261451
|
- |
|
ibm
|
websphere_application_server
|
The HTTP_Request_Parser method in the HTTP Transport component in IBM WebSphere Application Server (WAS) 6.0.2 before 6.0.2.31 allows remote attackers to cause a denial of service (controller 0C4 abe…
|
CWE-399
Resource Management Errors
|
CVE-2008-4678
|
2017-08-8 10:32 |
2008-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261452
|
- |
|
ibm
|
websphere_application_server
|
The Web Services Security component in IBM WebSphere Application Server (WAS) 6.0.2 before 6.0.2.31 and 6.1 before 6.1.0.19, when Certificate Store Collections is configured to use Certificate Revoca…
|
CWE-287
Improper Authentication
|
CVE-2008-4679
|
2017-08-8 10:32 |
2008-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261453
|
- |
|
mantis
|
mantis
|
Mantis before 1.1.3 does not unset the session cookie during logout, which makes it easier for remote attackers to hijack sessions.
|
CWE-287
Improper Authentication
|
CVE-2008-4689
|
2017-08-8 10:32 |
2008-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261454
|
- |
|
ibm
|
db2
|
The Native Managed Provider for .NET component in IBM DB2 8 before FP17, 9.1 before FP6, and 9.5 before FP2, when a definer cannot maintain objects, preserves views and triggers without marking them …
|
NVD-CWE-noinfo
|
CVE-2008-4692
|
2017-08-8 10:32 |
2008-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261455
|
- |
|
ibm
|
db2
|
The SORT/LIST SERVICES component in IBM DB2 9.1 before FP6 and 9.5 before FP2 writes sensitive information to the trace output, which allows attackers to obtain sensitive information by reading "PASS…
|
CWE-200
Information Exposure
|
CVE-2008-4693
|
2017-08-8 10:32 |
2008-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261456
|
- |
|
opera
|
opera_browser
|
Unspecified vulnerability in Opera before 9.60 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via a redirect that specifies a crafted URL.
|
CWE-59
Link Following
|
CVE-2008-4694
|
2017-08-8 10:32 |
2008-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261457
|
- |
|
opera
|
opera
|
Opera before 9.60 allows remote attackers to obtain sensitive information and have unspecified other impact by predicting the cache pathname of a cached Java applet and then launching this applet fro…
|
CWE-200
Information Exposure
|
CVE-2008-4695
|
2017-08-8 10:32 |
2008-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261458
|
- |
|
opera
|
opera_browser
|
The Fast Forward feature in Opera before 9.61, when a page is located in a frame, executes a javascript: URL in the context of the outermost page instead of the page that contains this URL, which all…
|
CWE-79
Cross-site Scripting
|
CVE-2008-4697
|
2017-08-8 10:32 |
2008-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261459
|
- |
|
opera
|
opera_browser
|
Opera before 9.61 does not properly block scripts during preview of a news feed, which allows remote attackers to create arbitrary new feed subscriptions and read the contents of arbitrary feeds.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4698
|
2017-08-8 10:32 |
2008-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261460
|
- |
|
liberiacms
|
liberia_cms
|
SQL injection vulnerability in admin.php in Libera CMS 1.12, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the libera_staff_user cookie parameter, a…
|
CWE-89
SQL Injection
|
CVE-2008-4701
|
2017-08-8 10:32 |
2008-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|