263841
|
- |
|
drupal
|
workflow
|
Cross-site scripting (XSS) vulnerability in the Workflow 4.7.x before 4.7.x-1.2 and 5.x before 5.x-1.2 module for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified…
|
CWE-79
Cross-site Scripting
|
CVE-2008-0463
|
2017-08-8 10:29 |
2008-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263842
|
- |
|
firebirdsql
|
firebird
|
Stack-based buffer overflow in Firebird before 2.0.4, and 2.1.x before 2.1.0 RC1, might allow remote attackers to execute arbitrary code via a long username.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-0467
|
2017-08-8 10:29 |
2008-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263843
|
- |
|
manageengine
|
applications_manager
|
Multiple cross-site scripting (XSS) vulnerabilities in ManageEngine Applications Manager 8.1 build 8100 allow remote attackers to inject arbitrary web script or HTML via the (1) showlink parameter to…
|
CWE-79
Cross-site Scripting
|
CVE-2008-0474
|
2017-08-8 10:29 |
2008-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263844
|
- |
|
manageengine
|
applications_manager
|
ManageEngine Applications Manager 8.1 build 8100 allows remote attackers to obtain sensitive information ( Home->Summary) via an invalid URI, as demonstrated by the "/-" URI. NOTE: the provenance of…
|
CWE-20
Improper Input Validation
|
CVE-2008-0475
|
2017-08-8 10:29 |
2008-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263845
|
- |
|
manageengine
|
applications_manager
|
ManageEngine Applications Manager 8.1 build 8100 does not check authentication for monitorType.do and unspecified other pages, which allows remote attackers to obtain sensitive information and change…
|
CWE-287
Improper Authentication
|
CVE-2008-0476
|
2017-08-8 10:29 |
2008-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263846
|
- |
|
ibm
|
hardware_management_console
|
Unspecified vulnerability in the Pegasus CIM Server in IBM Hardware Management Console (HMC) 7 R3.2.0 allows remote attackers to cause a denial of service via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2008-0495
|
2017-08-8 10:29 |
2008-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263847
|
- |
|
mamboxchange
|
laithai
|
SQL injection vulnerability in Mambo LaiThai 4.5.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2008-0499
|
2017-08-8 10:29 |
2008-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263848
|
- |
|
mamboxchange
|
laithai
|
Multiple unspecified vulnerabilities in Mambo LaiThai 4.5.5 have unknown impact and attack vectors related to (1) mod_login and (2) mod_template_chooser.
|
NVD-CWE-noinfo
|
CVE-2008-0500
|
2017-08-8 10:29 |
2008-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263849
|
- |
|
sqlite_manager
|
sqlite_manager
|
PHP remote file inclusion vulnerability in spaw/dialogs/confirm.php in SQLiteManager 1.2.0 allows remote attackers to execute arbitrary PHP code via a URL in the spaw_root parameter. NOTE: the prove…
|
CWE-94
Code Injection
|
CVE-2008-0516
|
2017-08-8 10:29 |
2008-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263850
|
- |
|
softcart
|
softcart
|
Multiple cross-site scripting (XSS) vulnerabilities in SoftCart.exe in SoftCart 5.1.2.2 allow remote attackers to inject arbitrary web script or HTML via the (1) License_Plate, (2) License_State, (3)…
|
CWE-79
Cross-site Scripting
|
CVE-2008-0523
|
2017-08-8 10:29 |
2008-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|