|
291791
|
- |
|
xoops
|
xoops
|
Multiple directory traversal vulnerabilities in XOOPS 2.3.1, when register_globals is enabled, allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the xoopsConfi…
|
CWE-22
Path Traversal
|
CVE-2008-6884
|
2017-09-29 10:33 |
2009-08-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291792
|
- |
|
activewebsoftwares
|
aspreferral
|
SQL injection vulnerability in Merchantsadd.asp in ASPReferral 5.3 allows remote attackers to execute arbitrary SQL commands via the AccountID parameter.
|
CWE-89
SQL Injection
|
CVE-2008-6889
|
2017-09-29 10:33 |
2009-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291793
|
- |
|
peel
|
peel
|
SQL injection vulnerability in lire/index.php in Peel 3.1 allows remote attackers to execute arbitrary SQL commands via the rubid parameter. NOTE: this might be the same issue as CVE-2005-3572.
|
CWE-89
SQL Injection
|
CVE-2008-6892
|
2017-09-29 10:33 |
2009-08-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291794
|
- |
|
andres_garcia
|
getleft
|
Multiple buffer overflows in Getleft.exe in Andres Garcia Getleft 1.2 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long (1) "a" HTML tag; a lo…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-6897
|
2017-09-29 10:33 |
2009-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291795
|
- |
|
saschart
|
sascam_webcam_server
|
Buffer overflow in the XHTTP Module 4.1.0.0 in the ActiveX control for SaschArt SasCam Webcam Server 2.6.5 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-6898
|
2017-09-29 10:33 |
2009-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291796
|
- |
|
availscript
|
availscript_article_script
|
Unrestricted file upload vulnerability in "Add Pen/Author Name" feature in addpen.php in AvailScript Article Script allows remote authenticated users to execute arbitrary code by uploading a file wit…
|
CWE-94
Code Injection
|
CVE-2008-6900
|
2017-09-29 10:33 |
2009-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291797
|
- |
|
2532gigs
|
2532gigs
|
Multiple directory traversal vulnerabilities in 2532designs 2532|Gigs 1.2.2 Stable, when register_globals is enabled and magic_quotes_gpc is disabled, allow remote attackers to include and execute ar…
|
CWE-22
Path Traversal
|
CVE-2008-6901
|
2017-09-29 10:33 |
2009-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291798
|
- |
|
2532gigs
|
2532gigs
|
Unrestricted file upload vulnerability in upload_flyer.php in 2532designs 2532|Gigs 1.2.2 Stable allows remote attackers to execute arbitrary code by uploading a file with an executable extension, th…
|
CWE-94
Code Injection
|
CVE-2008-6902
|
2017-09-29 10:33 |
2009-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291799
|
- |
|
babbleboard
|
babbleboard
|
Cross-site request forgery (CSRF) vulnerability in index.php in BabbleBoard 1.1.6 allows remote authenticated users to hijack the authentication of administrators for requests that delete (1) categor…
|
CWE-352
Origin Validation Error
|
CVE-2008-6905
|
2017-09-29 10:33 |
2009-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291800
|
- |
|
babbleboard
|
babbleboard
|
Cross-site scripting (XSS) vulnerability in index.php in BabbleBoard 1.1.6 allows remote attackers to inject arbitrary web script or HTML via the username.
|
CWE-79
Cross-site Scripting
|
CVE-2008-6906
|
2017-09-29 10:33 |
2009-08-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|