|
294431
|
- |
|
spice_classifieds
|
spice_classifieds
|
SQL injection vulnerability in index.php in Spice Classifieds allows remote attackers to execute arbitrary SQL commands via the cat_path parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4039
|
2017-09-29 10:31 |
2008-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294432
|
- |
|
aj_square
|
aj_hyip
|
Multiple SQL injection vulnerabilities in AJ Square AJ HYIP Acme allow remote attackers to execute arbitrary SQL commands via the artid parameter to (1) acme/article/comment.php and (2) prime/article…
|
CWE-89
SQL Injection
|
CVE-2008-4043
|
2017-09-29 10:31 |
2008-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294433
|
- |
|
aj_square
|
aj_hyip
|
SQL injection vulnerability in article/readarticle.php in AJ Square aj-hyip (aka AJ HYIP Acme) allows remote attackers to execute arbitrary SQL commands via the artid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4044
|
2017-09-29 10:31 |
2008-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294434
|
- |
|
friendly_technologies
|
friendly_pppoe_client
|
Heap-based buffer overflow in a certain ActiveX control in fwRemoteCfg.dll 3.3.3.1 in Friendly Technologies FriendlyPPPoE Client 3.0.0.57 allows remote attackers to execute arbitrary code via a long …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-4048
|
2017-09-29 10:31 |
2008-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294435
|
- |
|
friendly_technologies
|
friendly_pppoe_client
|
A certain ActiveX control in fwRemoteCfg.dll 3.3.3.1 in Friendly Technologies FriendlyPPPoE Client 3.0.0.57 allows remote attackers to execute arbitrary programs via arguments to the RunApp method.
|
CWE-20
Improper Input Validation
|
CVE-2008-4049
|
2017-09-29 10:31 |
2008-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294436
|
- |
|
friendly_technologies
|
friendly_pppoe_client
|
A certain ActiveX control in fwRemoteCfg.dll 3.3.3.1 in Friendly Technologies FriendlyPPPoE Client 3.0.0.57 allows remote attackers to (1) create and read arbitrary registry values via the RegistryVa…
|
CWE-20
Improper Input Validation
|
CVE-2008-4050
|
2017-09-29 10:31 |
2008-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294437
|
- |
|
kolifa
|
download_script
|
SQL injection vulnerability in indir.php in Kolifa.net Download Script 1.2 allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4054
|
2017-09-29 10:31 |
2008-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294438
|
- |
|
mozilla
|
firefox
|
The XPConnect component in Mozilla Firefox before 2.0.0.17 allows remote attackers to "pollute XPCNativeWrappers" and execute arbitrary code with chrome privileges via vectors related to a SCRIPT ele…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4059
|
2017-09-29 10:31 |
2008-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294439
|
- |
|
mozilla
|
firefox seamonkey thunderbird
|
Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allow remote attackers to create documents that lack script-handling objects, and execut…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4060
|
2017-09-29 10:31 |
2008-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294440
|
- |
|
canonical mozilla
|
ubuntu_linux firefox
|
Multiple unspecified vulnerabilities in Mozilla Firefox 3.x before 3.0.2 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary co…
|
NVD-CWE-noinfo
|
CVE-2008-4063
|
2017-09-29 10:31 |
2008-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|