|
292411
|
- |
|
kwalbum
|
kwalbum
|
Unrestricted file upload vulnerability in Kwalbum 2.0.4, 2.0.2, and earlier, when PICS_PATH is located in the web root, allows remote authenticated users with upload capability to execute arbitrary c…
|
CWE-20
Improper Input Validation
|
CVE-2008-5677
|
2017-09-29 10:32 |
2008-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292412
|
- |
|
fdgroup
|
olib7_webview
|
Fretwell-Downing Informatics (FDI) OLIB7 WebView 2.5.1.1 allows remote authenticated users to obtain sensitive information from files via the infile parameter to the default URI under cgi/, as demons…
|
CWE-20
Improper Input Validation
|
CVE-2008-5678
|
2017-09-29 10:32 |
2008-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292413
|
- |
|
sun
|
opensolaris solaris
|
Unspecified vulnerability in the X Inter Client Exchange library (aka libICE) in Sun Solaris 8 through 10 and OpenSolaris before snv_85 allows context-dependent attackers to cause a denial of service…
|
NVD-CWE-noinfo CWE-399
Resource Management Errors
|
CVE-2008-5684
|
2017-09-29 10:32 |
2008-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292414
|
- |
|
sun
|
opensolaris solaris
|
The Kerberos credential renewal feature in Sun Solaris 8, 9, and 10, and OpenSolaris build snv_01 through snv_104, allows local users to cause a denial of service (authentication failure) via unspeci…
|
CWE-255
Credentials Management
|
CVE-2008-5690
|
2017-09-29 10:32 |
2008-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292415
|
- |
|
phonecian_casino
|
flashax
|
Heap-based buffer overflow in the Phoenician Casino FlashAX ActiveX control 1.0.0.7 allows remote attackers to execute arbitrary code via a long argument to the SetID method.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5691
|
2017-09-29 10:32 |
2008-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292416
|
- |
|
skype
|
skype_extension_for_firefox
|
The skype_tool.copy_num method in the Skype extension BETA 2.2.0.95 for Firefox allows remote attackers to write arbitrary data to the clipboard via a string argument.
|
NVD-CWE-Other
|
CVE-2008-5697
|
2017-09-29 10:32 |
2008-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292417
|
- |
|
kde
|
konqueror
|
HTMLTokenizer::scriptHandler in Konqueror in KDE 3.5.9 and 3.5.10 allows remote attackers to cause a denial of service (application crash) via an invalid document.load call that triggers use of a del…
|
CWE-399
Resource Management Errors
|
CVE-2008-5698
|
2017-09-29 10:32 |
2008-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292418
|
- |
|
verlihub-project
|
verlihub
|
The cTrigger::DoIt function in src/ctrigger.cpp in the trigger mechanism in the daemon in Verlihub 0.9.8d-RC2 and earlier, when user triggers are enabled, allows remote attackers to execute arbitrary…
|
CWE-20
Improper Input Validation
|
CVE-2008-5705
|
2017-09-29 10:32 |
2008-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292419
|
- |
|
verlihub-project
|
verlihub
|
The cTrigger::DoIt function in src/ctrigger.cpp in the trigger mechanism in the daemon in Verlihub 0.9.8d-RC2 and earlier allows local users to overwrite arbitrary files via a symlink attack on the /…
|
CWE-59
Link Following
|
CVE-2008-5706
|
2017-09-29 10:32 |
2008-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292420
|
- |
|
slimcms
|
slimcms
|
redirect.php in SlimCMS 1.0.0 does not require authentication, which allows remote attackers to create administrative users by using the newusername and newpassword parameters and setting the newisad…
|
CWE-287
Improper Authentication
|
CVE-2008-5708
|
2017-09-29 10:32 |
2008-12-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|