263591
|
- |
|
tinyportal
|
tinyportal
|
Cross-site scripting (XSS) vulnerability in index.php in TinyPortal 0.8.6 and 1.0.3 allows remote attackers to inject arbitrary web script or HTML via the PHPSESSID parameter. NOTE: the provenance o…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1500
|
2017-08-8 10:30 |
2008-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263592
|
- |
|
phpheaven
|
phpmychat
|
Cross-site scripting (XSS) vulnerability in setup.php3 in phpHeaven phpMyChat 0.14.5 allows remote attackers to inject arbitrary web script or HTML via the Lang parameter. NOTE: the provenance of th…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1504
|
2017-08-8 10:30 |
2008-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263593
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Array index error in the xnu (Mach) kernel in Apple Mac OS X 10.5 before 10.5.7 allows local users to gain privileges or cause a denial of service (system shutdown) via unspecified vectors related to…
|
CWE-20
Improper Input Validation
|
CVE-2008-1517
|
2017-08-8 10:30 |
2009-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263594
|
- |
|
kaspersky_lab
|
kaspersky_anti-virus kaspersky_internet_security
|
Stack-based buffer overflow in kl1.sys in Kaspersky Anti-Virus 6.0 and 7.0 and Internet Security 6.0 and 7.0 allows local users to gain privileges via an IOCTL 0x800520e8 call.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1518
|
2017-08-8 10:30 |
2008-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263595
|
- |
|
gnupg
|
gnupg
|
GnuPG (gpg) 1.4.8 and 2.0.8 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted duplicate keys that are imported from key servers, which trigg…
|
CWE-399
Resource Management Errors
|
CVE-2008-1530
|
2017-08-8 10:30 |
2008-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263596
|
- |
|
perlbal
|
perlbal
|
Perlbal before 1.70, when buffered upload is enabled, allows remote attackers to cause a denial of service (crash) via a zero-byte chunked upload.
|
CWE-20
Improper Input Validation
|
CVE-2008-1532
|
2017-08-8 10:30 |
2008-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263597
|
- |
|
joomla
|
joomla
|
Unspecified vulnerability in the XML-RPC Blogger API plugin in Joomla! 1.5 allows remote attackers to perform unauthorized article operations on articles via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2008-1533
|
2017-08-8 10:30 |
2008-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263598
|
- |
|
picturespro
|
picturespro_photo_cart
|
Cross-site scripting (XSS) vulnerability in index.php in Pictures Pro (aka Tim Grissett) Photo Cart 4.1 allows remote attackers to inject arbitrary web script or HTML via the amessage parameter. NOT…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1536
|
2017-08-8 10:30 |
2008-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263599
|
- |
|
joomla mambo
|
datsogallery
|
SQL injection vulnerability in the Datsogallery (com_datsogallery) 1.3.1 module for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter in a detail action…
|
CWE-89
SQL Injection
|
CVE-2008-1540
|
2017-08-8 10:30 |
2008-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263600
|
- |
|
airspan
|
base_station_distribution_unit
|
Airspan Base Station Distribution Unit (BSDU) has "topsecret" as its password for the root account, which allows remote attackers to obtain administrative access via a telnet login, a different vulne…
|
CWE-255
Credentials Management
|
CVE-2008-1542
|
2017-08-8 10:30 |
2008-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|