263521
|
- |
|
drupal
|
shindig-integrator
|
Shindig-Integrator 5.x, a module for Drupal, does not properly restrict generated page access, which allows remote attackers to gain privileges via unspecified vectors.
|
NVD-CWE-noinfo CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4597
|
2017-08-8 10:32 |
2008-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263522
|
- |
|
drupal
|
shindig-integrator
|
Unspecified vulnerability in Shindig-Integrator 5.x, a module for Drupal, has unspecified impact and remote attack vectors related to "numerous flaws" that are not related to XSS or access control, a…
|
NVD-CWE-noinfo
|
CVE-2008-4598
|
2017-08-8 10:32 |
2008-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263523
|
- |
|
habari
|
cms
|
Cross-site scripting (XSS) vulnerability in the login feature in Habari CMS 0.5.1 allows remote attackers to inject arbitrary web script or HTML via the habari_username parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-4601
|
2017-08-8 10:32 |
2008-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263524
|
- |
|
habari
|
cms
|
Patch Information - http://habariproject.org/en/download
|
CWE-79
Cross-site Scripting
|
CVE-2008-4601
|
2017-08-8 10:32 |
2008-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263525
|
- |
|
portalapp
|
portalapp
|
Unspecified vulnerability in i_utils.asp in PortalApp before 4.01a has unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2008-4615
|
2017-08-8 10:32 |
2008-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263526
|
- |
|
usagi
|
mynets
|
Cross-site scripting (XSS) vulnerability in Usagi Project MyNETS 1.2.0 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2008-4629
|
2017-08-8 10:32 |
2008-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263527
|
- |
|
midgard
|
midgard_components_framework
|
Multiple unspecified vulnerabilities in Midgard Components (MidCOM) Framework before 8.09.1 have unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2008-4630
|
2017-08-8 10:32 |
2008-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263528
|
- |
|
myer_sound_laboratories
|
muscle
|
Stack-based buffer overflow in the Message::AddToString function in message/Message.cpp in MUSCLE before 4.40 allows remote attackers to cause a denial of service (crash) and possibly execute arbitra…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-4631
|
2017-08-8 10:32 |
2008-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263529
|
- |
|
drupal
|
node_clone
|
SQL injection vulnerability in Node Vote 5.x before 5.x-1.1 and 6.x before 6.x-1.0, a module for Drupal, when "Allow user to vote again" is enabled, allows remote authenticated users to execute arbit…
|
CWE-89
SQL Injection
|
CVE-2008-4633
|
2017-08-8 10:32 |
2008-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263530
|
- |
|
six_apart
|
movable_type
|
Cross-site scripting (XSS) vulnerability in Movable Type 4 through 4.21 allows remote attackers to inject arbitrary web script or HTML via unknown vectors related to the administrative page, a differ…
|
CWE-79
Cross-site Scripting
|
CVE-2008-4634
|
2017-08-8 10:32 |
2008-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|