|
292891
|
- |
|
devalcms
|
devalcms
|
Directory traversal vulnerability in func.php in Devalcms 1.4a, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the curre…
|
CWE-22
Path Traversal
|
CVE-2008-2913
|
2017-09-29 10:31 |
2008-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292892
|
- |
|
preprojects
|
pre_job_board
|
Multiple SQL injection vulnerabilities in jobseekers/JobSearch.php (aka the search module) in Pre Job Board allow remote attackers to execute arbitrary SQL commands via the (1) position or (2) kw par…
|
CWE-89
SQL Injection
|
CVE-2008-2915
|
2017-09-29 10:31 |
2008-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292893
|
- |
|
application_dynamics
|
cartweaver
|
SQL injection vulnerability in details.php in Application Dynamics Cartweaver 3.0 allows remote attackers to execute arbitrary SQL commands via the prodId parameter, possibly a related issue to CVE-2…
|
CWE-89
SQL Injection
|
CVE-2008-2918
|
2017-09-29 10:31 |
2008-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292894
|
- |
|
gryphonllc
|
gryphon_gllcts2
|
SQL injection vulnerability in listing.php in Gryphon gllcTS2 4.2.4 allows remote attackers to execute arbitrary SQL commands via the sort parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2919
|
2017-09-29 10:31 |
2008-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292895
|
- |
|
ezcms
|
eztechhelp_ezcms
|
admin/filemanager/ (aka the File Manager) in EZTechhelp EZCMS 1.2 and earlier does not require authentication, which allows remote attackers to create, modify, read, and delete files.
|
CWE-287
Improper Authentication
|
CVE-2008-2920
|
2017-09-29 10:31 |
2008-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292896
|
- |
|
eztechhelp_company
|
ezcms
|
SQL injection vulnerability in index.php in EZTechhelp EZCMS 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the page parameter.
|
CWE-89
SQL Injection
|
CVE-2008-2921
|
2017-09-29 10:31 |
2008-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292897
|
- |
|
t0pp8uzz
|
dana_irc_client
|
Stack-based buffer overflow in artegic Dana IRC client 1.3 and earlier allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long IRC messa…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-2922
|
2017-09-29 10:31 |
2008-07-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292898
|
- |
|
redhat
|
directory_server
|
Multiple buffer overflows in the adminutil library in CGI applications in Red Hat Directory Server 7.1 before SP7 allow remote attackers to cause a denial of service (daemon crash) or possibly execut…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-2928
|
2017-09-29 10:31 |
2008-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292899
|
- |
|
fedora redhat
|
directory_server
|
Multiple cross-site scripting (XSS) vulnerabilities in the adminutil library in the Directory Server Administration Express and Directory Server Gateway (DSGW) web interface in Red Hat Directory Serv…
|
CWE-79
Cross-site Scripting
|
CVE-2008-2929
|
2017-09-29 10:31 |
2008-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292900
|
- |
|
fedora redhat
|
directory_server
|
Red Hat Directory Server 7.1 before SP7, Red Hat Directory Server 8, and Fedora Directory Server 1.1.1 allow remote attackers to cause a denial of service (CPU consumption and search outage) via craf…
|
CWE-399
Resource Management Errors
|
CVE-2008-2930
|
2017-09-29 10:31 |
2008-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|