262121
|
- |
|
razorcms
|
razorcms
|
Static code injection vulnerability in razorCMS before 0.4 allows remote attackers to inject arbitrary PHP code into any page by saving content as a .php file.
|
CWE-94
Code Injection
|
CVE-2009-1463
|
2017-08-17 10:30 |
2009-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262122
|
- |
|
darren_reed
|
ipfilter
|
Buffer overflow in lib/load_http.c in ippool in Darren Reed IPFilter (aka IP Filter) 4.1.31 allows local users to gain privileges via vectors involving a long hostname in a URL.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-1476
|
2017-08-17 10:30 |
2009-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262123
|
- |
|
sun
|
opensolaris solaris
|
Multiple unspecified vulnerabilities in the DTrace ioctl handlers in Sun Solaris 10, and OpenSolaris before snv_114, allow local users to cause a denial of service (panic) via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2009-1478
|
2017-08-17 10:30 |
2009-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262124
|
- |
|
pjhome
|
puterjams_blog
|
SQL injection vulnerability in action.asp in PuterJam's Blog (PJBlog3) 3.0.6.170 allows remote attackers to execute arbitrary SQL commands via the cname parameter in a checkAlias action, as exploited…
|
CWE-89
SQL Injection
|
CVE-2009-1481
|
2017-08-17 10:30 |
2009-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262125
|
- |
|
moinmo moinmoin
|
moinmoin
|
Multiple cross-site scripting (XSS) vulnerabilities in action/AttachFile.py in MoinMoin 1.8.2 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) an AttachFile sub-actio…
|
CWE-79
Cross-site Scripting
|
CVE-2009-1482
|
2017-08-17 10:30 |
2009-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262126
|
- |
|
aemuleplus emuleplus
|
emule_plus
|
The logging feature in eMule Plus before 1.2e allows remote attackers to cause a denial of service (infinite loop) via unspecified attack vectors.
|
NVD-CWE-noinfo
|
CVE-2009-1485
|
2017-08-17 10:30 |
2009-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262127
|
- |
|
sendmail
|
sendmail
|
Heap-based buffer overflow in Sendmail before 8.13.2 allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via a long X- header, as demonstrated by a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-1490
|
2017-08-17 10:30 |
2009-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262128
|
- |
|
mcafee
|
groupshield
|
McAfee GroupShield for Microsoft Exchange on Exchange Server 2000, and possibly other anti-virus or anti-spam products from McAfee or other vendors, does not scan X- headers for malicious content, wh…
|
CWE-20
Improper Input Validation
|
CVE-2009-1491
|
2017-08-17 10:30 |
2009-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262129
|
- |
|
memcachedb
|
memcached
|
The process_stat function in Memcached 1.2.8 discloses memory-allocation statistics in response to a stats malloc command, which allows remote attackers to obtain potentially sensitive information by…
|
CWE-200
Information Exposure
|
CVE-2009-1494
|
2017-08-17 10:30 |
2009-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262130
|
- |
|
drupal
|
news_page
|
SQL injection vulnerability in the News Page module 5.x before 5.x-1.2 for Drupal allows remote authenticated users, with News Page nodes create and edit privileges, to execute arbitrary SQL commands…
|
CWE-89
SQL Injection
|
CVE-2009-1505
|
2017-08-17 10:30 |
2009-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|