|
291701
|
- |
|
skalinks
|
exchange_script
|
Skalfa Software SkaLinks Exchange Script 1.5 allows remote attackers to add new administrators and gain privileges via a direct request to admin/register.php.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-7010
|
2017-09-29 10:33 |
2009-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291702
|
- |
|
fhttpd
|
fhttpd
|
fhttpd 0.4.2 allows remote attackers to cause a denial of service (crash) via an Authorization HTTP header with an invalid character after the Basic value.
|
NVD-CWE-Other
|
CVE-2008-7014
|
2017-09-29 10:33 |
2009-08-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291703
|
- |
|
esqlanelapse
|
esqlanelapse
|
Esqlanelapse 2.6.1 and 2.6.2 allows remote attackers to bypass authentication and gain privileges via modified (1) enombre and (2) euri cookies.
|
CWE-287
Improper Authentication
|
CVE-2008-7019
|
2017-09-29 10:33 |
2009-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291704
|
- |
|
availscript
|
jobs_portal_script
|
Unrestricted file upload vulnerability in editlogo.php in AvailScript Jobs Portal Script allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension a…
|
NVD-CWE-Other
|
CVE-2008-7021
|
2017-09-29 10:33 |
2009-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291705
|
- |
|
chilkatsoft
|
chilkat_imap_activex_control
|
Insecure method vulnerability in ChilkatMail_v7_9.dll in the Chilkat Software IMAP ActiveX control (ChilkatMail2.ChilkatMailMan2.1) allows remote attackers to execute arbitrary programs via the LoadX…
|
NVD-CWE-Other
|
CVE-2008-7022
|
2017-09-29 10:33 |
2009-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291706
|
- |
|
libra_file_manager
|
php_filemanager
|
Libra File Manager 1.18 and earlier allows remote attackers to bypass authentication and gain privileges by setting the user and pass cookies to 1.
|
CWE-287
Improper Authentication
|
CVE-2008-7027
|
2017-09-29 10:33 |
2009-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291707
|
- |
|
aves
|
rpg_board
|
RPG.Board 0.8 Beta2 and earlier allows remote attackers to bypass authentication and gain privileges by setting the keep4u cookie to a certain value.
|
CWE-287
Improper Authentication
|
CVE-2008-7028
|
2017-09-29 10:33 |
2009-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291708
|
- |
|
ajsquare
|
aj_classifieds
|
AJ Classifieds allows remote attackers to bypass authentication and gain administrator privileges via a direct request to admin/home.php.
|
CWE-287
Improper Authentication
|
CVE-2008-7041
|
2017-09-29 10:33 |
2009-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291709
|
- |
|
freshscripts
|
fresh_email_script
|
PHP remote file inclusion vulnerability in url.php in FreshScripts Fresh Email Script 1.0 through 1.11 allows remote attackers to execute arbitrary PHP code via a URL in the tmp_sid parameter.
|
CWE-94
Code Injection
|
CVE-2008-7042
|
2017-09-29 10:33 |
2009-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291710
|
- |
|
freshscripts
|
fresh_email_script
|
Cross-site scripting (XSS) vulnerability in register.php in FreshScripts Fresh Email Script 1.0 through 1.11 allows remote attackers to inject arbitrary web script or HTML via the Email parameter. N…
|
CWE-79
Cross-site Scripting
|
CVE-2008-7043
|
2017-09-29 10:33 |
2009-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|