|
284611
|
- |
|
microsoft
|
excel excel_viewer office office_compatibility_pack_for_word_excel_ppt_2007
|
Microsoft Excel 2000 SP3 through 2003 SP2, Viewer 2003, Compatibility Pack, and Office 2004 and 2008 for Mac allows user-assisted remote attackers to execute arbitrary code via malformed tags in rich…
|
CWE-94 CWE-20
Code Injection Improper Input Validation
|
CVE-2008-0116
|
2018-10-16 06:57 |
2008-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284612
|
- |
|
microsoft
|
office
|
Unspecified vulnerability in Microsoft Publisher in Office 2000 and XP SP3, 2003 SP2 and SP3, and 2007 SP1 and earlier allows remote attackers to execute arbitrary code via a Publisher file with craf…
|
CWE-94
Code Injection
|
CVE-2008-0119
|
2018-10-16 06:57 |
2008-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284613
|
- |
|
apache
|
tomcat
|
Apache Tomcat 6.0.0 through 6.0.15 processes parameters in the context of the wrong request when an exception occurs during parameter processing, which might allow remote attackers to obtain sensitiv…
|
NVD-CWE-Other
|
CVE-2008-0002
|
2018-10-16 06:56 |
2008-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284614
|
- |
|
openpegasus
|
management_server
|
Stack-based buffer overflow in the PAMBasicAuthenticator::PAMCallback function in OpenPegasus CIM management server (tog-pegasus), when compiled to use PAM and without PEGASUS_USE_PAM_STANDALONE_PROC…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-0003
|
2018-10-16 06:56 |
2008-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284615
|
- |
|
sun x.org
|
solaris_libfont solaris_libxfont xserver
|
Buffer overflow in (1) X.Org Xserver before 1.4.1, and (2) the libfont and libXfont libraries on some platforms including Sun Solaris, allows context-dependent attackers to execute arbitrary code via…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-0006
|
2018-10-16 06:56 |
2008-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284616
|
- |
|
linux
|
linux_kernel
|
Linux kernel before 2.6.22.17, when using certain drivers that register a fault handler that does not perform range checks, allows local users to access kernel memory via an out-of-range offset.
|
CWE-399
Resource Management Errors
|
CVE-2008-0007
|
2018-10-16 06:56 |
2008-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284617
|
- |
|
2z_project
|
2z_project
|
2z project 0.9.6.1 allows attackers to change the password without supplying the old password.
|
CWE-255
Credentials Management
|
CVE-2007-6661
|
2018-10-16 06:56 |
2008-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284618
|
- |
|
cutephp
|
cutenews
|
Directory traversal vulnerability in file.php in CuteNews 2.6 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter, as demonstrated by reading the admin username a…
|
CWE-22
Path Traversal
|
CVE-2007-6662
|
2018-10-16 06:56 |
2008-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284619
|
- |
|
instantsoftwares
|
dating_site
|
SQL injection vulnerability in login_form.asp in Instant Softwares Dating Site allows remote attackers to execute arbitrary SQL commands via the Password parameter, a different product than CVE-2006-…
|
CWE-89
SQL Injection
|
CVE-2007-6671
|
2018-10-16 06:56 |
2008-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284620
|
- |
|
uber_uploader
|
uber_uploader
|
The default configuration of Uber Uploader (UU) 5.3.6 and earlier does not block uploads of (1) .html, (2) .asp, and other possibly dangerous extensions, which allows remote attackers to use these ex…
|
CWE-16
Configuration
|
CVE-2007-6676
|
2018-10-16 06:56 |
2008-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|