6678
|
2017-08-17 10:29 |
2009-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261037
|
- |
|
clamav
|
clamav
|
libclamav/pe.c in ClamAV before 0.95 allows remote attackers to cause a denial of service (crash) via a crafted EXE file that triggers a divide-by-zero error.
|
CWE-189
Numeric Errors
|
CVE-2008-6680
|
2017-08-17 10:29 |
2009-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261038
|
- |
|
dojotoolkit
|
dojo
|
Cross-site scripting (XSS) vulnerability in dijit.Editor in Dojo before 1.1 allows remote attackers to inject arbitrary web script or HTML via XML entities in a TEXTAREA element.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6681
|
2017-08-17 10:29 |
2009-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261039
|
- |
|
jan_bednarik
|
cooluri
|
SQL injection vulnerability in CoolURI (cooluri) 1.0.11 and earlier extension for TYPO3 allows remote attackers to execute arbitrary SQL commands via unknown vectors.
|
CWE-89
SQL Injection
|
CVE-2008-6686
|
2017-08-17 10:29 |
2009-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261040
|
- |
|
david_cadu
|
dcdgooglemap
|
Cross-site scripting (XSS) vulnerability in DCD GoogleMap (dcdgooglemap) 1.1.0 and earlier extension for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6687
|
2017-08-17 10:29 |
2009-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|