|
292041
|
- |
|
numark
|
cue
|
Stack-based buffer overflow in Numark CUE 5.0 rev2 allows user-assisted attackers to cause a denial of service (application crash) or execute arbitrary code via an M3U playlist file that contains a l…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-4470
|
2017-09-29 10:32 |
2008-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292042
|
- |
|
crux_software
|
gallery
|
Directory traversal vulnerability in index.php in Crux Gallery 1.32 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot …
|
CWE-22
Path Traversal
|
CVE-2008-4483
|
2017-09-29 10:32 |
2008-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292043
|
- |
|
yerba
|
yerba
|
Directory traversal vulnerability in index.php in SAC.php (SACphp), as used in Yerba 6.3 and earlier, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the mo…
|
CWE-22
Path Traversal
|
CVE-2008-4486
|
2017-09-29 10:32 |
2008-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292044
|
- |
|
phpabook
|
phpabook
|
Directory traversal vulnerability in config.inc.php in phpAbook 0.8.8b and earlier, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (d…
|
CWE-22
Path Traversal
|
CVE-2008-4490
|
2017-09-29 10:32 |
2008-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292045
|
- |
|
yourownbux
|
yourownbux
|
SQL injection vulnerability in referrals.php in YourOwnBux 4.0 allows remote attackers to execute arbitrary SQL commands via the usNick cookie.
|
CWE-89
SQL Injection
|
CVE-2008-4492
|
2017-09-29 10:32 |
2008-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292046
|
- |
|
microsoft
|
digital_image
|
Microsoft PicturePusher ActiveX control (PipPPush.DLL 7.00.0709), as used in Microsoft Digital Image 2006 Starter Edition, allows remote attackers to force the upload of arbitrary files by using the …
|
NVD-CWE-noinfo CWE-20
Improper Input Validation
|
CVE-2008-4493
|
2017-09-29 10:32 |
2008-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292047
|
- |
|
torrenttrader
|
torrenttrader
|
SQL injection vulnerability in completed-advance.php in TorrentTrader Classic 1.08 and 1.04 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4494
|
2017-09-29 10:32 |
2008-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292048
|
- |
|
select_development_solutions
|
php_auto_dealer
|
SQL injection vulnerability in view_cat.php in PHP Auto Dealer 2.7 allows remote attackers to execute arbitrary SQL commands via the v_cat parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4495
|
2017-09-29 10:32 |
2008-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292049
|
- |
|
select_development_solutions
|
php_realtor
|
SQL injection vulnerability in view_cat.php in PHP Realtor 1.5 allows remote attackers to execute arbitrary SQL commands via the v_cat parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4496
|
2017-09-29 10:32 |
2008-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292050
|
- |
|
built2go
|
real_estate_listings
|
SQL injection vulnerability in event_detail.php in Built2Go Real Estate Listings 1.5 allows remote attackers to execute arbitrary SQL commands via the event_id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4497
|
2017-09-29 10:32 |
2008-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|