|
297801
|
- |
|
mondo
|
rescue
|
Additional information can be found at:
http://www.securityfocus.com/bid/28522
|
NVD-CWE-noinfo
|
CVE-2008-1633
|
2017-08-8 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297802
|
- |
|
jv2
|
folder_gallery
|
Cross-site scripting (XSS) vulnerability in index.php in JV2 Folder Gallery 3.1 allows remote attackers to inject arbitrary web script or HTML via the image parameter. NOTE: the provenance of this i…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1634
|
2017-08-8 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297803
|
- |
|
jv2
|
quick_gallery
|
Cross-site scripting (XSS) vulnerability in index.php in JV2 Quick Gallery 1.1 allows remote attackers to inject arbitrary web script or HTML via the f parameter. NOTE: the provenance of this inform…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1636
|
2017-08-8 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297804
|
- |
|
nik_software_inc
|
nik_sharpener_pro
|
Nik Sharpener Pro, possibly 2.0, uses world-writable permissions for plug-in files, which allows local users to gain privileges by replacing a plug-in with a Trojan horse.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-1638
|
2017-08-8 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297805
|
- |
|
savas_place
|
savas_guestbook
|
Directory traversal vulnerability in index.php in Sava's GuestBook 2.0 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the action parameter. …
|
CWE-22
Path Traversal
|
CVE-2008-1642
|
2017-08-8 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297806
|
- |
|
landesk_software
|
landesk_management_suite
|
Directory traversal vulnerability in the PXE TFTP Service (PXEMTFTP.exe) in LANDesk Management Suite (LDMS) 8.7 SP5 and earlier and 8.8 allows remote attackers to read arbitrary files via unspecified…
|
CWE-22
Path Traversal
|
CVE-2008-1643
|
2017-08-8 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297807
|
- |
|
savas_place
|
savas_link_manager
|
SQL injection vulnerability in viewlinks.php in Sava's Link Manager 2.0 allows remote attackers to execute arbitrary SQL commands via the category parameter. NOTE: the provenance of this information…
|
CWE-89
SQL Injection
|
CVE-2008-1644
|
2017-08-8 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297808
|
- |
|
sympa
|
sympa
|
Sympa before 5.4 allows remote attackers to cause a denial of service (daemon crash) via an e-mail message with a malformed value of the Content-Type header and unspecified other headers. NOTE: some…
|
CWE-20
Improper Input Validation
|
CVE-2008-1648
|
2017-08-8 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297809
|
- |
|
perlbal
|
perlbal
|
Directory traversal vulnerability in the _serve_request_multiple function in lib/Perlbal/ClientHTTPBase.pm in Perlbal before 1.70, when concat get is enabled, allows remote attackers to read arbitrar…
|
CWE-22
Path Traversal
|
CVE-2008-1652
|
2017-08-8 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297810
|
- |
|
savas_place
|
savas_link_manager
|
Directory traversal vulnerability in index.php in Sava's Link Manager 2.0 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the q parameter. N…
|
CWE-22
Path Traversal
|
CVE-2008-1653
|
2017-08-8 10:30 |
2008-04-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|