|
288061
|
- |
|
opencart
|
opencart
|
SQL injection vulnerability in OpenCart 1.1.8 allows remote attackers to execute arbitrary SQL commands via the order parameter.
|
CWE-89
SQL Injection
|
CVE-2009-1027
|
2018-10-11 04:32 |
2009-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288062
|
- |
|
poppeeper
|
pop_peeper
|
Stack-based buffer overflow in POP Peeper 3.4.0.0 and earlier allows remote POP3 servers to execute arbitrary code via a long Date header, related to Imap.dll.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-1029
|
2018-10-11 04:32 |
2009-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288063
|
- |
|
wordpress
|
wordpress_mu
|
Cross-site scripting (XSS) vulnerability in the choose_primary_blog function in wp-includes/wpmu-functions.php in WordPress MU (WPMU) before 2.7 allows remote attackers to inject arbitrary web script…
|
CWE-79
Cross-site Scripting
|
CVE-2009-1030
|
2018-10-11 04:32 |
2009-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288064
|
- |
|
cdexos
|
cdex
|
Buffer overflow in CDex 1.70b2 allows remote attackers to execute arbitrary code via a crafted Info header in an Ogg Vorbis (.ogg) file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-1039
|
2018-10-11 04:32 |
2009-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288065
|
- |
|
mozilla
|
firefox
|
Mozilla Firefox 3.0.7 on Windows 7 allows remote attackers to execute arbitrary code via unknown vectors related to the _moveToEdgeShift XUL tree method, which triggers garbage collection on objects …
|
CWE-399
Resource Management Errors
|
CVE-2009-1044
|
2018-10-11 04:32 |
2009-03-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288066
|
- |
|
chaozz
|
fubarforum
|
FubarForum 1.6 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing user credentials via a dir…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-1051
|
2018-10-11 04:32 |
2009-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288067
|
- |
|
chaozz
|
fireant
|
FireAnt 1.3 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing user credentials via a direct…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-1052
|
2018-10-11 04:32 |
2009-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288068
|
- |
|
chaozz
|
fireant
|
Additional information available at:
http://secunia.com/advisories/34359/
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-1052
|
2018-10-11 04:32 |
2009-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288069
|
- |
|
chaozz
|
chaozzdb
|
chaozzDB 1.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database containing user credentials via a direc…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-1053
|
2018-10-11 04:32 |
2009-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288070
|
- |
|
bsplayer
|
bs.player
|
Stack-based buffer overflow in BS.Player (bsplayer) 2.32 Build 975 Free and 2.34 Build 980 PRO and earlier allows remote attackers to cause a denial of service (application crash) or execute arbitrar…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-1068
|
2018-10-11 04:32 |
2009-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|