261011
|
- |
|
openedit
|
openedit_digital_asset_management
|
Cross-site scripting (XSS) vulnerability in archive/savedqueries/savequeryfinish.html in OpenEdit Digital Asset Management (DAM) before 5.2014 allows remote attackers to inject arbitrary web script o…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6238
|
2017-08-17 10:29 |
2009-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261012
|
- |
|
openedit
|
openedit_digital_asset_management
|
Cross-site request forgery (CSRF) vulnerability in OpenEdit Digital Asset Management (DAM) before 5.2014 allows remote attackers to perform unspecified actions as arbitrary users via unknown vectors.
|
CWE-352
Origin Validation Error
|
CVE-2008-6239
|
2017-08-17 10:29 |
2009-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261013
|
- |
|
openedit
|
openedit_digital_asset_management
|
Cross-site scripting (XSS) vulnerability in data/views/index.html in OpenEdit Digital Asset Management (DAM) before 5.2014 allows remote attackers to inject arbitrary web script or HTML via the catal…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6240
|
2017-08-17 10:29 |
2009-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261014
|
- |
|
infireal
|
saturncms
|
SQL injection vulnerability in lib/url/meta_url.php in SaturnCMS allows remote attackers to execute arbitrary SQL commands via the URL to the translate function. NOTE: the provenance of this informa…
|
CWE-89
SQL Injection
|
CVE-2008-6262
|
2017-08-17 10:29 |
2009-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261015
|
- |
|
myktools
|
myktools
|
Directory traversal vulnerability in configuration_script.php in MyKtools 3.0 allows remote authenticated administrators to include and execute arbitrary local files via a .. (dot dot) in the langage…
|
CWE-22
Path Traversal
|
CVE-2008-6273
|
2017-08-17 10:29 |
2009-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261016
|
- |
|
drupal
|
user_karma_module
|
Cross-site scripting (XSS) vulnerability in the User Karma module 5.x before 5.x-1.13 and 6.x before 6.x-1.0-beta1, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6275
|
2017-08-17 10:29 |
2009-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261017
|
- |
|
drupal
|
user_karma_module
|
Multiple SQL injection vulnerabilities in the User Karma module 5.x before 5.x-1.13 and 6.x before 6.x-1.0-beta1, a module for Drupal, allow remote authenticated administrators to execute arbitrary S…
|
CWE-89
SQL Injection
|
CVE-2008-6276
|
2017-08-17 10:29 |
2009-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261018
|
- |
|
cisco
|
wrt160n
|
Cross-site scripting (XSS) vulnerability in apply.cgi on the Linksys WRT160N allows remote attackers to inject arbitrary web script or HTML via the action parameter in a DHCP_Static operation.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6280
|
2017-08-17 10:29 |
2009-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261019
|
- |
|
subtextproject
|
subtext
|
Cross-site scripting (XSS) vulnerability in Subtext 2.0 allows remote attackers to inject arbitrary web script or HTML via a comment, related to "the feature which converts URLs to anchor tags."
|
CWE-79
Cross-site Scripting
|
CVE-2008-6283
|
2017-08-17 10:29 |
2009-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261020
|
- |
|
camera_life
|
camera_life
|
Multiple cross-site scripting (XSS) vulnerabilities in Camera Life 2.6.2b8 allow remote attackers to inject arbitrary web script or HTML via the q parameter to (1) search.php and (2) rss.php; the que…
|
CWE-79
Cross-site Scripting
|
CVE-2008-6295
|
2017-08-17 10:29 |
2009-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|