|
293181
|
- |
|
ibm
|
aix
|
swcons in bos.rte.console in IBM AIX 5.2.0 through 6.1.1 allows local users in the system group to create or overwrite an arbitrary file, and establish weak permissions and root ownership for this fi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4018
|
2017-09-29 10:31 |
2008-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293182
|
- |
|
spice_classifieds
|
spice_classifieds
|
SQL injection vulnerability in index.php in Spice Classifieds allows remote attackers to execute arbitrary SQL commands via the cat_path parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4039
|
2017-09-29 10:31 |
2008-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293183
|
- |
|
aj_square
|
aj_hyip
|
Multiple SQL injection vulnerabilities in AJ Square AJ HYIP Acme allow remote attackers to execute arbitrary SQL commands via the artid parameter to (1) acme/article/comment.php and (2) prime/article…
|
CWE-89
SQL Injection
|
CVE-2008-4043
|
2017-09-29 10:31 |
2008-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293184
|
- |
|
aj_square
|
aj_hyip
|
SQL injection vulnerability in article/readarticle.php in AJ Square aj-hyip (aka AJ HYIP Acme) allows remote attackers to execute arbitrary SQL commands via the artid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4044
|
2017-09-29 10:31 |
2008-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293185
|
- |
|
friendly_technologies
|
friendly_pppoe_client
|
Heap-based buffer overflow in a certain ActiveX control in fwRemoteCfg.dll 3.3.3.1 in Friendly Technologies FriendlyPPPoE Client 3.0.0.57 allows remote attackers to execute arbitrary code via a long …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-4048
|
2017-09-29 10:31 |
2008-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293186
|
- |
|
friendly_technologies
|
friendly_pppoe_client
|
A certain ActiveX control in fwRemoteCfg.dll 3.3.3.1 in Friendly Technologies FriendlyPPPoE Client 3.0.0.57 allows remote attackers to execute arbitrary programs via arguments to the RunApp method.
|
CWE-20
Improper Input Validation
|
CVE-2008-4049
|
2017-09-29 10:31 |
2008-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293187
|
- |
|
friendly_technologies
|
friendly_pppoe_client
|
A certain ActiveX control in fwRemoteCfg.dll 3.3.3.1 in Friendly Technologies FriendlyPPPoE Client 3.0.0.57 allows remote attackers to (1) create and read arbitrary registry values via the RegistryVa…
|
CWE-20
Improper Input Validation
|
CVE-2008-4050
|
2017-09-29 10:31 |
2008-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293188
|
- |
|
kolifa
|
download_script
|
SQL injection vulnerability in indir.php in Kolifa.net Download Script 1.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4054
|
2017-09-29 10:31 |
2008-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293189
|
- |
|
mozilla
|
firefox
|
The XPConnect component in Mozilla Firefox before 2.0.0.17 allows remote attackers to "pollute XPCNativeWrappers" and execute arbitrary code with chrome privileges via vectors related to a SCRIPT ele…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4059
|
2017-09-29 10:31 |
2008-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293190
|
- |
|
mozilla
|
firefox seamonkey thunderbird
|
Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allow remote attackers to create documents that lack script-handling objects, and execut…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4060
|
2017-09-29 10:31 |
2008-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|