|
297951
|
- |
|
activecampaign
|
triolive
|
SQL injection vulnerability in department_offline_context.php in ActiveCampaign TrioLive before 1.58.7 allows remote attackers to execute arbitrary SQL commands via the department_id parameter to ind…
|
CWE-89
SQL Injection
|
CVE-2008-5055
|
2017-08-8 10:33 |
2008-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297952
|
- |
|
activecampaign
|
triolive
|
Cross-site scripting (XSS) vulnerability in department_offline_context.php in ActiveCampaign TrioLive before 1.58.7 allows remote attackers to inject arbitrary web script or HTML via the department_i…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5056
|
2017-08-8 10:33 |
2008-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297953
|
- |
|
aspindir
|
dizi_portali
|
SQL injection vulnerability in film.asp in Yigit Aybuga Dizi Portali allows remote attackers to execute arbitrary SQL commands via the film parameter. NOTE: the provenance of this information is unk…
|
CWE-89
SQL Injection
|
CVE-2008-5057
|
2017-08-8 10:33 |
2008-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297954
|
- |
|
h\&h
|
websoccer
|
SQL injection vulnerability in liga.php in H&H WebSoccer 2.80 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5064
|
2017-08-8 10:33 |
2008-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297955
|
- |
|
htop
|
htop
|
htop 0.7 writes process names to a terminal without sanitizing non-printable characters, which might allow local users to hide processes, modify arbitrary files, or have unspecified other impact via …
|
CWE-200
Information Exposure
|
CVE-2008-5076
|
2017-08-8 10:33 |
2008-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297956
|
- |
|
redhat
|
_dogtag_certificate_system certificate_system
|
The verifyProof function in the Token Processing System (TPS) component in Red Hat Certificate System (RHCS) 7.1 through 7.3 and Dogtag Certificate System 1.0 returns successfully even when token enr…
|
CWE-287
Improper Authentication
|
CVE-2008-5082
|
2017-08-8 10:33 |
2009-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297957
|
- |
|
novell
|
edirectory
|
Buffer overflow in the LDAP Service in Novell eDirectory 8.7.3 before SP10a and 8.8 before SP3 allows attackers to cause a denial of service (application crash) via vectors involving an "invalid exte…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5091
|
2017-08-8 10:33 |
2008-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297958
|
- |
|
novell
|
edirectory
|
Cross-site scripting (XSS) vulnerability in the HTTP Protocol Stack (HTTPSTK) in Novell eDirectory before 8.8 SP3 allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2008-5093
|
2017-08-8 10:33 |
2008-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297959
|
- |
|
typo3
|
file_list_extension
|
Unspecified vulnerability in the TYPO3 File List (file_list) extension 0.2.1 and earlier allows remote attackers to obtain sensitive information via unknown attack vectors.
|
NVD-CWE-noinfo CWE-200
Information Exposure
|
CVE-2008-5096
|
2017-08-8 10:33 |
2008-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297960
|
- |
|
sun
|
logical_domain_manager
|
Sun Logical Domain Manager (aka LDoms Manager or ldm) 1.0 through 1.0.3 displays the value of the OpenBoot PROM (OBP) security-password variable in cleartext, which allows local users to bypass the S…
|
CWE-200
Information Exposure
|
CVE-2008-5099
|
2017-08-8 10:33 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|