263941
|
- |
|
licq
|
licq
|
More information located: http://www.securityfocus.com/bid/28679/info
|
CWE-399
Resource Management Errors
|
CVE-2008-1996
|
2017-08-8 10:30 |
2008-04-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263942
|
- |
|
national_rail_enquiries
|
national_rail_enquiries_live_departure_boards
|
Cross-site scripting (XSS) vulnerability in the National Rail Enquiries Live Departure Boards gadget before 1.1 allows remote National Rail Enquiries servers or man-in-the-middle attackers to inject …
|
CWE-79
Cross-site Scripting
|
CVE-2008-2011
|
2017-08-8 10:30 |
2008-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263943
|
- |
|
lhaplus
|
lhaplus
|
Heap-based buffer overflow in Lhaplus before 1.57 allows remote attackers to execute arbitrary code via a long comment field in a ZOO archive.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-2021
|
2017-08-8 10:30 |
2008-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263944
|
- |
|
f5
|
firepass_4100 firepass_ssl_vpn
|
Cross-site scripting (XSS) vulnerability in installControl.php3 in F5 FirePass 4100 SSL VPN 5.4.2-5.5.2 and 6.0-6.2 allows remote attackers to inject arbitrary web script or HTML via the query string…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2030
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263945
|
- |
|
vicftps
|
vicftps
|
VicFTPS 5.0 allows remote attackers to cause a denial of service (crash) via a crafted LIST command, which triggers a NULL pointer dereference. NOTE: the provenance of this information is unknown; t…
|
CWE-20
Improper Input Validation
|
CVE-2008-2031
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263946
|
- |
|
acritum
|
femitter_server
|
The FTP service in Acritum Femitter Server 1.03 allows remote attackers to cause a denial of service (crash) by sending multiple crafted RETR commands. NOTE: the provenance of this information is un…
|
CWE-20
Improper Input Validation
|
CVE-2008-2032
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263947
|
- |
|
wordpress
|
download_monitor_plugin
|
SQL injection vulnerability in wp-download_monitor/download.php in the Download Monitor 2.0.6 plugin for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter. NOT…
|
CWE-89
SQL Injection
|
CVE-2008-2034
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263948
|
- |
|
bluemoon xoops
|
backpack bmsurvey newbb_fileup news_fileup popnupblog xoops xoops_cube
|
Cross-site scripting (XSS) vulnerability in the Bluemoon, Inc. (1) BackPack 0.91 and earlier, (2) BmSurvey 0.84 and earlier, (3) newbb_fileup 1.83 and earlier, (4) News_embed (news_fileup) 1.44 and e…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2035
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263949
|
- |
|
editeurscripts
|
escontacts
|
Multiple cross-site scripting (XSS) vulnerabilities in EditeurScripts EsContacts 1.0 allow remote authenticated users to inject arbitrary web script or HTML via the msg parameter to (1) login.php, (2…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2037
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263950
|
- |
|
turnkey_solutions
|
sunshop_shopping_cart
|
Multiple SQL injection vulnerabilities in admin/adminindex.php in Turnkey Web Tools SunShop Shopping Cart 4.1.0 allow remote authenticated administrators to execute arbitrary SQL commands via the (1)…
|
CWE-89
SQL Injection
|
CVE-2008-2038
|
2017-08-8 10:30 |
2008-05-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|