|
284361
|
- |
|
info-zip
|
unzip
|
The NEEDBITS macro in the inflate_dynamic function in inflate.c for unzip can be invoked using invalid buffers, which allows remote attackers to cause a denial of service (crash) and possibly execute…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-0888
|
2018-10-16 07:03 |
2008-03-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284362
|
- |
|
apple
|
safari
|
Apple Safari might allow remote attackers to obtain potentially sensitive memory contents or cause a denial of service (crash) via a crafted (1) bitmap (BMP) or (2) GIF file, a related issue to CVE-2…
|
NVD-CWE-Other
|
CVE-2008-0894
|
2018-10-16 07:03 |
2008-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284363
|
- |
|
bea bea_systems
|
weblogic_server
|
BEA WebLogic Server and Express 7.0 through 10.0 allows remote attackers to conduct brute force password guessing attacks, even when account lockout has been activated, via crafted URLs that indicate…
|
CWE-255 CWE-200
Credentials Management Information Exposure
|
CVE-2008-0901
|
2018-10-16 07:03 |
2008-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284364
|
- |
|
sybase
|
mobilink sql_anywhere
|
Multiple heap-based buffer overflows in mlsrv10.exe in Sybase MobiLink 10.0.1.3629 and earlier, as used by SQL Anywhere Developer Edition 10.0.1.3415 and probably other products, allow remote attacke…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-0912
|
2018-10-16 07:03 |
2008-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284365
|
- |
|
ipdiva
|
ipdiva
|
Multiple cross-site scripting (XSS) vulnerabilities in the Mediation server in IPdiva SSL VPN Server 2.2 before 2.2.8.84 and 2.3 before 2.3.2.14 allow remote attackers to inject arbitrary web script …
|
CWE-79
Cross-site Scripting
|
CVE-2008-0914
|
2018-10-16 07:03 |
2008-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284366
|
- |
|
ipdiva
|
ipdiva
|
The Mediation server in IPdiva SSL VPN Server 2.2 before 2.2.8.84 and 2.3 before 2.3.2.14 stores the number of remaining allowed login attempts in a cookie, which makes it easier for remote attackers…
|
NVD-CWE-Other
|
CVE-2008-0915
|
2018-10-16 07:03 |
2008-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284367
|
- |
|
open_source_security_information_management
|
os-sim
|
Cross-site scripting (XSS) vulnerability in session/login.php in Open Source Security Information Management (OSSIM) 0.9.9 rc5 and earlier allows remote attackers to inject arbitrary web script or HT…
|
CWE-79
Cross-site Scripting
|
CVE-2008-0919
|
2018-10-16 07:03 |
2008-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284368
|
- |
|
open_source_security_information_management
|
os-sim
|
SQL injection vulnerability in port/modifyportform.php in Open Source Security Information Management (OSSIM) 0.9.9 rc5 allows remote authenticated users to execute arbitrary SQL commands via the por…
|
CWE-89
SQL Injection
|
CVE-2008-0920
|
2018-10-16 07:03 |
2008-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284369
|
- |
|
vmware
|
ace player vmware_player vmware_workstation workstation
|
Directory traversal vulnerability in the Shared Folders feature for VMWare ACE 1.0.2 and 2.0.2, Player 1.0.4 and 2.0.2, and Workstation 5.5.4 and 6.0.2 allows guest OS users to read and write arbitra…
|
CWE-22
Path Traversal
|
CVE-2008-0923
|
2018-10-16 07:03 |
2008-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284370
|
- |
|
novell
|
edirectory
|
The SOAP interface to the eMBox module in Novell eDirectory 8.7.3.9 and earlier, and 8.8.x before 8.8.2, relies on client-side authentication, which allows remote attackers to bypass authentication v…
|
CWE-287
Improper Authentication
|
CVE-2008-0926
|
2018-10-16 07:03 |
2008-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|