|
298011
|
- |
|
karakas-online
|
chm2pdf
|
chm2pdf 0.9 allows user-assisted local users to delete arbitrary files via a symlink attack on .chm files in the (1) /tmp/chm2pdf/work or (2) /tmp/chm2pdf/orig temporary directories.
|
CWE-59
Link Following
|
CVE-2008-5299
|
2017-08-8 10:33 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298012
|
- |
|
dovecot
|
dovecot
|
Directory traversal vulnerability in the ManageSieve implementation in Dovecot 1.0.15, 1.1, and 1.2 allows remote attackers to read and modify arbitrary .sieve files via a ".." (dot dot) in a script …
|
CWE-22
Path Traversal
|
CVE-2008-5301
|
2017-08-8 10:33 |
2008-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298013
|
- |
|
twiki
|
twiki
|
Cross-site scripting (XSS) vulnerability in TWiki before 4.2.4 allows remote attackers to inject arbitrary web script or HTML via the %URLPARAM{}% variable.
|
CWE-79
Cross-site Scripting
|
CVE-2008-5304
|
2017-08-8 10:33 |
2008-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298014
|
- |
|
tiki
|
tikiwiki_cms\/groupware
|
Unspecified vulnerability in Tikiwiki before 2.2 has unknown impact and attack vectors related to "size of user-provided input," a different issue than CVE-2008-3653.
|
NVD-CWE-noinfo
|
CVE-2008-5318
|
2017-08-8 10:33 |
2008-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298015
|
- |
|
tiki
|
tikiwiki_cms\/groupware
|
Unspecified vulnerability in Tikiwiki before 2.2 has unknown impact and attack vectors related to tiki-error.php, a different issue than CVE-2008-3653.
|
NVD-CWE-noinfo
|
CVE-2008-5319
|
2017-08-8 10:33 |
2008-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298016
|
- |
|
ibm
|
rational_clearquest
|
The ClearQuest Maintenance Tool in IBM Rational ClearQuest 7.0.0 before 7.0.0.4 and 7.0.1 before 7.0.1.3 on Windows allows local users to obtain (1) user and (2) database passwords by using a passwor…
|
CWE-255
Credentials Management
|
CVE-2008-5326
|
2017-08-8 10:33 |
2008-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298017
|
- |
|
ibm
|
rational_clearquest
|
The ClearQuest Maintenance Tool in IBM Rational ClearQuest 7 before 7.1 stores the database password in cleartext in an object in a ClearQuest connection profile or export file, which allows remote a…
|
CWE-255
Credentials Management
|
CVE-2008-5327
|
2017-08-8 10:33 |
2008-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298018
|
- |
|
ibm
|
rational_clearquest
|
The ClearQuest Maintenance Tool in IBM Rational ClearQuest before 7 stores the database password in cleartext in an object in a ClearQuest connection profile or export file, which allows remote authe…
|
CWE-310
Cryptographic Issues
|
CVE-2008-5328
|
2017-08-8 10:33 |
2008-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298019
|
- |
|
ibm
|
rational_clearquest
|
ClearQuest Web in IBM Rational ClearQuest MultiSite before 7.1 allows remote servers to direct a client's submissions and changes to an arbitrary database by specifying multiple comma-separated serve…
|
NVD-CWE-Other
|
CVE-2008-5329
|
2017-08-8 10:33 |
2008-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298020
|
- |
|
ibm
|
rational_clearquest
|
Multiple cross-site scripting (XSS) vulnerabilities in the web interface in ClearCase RWP server in IBM Rational ClearCase 7.0.0 before 7.0.0.4, and 7.0.1.1-RATL-RCC-IFIX02 and possibly other 7.0.1 v…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5330
|
2017-08-8 10:33 |
2008-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|