|
272651
|
- |
|
videolan
|
vlc
|
VLC before 0.8.6f allow remote attackers to cause a denial of service (crash) via a crafted Cinepak file that triggers an out-of-bounds array access and memory corruption.
|
CWE-399
Resource Management Errors
|
CVE-2008-1769
|
2023-11-7 11:02 |
2008-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272652
|
- |
|
coppermine
|
coppermine_photo_gallery
|
SQL injection vulnerability in upload.php in Coppermine Photo Gallery (CPG) 1.4.16 and earlier allows remote authenticated users or user-assisted remote HTTP servers to execute arbitrary SQL commands…
|
CWE-89
SQL Injection
|
CVE-2008-1840
|
2023-11-7 11:02 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272653
|
- |
|
coppermine
|
coppermine_photo_gallery
|
SQL injection vulnerability in the session handling functionality in bridge/coppermine.inc.php in Coppermine Photo Gallery (CPG) 1.4.17 and earlier allows remote attackers to execute arbitrary SQL co…
|
CWE-89
SQL Injection
|
CVE-2008-1841
|
2023-11-7 11:02 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272654
|
- |
|
swfdec
|
swfdec
|
swfdec_load_object.c in Swfdec before 0.6.4 does not properly restrict local file access from untrusted sandboxes, which allows remote attackers to read arbitrary files via a crafted Flash file.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-1834
|
2023-11-7 11:02 |
2008-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272655
|
- |
|
-
|
-
|
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its requester. Further investigation showed that it was not a security issue. Notes: n…
|
-
|
CVE-2008-1781
|
2023-11-7 11:02 |
2008-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272656
|
- |
|
freedesktop
|
policykit
|
Format string vulnerability in the grant helper (polkit-grant-helper.c) in PolicyKit 0.7 and earlier allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via form…
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2008-1658
|
2023-11-7 11:02 |
2008-04-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272657
|
- |
|
-
|
-
|
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2008-0887. Reason: This candidate is a duplicate of CVE-2008-0887. Notes: All CVE users should reference CVE-2008-0887 instead of…
|
CWE-287
Improper Authentication
|
CVE-2008-1683
|
2023-11-7 11:02 |
2008-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272658
|
- |
|
squid
|
squid
|
The arrayShrink function (lib/Array.c) in Squid 2.6.STABLE17 allows attackers to cause a denial of service (process exit) via unknown vectors that cause an array to shrink to 0 entries, which trigger…
|
CWE-20
Improper Input Validation
|
CVE-2008-1612
|
2023-11-7 11:02 |
2008-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272659
|
- |
|
elastic_path
|
elastic_path
|
Multiple directory traversal vulnerabilities in Elastic Path (EP) 4.1 and 4.1.1 allow remote attackers to (1) download arbitrary files via a .. (dot dot) in the file parameter to manager/getImportFil…
|
CWE-22
Path Traversal
|
CVE-2008-1606
|
2023-11-7 11:02 |
2008-04-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272660
|
- |
|
linux
|
linux_kernel
|
arch/s390/kernel/ptrace.c in Linux kernel 2.6.9, and other versions before 2.6.27-rc6, on s390 platforms allows local users to cause a denial of service (kernel panic) via the user-area-padding test …
|
CWE-399
Resource Management Errors
|
CVE-2008-1514
|
2023-11-7 11:02 |
2008-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|