260961
|
- |
|
twiki
|
twiki
|
Cross-site scripting (XSS) vulnerability in TWiki before 4.2.4 allows remote attackers to inject arbitrary web script or HTML via the %URLPARAM{}% variable.
|
CWE-79
Cross-site Scripting
|
CVE-2008-5304
|
2017-08-8 10:33 |
2008-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260962
|
- |
|
tiki
|
tikiwiki_cms\/groupware
|
Unspecified vulnerability in Tikiwiki before 2.2 has unknown impact and attack vectors related to "size of user-provided input," a different issue than CVE-2008-3653.
|
NVD-CWE-noinfo
|
CVE-2008-5318
|
2017-08-8 10:33 |
2008-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260963
|
- |
|
tiki
|
tikiwiki_cms\/groupware
|
Unspecified vulnerability in Tikiwiki before 2.2 has unknown impact and attack vectors related to tiki-error.php, a different issue than CVE-2008-3653.
|
NVD-CWE-noinfo
|
CVE-2008-5319
|
2017-08-8 10:33 |
2008-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260964
|
- |
|
ibm
|
rational_clearquest
|
The ClearQuest Maintenance Tool in IBM Rational ClearQuest 7.0.0 before 7.0.0.4 and 7.0.1 before 7.0.1.3 on Windows allows local users to obtain (1) user and (2) database passwords by using a passwor…
|
CWE-255
Credentials Management
|
CVE-2008-5326
|
2017-08-8 10:33 |
2008-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260965
|
- |
|
ibm
|
rational_clearquest
|
The ClearQuest Maintenance Tool in IBM Rational ClearQuest 7 before 7.1 stores the database password in cleartext in an object in a ClearQuest connection profile or export file, which allows remote a…
|
CWE-255
Credentials Management
|
CVE-2008-5327
|
2017-08-8 10:33 |
2008-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260966
|
- |
|
ibm
|
rational_clearquest
|
The ClearQuest Maintenance Tool in IBM Rational ClearQuest before 7 stores the database password in cleartext in an object in a ClearQuest connection profile or export file, which allows remote authe…
|
CWE-310
Cryptographic Issues
|
CVE-2008-5328
|
2017-08-8 10:33 |
2008-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260967
|
- |
|
ibm
|
rational_clearquest
|
ClearQuest Web in IBM Rational ClearQuest MultiSite before 7.1 allows remote servers to direct a client's submissions and changes to an arbitrary database by specifying multiple comma-separated serve…
|
NVD-CWE-Other
|
CVE-2008-5329
|
2017-08-8 10:33 |
2008-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260968
|
- |
|
ibm
|
rational_clearquest
|
Multiple cross-site scripting (XSS) vulnerabilities in the web interface in ClearCase RWP server in IBM Rational ClearCase 7.0.0 before 7.0.0.4, and 7.0.1.1-RATL-RCC-IFIX02 and possibly other 7.0.1 v…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5330
|
2017-08-8 10:33 |
2008-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260969
|
- |
|
i-o_data
|
hlf-f160 hlf-f250 hlf-f300 hlf-f320
|
Cross-site request forgery (CSRF) vulnerability in I-O DATA DEVICE HDL-F160, HDL-F250, HDL-F300, and HDL-F320 firmware before 1.02 allows remote attackers to (1) change a configuration or (2) delete …
|
CWE-352
Origin Validation Error
|
CVE-2008-5382
|
2017-08-8 10:33 |
2008-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260970
|
- |
|
tor
|
tor
|
Tor before 0.2.0.32 does not properly process the (1) User and (2) Group configuration options, which might allow local users to gain privileges by leveraging unintended supplementary group membershi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-5397
|
2017-08-8 10:33 |
2008-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|