261571
|
- |
|
nokia
|
6131_nfc
|
The SmartPoster implementation on the Nokia 6131 Near Field Communication (NFC) phone with 05.12 firmware does not properly display the URI record when the Title record contains a certain combination…
|
CWE-59
Link Following
|
CVE-2008-5825
|
2017-08-8 10:33 |
2009-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261572
|
- |
|
nokia
|
6131_nfc
|
The Nokia 6131 Near Field Communication (NFC) phone with 05.12 firmware allows remote attackers to cause a denial of service (device crash) via (1) a large value in the payload length field in an NDE…
|
CWE-20
Improper Input Validation
|
CVE-2008-5826
|
2017-08-8 10:33 |
2009-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261573
|
- |
|
nokia
|
6131_nfc
|
The Nokia 6131 Near Field Communication (NFC) phone with 05.12 firmware automatically installs software upon completing the download of a JAR file, which makes it easier for remote attackers to execu…
|
CWE-16
Configuration
|
CVE-2008-5827
|
2017-08-8 10:33 |
2009-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261574
|
- |
|
foxmail
|
foxmail
|
Buffer overflow in Foxmail 6.5 allows remote attackers to execute arbitrary code via a long mailto URI in the HREF attribute of an A element.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5839
|
2017-08-8 10:33 |
2009-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261575
|
- |
|
sixapart
|
movable_type
|
Six Apart Movable Type (MT) before 4.23 allows remote authenticated users with create permission for posts to bypass intended access restrictions and publish posts via a "system-wide entry listing sc…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-5846
|
2017-08-8 10:33 |
2009-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261576
|
- |
|
checkpoint
|
vpn-1
|
Check Point VPN-1 R55, R65, and other versions, when Port Address Translation (PAT) is used, allows remote attackers to discover intranet IP addresses via a packet with a small TTL, which triggers an…
|
CWE-200
Information Exposure
|
CVE-2008-5849
|
2017-08-8 10:33 |
2009-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261577
|
- |
|
knowledgetree_document_management
|
knowledgetree_document_management
|
The DropDocuments plugin in KnowledgeTree before 3.5.4a allows remote authenticated users to gain administrative privileges via a certain sequence of "browse documents" and dashboard requests.
|
NVD-CWE-Other
|
CVE-2008-5857
|
2017-08-8 10:33 |
2009-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261578
|
- |
|
knowledgetree_document_management
|
knowledgetree_document_management
|
Multiple cross-site scripting (XSS) vulnerabilities in KnowledgeTree before 3.5.4a allow remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different issue than CVE-20…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5858
|
2017-08-8 10:33 |
2009-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261579
|
- |
|
yerba
|
yerba
|
Directory traversal vulnerability in Yerba SACphp 6.3 allows remote attackers to read arbitrary files, and possibly have other impact, via directory traversal sequences in the mod field contained in …
|
CWE-22
Path Traversal
|
CVE-2008-5867
|
2017-08-8 10:33 |
2009-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261580
|
- |
|
nortel
|
multimedia_communication_server_5100
|
Nortel Multimedia Communication Server (MSC) 5100 3.0.13 does not verify credentials during call placement, which allows remote attackers to spoof and redirect VoIP calls, possibly related to the sno…
|
CWE-255
Credentials Management
|
CVE-2008-5871
|
2017-08-8 10:33 |
2009-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|