|
284531
|
- |
|
gnome
|
evolution
|
Format string vulnerability in the emf_multipart_encrypted function in mail/em-format.c in Evolution 2.12.3 and earlier allows remote attackers to execute arbitrary code via a crafted encrypted messa…
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2008-0072
|
2018-10-16 06:57 |
2008-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284532
|
- |
|
microsoft
|
windows_messenger
|
An ActiveX control (Messenger.UIAutomation.1) in Windows Messenger 4.7 and 5.1 is marked as safe-for-scripting, which allows remote attackers to control the Messenger application, and "change state,"…
|
CWE-200
Information Exposure
|
CVE-2008-0082
|
2018-10-16 06:57 |
2008-08-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284533
|
- |
|
microsoft
|
data_engine sql_server sql_server_desktop_engine sql_server_express_edition
|
Buffer overflow in the convert function in Microsoft SQL Server 2000 SP4, 2000 Desktop Engine (MSDE 2000) SP4, and 2000 Desktop Engine (WMSDE) allows remote authenticated users to execute arbitrary c…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-0086
|
2018-10-16 06:57 |
2008-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284534
|
- |
|
phpwebsite
|
phpwebsite
|
Cross-site scripting (XSS) vulnerability in index.php in the search module in Appalachian State University phpWebSite 1.4.0 allows remote attackers to inject arbitrary web script or HTML via the sear…
|
CWE-79
Cross-site Scripting
|
CVE-2008-0092
|
2018-10-16 06:57 |
2008-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284535
|
- |
|
asterisk
|
asterisk_appliance_developer_kit asterisk_business_edition asterisknow open_source s800i
|
The SIP channel driver in Asterisk Open Source 1.4.x before 1.4.17, Business Edition before C.1.0-beta8, AsteriskNOW before beta7, Appliance Developer Kit before Asterisk 1.4 revision 95946, and Appl…
|
CWE-399
Resource Management Errors
|
CVE-2008-0095
|
2018-10-16 06:57 |
2008-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284536
|
- |
|
georgia_softworks
|
ssh2_server
|
Multiple buffer overflows in Georgia SoftWorks SSH2 Server (GSW_SSHD) 7.01.0003 and earlier allow remote attackers to execute arbitrary code via a (1) a long username, which triggers an overflow in t…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-0096
|
2018-10-16 06:57 |
2008-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284537
|
- |
|
georgia_softworks
|
ssh2_server
|
Format string vulnerability in the log function in Georgia SoftWorks SSH2 Server (GSW_SSHD) 7.01.0003 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the…
|
CWE-20
Improper Input Validation
|
CVE-2008-0097
|
2018-10-16 06:57 |
2008-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284538
|
- |
|
white_dune
|
white_dune
|
Stack-based buffer overflow in the Scene::errorf function in Scene.cpp in White_Dune 0.29 beta791 and earlier allows remote attackers to execute arbitrary code via a long string in a .WRL file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-0100
|
2018-10-16 06:57 |
2008-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284539
|
- |
|
white_dune
|
white_dune
|
Format string vulnerability in the swDebugf function in DuneApp.cpp in White_Dune 0.29 beta791 and earlier allows remote attackers to execute arbitrary code via format string specifiers in a .WRL fil…
|
CWE-20
Improper Input Validation
|
CVE-2008-0101
|
2018-10-16 06:57 |
2008-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284540
|
- |
|
microsoft
|
data_engine sql_server sql_server_desktop_engine sql_server_express_edition
|
Buffer overflow in Microsoft SQL Server 2005 SP1 and SP2, and 2005 Express Edition SP1 and SP2, allows remote authenticated users to execute arbitrary code via a crafted insert statement.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-0106
|
2018-10-16 06:57 |
2008-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|