258161
|
- |
|
jspwiki
|
jspwiki
|
Cross-site scripting (XSS) vulnerability in Edit.jsp in JSPWiki 2.4.104 and 2.5.139 allows remote attackers to inject arbitrary web script or HTML via the editor parameter, a different vector than CV…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1229
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258162
|
- |
|
jspwiki
|
jspwiki
|
Reference links suggest possible solution upgrade to latest version (2.6.1) at:
http://www.jspwiki.org/wiki/JSPWikiDownload
|
CWE-79
Cross-site Scripting
|
CVE-2008-1229
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258163
|
- |
|
jspwiki
|
jspwiki
|
Unrestricted file upload vulnerability in JSPWiki 2.4.104 and 2.5.139 allows remote attackers to upload and execute arbitrary .jsp files via an unspecified manipulation that attaches a .jsp file to a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-1230
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258164
|
- |
|
jspwiki
|
jspwiki
|
Reference links suggest possible solution upgrade to latest version (2.6.1) at:
http://www.jspwiki.org/wiki/JSPWikiDownload
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-1230
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258165
|
- |
|
jspwiki
|
jspwiki
|
Directory traversal vulnerability in Edit.jsp in JSPWiki 2.4.104 and 2.5.139 allows remote attackers to include and execute arbitrary local .jsp files, and obtain sensitive information, via a .. (dot…
|
CWE-22
Path Traversal
|
CVE-2008-1231
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258166
|
- |
|
jspwiki
|
jspwiki
|
Reference links suggest possible solution upgrade to latest version (2.6.1) at:
http://www.jspwiki.org/wiki/JSPWikiDownload
|
CWE-22
Path Traversal
|
CVE-2008-1231
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258167
|
- |
|
bmscripts
|
bm_classifieds
|
Multiple SQL injection vulnerabilities in BM Classifieds 20080309 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) cat parameter to showad.php and the (2) ad parameter…
|
CWE-89
SQL Injection
|
CVE-2008-1272
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258168
|
- |
|
ibm
|
aix
|
Untrusted search path vulnerability in man in IBM AIX 6.1.0 allows local users to execute arbitrary code via a malicious program in the man directory.
|
NVD-CWE-Other
|
CVE-2008-1274
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258169
|
- |
|
ibm
|
aix
|
Per: http://cwe.mitre.org/data/definitions/426.html
'CWE-426: Untrusted Search Path'
|
NVD-CWE-Other
|
CVE-2008-1274
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258170
|
- |
|
mailenable
|
mailenable_enterprise mailenable_professional mailenable_standard
|
Multiple unspecified vulnerabilities in the SMTP service in MailEnable Standard Edition 1.x, Professional Edition 3.x and earlier, and Enterprise Edition 3.x and earlier allow remote attackers to cau…
|
NVD-CWE-noinfo
|
CVE-2008-1275
|
2017-09-29 10:30 |
2008-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|