263721
|
- |
|
businessobjects
|
infoview
|
Cross-site scripting (XSS) vulnerability in desktoplaunch/InfoView/logon/logon.object in BusinessObjects InfoView XI R2 SP1, SP2, and SP3 Java version before FixPack 3.5 allows remote attackers to in…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1894
|
2017-08-8 10:30 |
2008-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263722
|
- |
|
debian
|
aptlinex
|
aptlinex before 0.91 allows local users to overwrite arbitrary files via a symlink attack on the gambas-apt.lock temporary file.
|
CWE-59
Link Following
|
CVE-2008-1901
|
2017-08-8 10:30 |
2008-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263723
|
- |
|
debian
|
aptlinex
|
The GUI for aptlinex before 0.91 does not sufficiently warn the user of potentially dangerous actions, which allows remote attackers to remove or modify packages via an apt:// URL.
|
NVD-CWE-Other
|
CVE-2008-1902
|
2017-08-8 10:30 |
2008-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263724
|
- |
|
nero
|
mediahome nero
|
NMMediaServer.exe in Nero MediaHome 3.3.3.0 and earlier, as used in Nero 8.3.2.1 and earlier, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via…
|
CWE-20
Improper Input Validation
|
CVE-2008-1905
|
2017-08-8 10:30 |
2008-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263725
|
- |
|
drupal
|
ubercart_module
|
Multiple cross-site scripting (XSS) vulnerabilities in the Ubercart 5.x before 5.x-1.0-rc1 module for Drupal allow remote attackers to inject arbitrary web script or HTML via text fields intended for…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1916
|
2017-08-8 10:30 |
2008-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263726
|
- |
|
amfphp
|
amfphp
|
Multiple cross-site scripting (XSS) vulnerabilities in AMFPHP 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) class parameter to (a) methodTable.php, (b) code.php, and (…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1917
|
2017-08-8 10:30 |
2008-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263727
|
- |
|
sarg
|
squid_analysis_report_generator
|
Multiple stack-based buffer overflows in Sarg might allow attackers to execute arbitrary code via unknown vectors, probably a crafted Squid log file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1922
|
2017-08-8 10:30 |
2008-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263728
|
- |
|
asterisk
|
asterisk_appliance_developer_kit asterisk_business_edition asterisknow open_source s800i
|
The IAX2 channel driver (chan_iax2) in Asterisk 1.2 before revision 72630 and 1.4 before revision 65679, when configured to allow unauthenticated calls, sends "early audio" to an unverified source IP…
|
CWE-16
Configuration
|
CVE-2008-1923
|
2017-08-8 10:30 |
2008-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263729
|
- |
|
phpmyadmin
|
phpmyadmin
|
Unspecified vulnerability in phpMyAdmin before 2.11.5.2, when running on shared hosts, allows remote authenticated users with CREATE table permissions to read arbitrary files via a crafted HTTP POST …
|
NVD-CWE-noinfo CWE-200
Information Exposure
|
CVE-2008-1924
|
2017-08-8 10:30 |
2008-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263730
|
- |
|
imager
|
imager
|
Buffer overflow in Imager 0.42 through 0.63 allows attackers to cause a denial of service (crash) via an image based fill in which the number of input channels is different from the number of output …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1928
|
2017-08-8 10:30 |
2008-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|