|
287691
|
- |
|
frank_yaul
|
corehttp
|
Off-by-one error in src/http.c in CoreHTTP 0.5.3.1 and earlier allows remote attackers to cause a denial of service or possibly execute arbitrary code via an HTTP request with a long first line that …
|
CWE-189
Numeric Errors
|
CVE-2009-3586
|
2018-10-11 04:47 |
2009-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287692
|
- |
|
ben_webb
|
dopewars
|
Dopewars 1.5.12 allows remote attackers to cause a denial of service (segmentation fault) via a REQUESTJET message with an invalid location.
|
CWE-20
Improper Input Validation
|
CVE-2009-3591
|
2018-10-11 04:47 |
2009-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287693
|
- |
|
icculus
|
alien_arena
|
Stack-based buffer overflow in the M_AddToServerList function in client/menu.c in Red Planet Arena Alien Arena 7.30 allows remote attackers to execute arbitrary code via a packet with a crafted serve…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-3637
|
2018-10-11 04:47 |
2010-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287694
|
- |
|
nullam
|
nullam_blog
|
Multiple directory traversal vulnerabilities in index.php in Nullam Blog 0.1.2 allow remote attackers to include or execute arbitrary files via a .. (dot dot) in the (1) p and (2) s parameters.
|
CWE-22
Path Traversal
|
CVE-2009-3664
|
2018-10-11 04:47 |
2009-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287695
|
- |
|
nullam
|
nullam_blog
|
Multiple SQL injection vulnerabilities in index.php in Nullam Blog 0.1.2 allow remote attackers to execute arbitrary SQL commands via the (1) i parameter or (2) v parameters in a register action.
|
CWE-89
SQL Injection
|
CVE-2009-3665
|
2018-10-11 04:47 |
2009-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287696
|
- |
|
nullam
|
nullam_blog
|
Cross-site scripting (XSS) vulnerability in index.php in Nullam Blog 0.1.2 allows remote attackers to inject arbitrary web script or HTML via the e parameter in an error action.
|
CWE-79
Cross-site Scripting
|
CVE-2009-3666
|
2018-10-11 04:47 |
2009-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287697
|
- |
|
squidguard
|
squidguard
|
Buffer overflow in sgLog.c in squidGuard 1.3 and 1.4 allows remote attackers to cause a denial of service (application hang or loss of blocking functionality) via a long URL with many / (slash) chara…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-3700
|
2018-10-11 04:47 |
2009-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287698
|
- |
|
php-calendar
|
php-calendar
|
Multiple absolute path traversal vulnerabilities in PHP-Calendar 1.1 allow remote attackers to include and execute arbitrary local files via a full pathname in the configfile parameter to (1) update0…
|
CWE-22
Path Traversal
|
CVE-2009-3702
|
2018-10-11 04:47 |
2009-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287699
|
- |
|
fahlstad
|
wp-forum
|
Multiple SQL injection vulnerabilities in the WP-Forum plugin before 2.4 for WordPress allow remote attackers to execute arbitrary SQL commands via (1) the search_max parameter in a search action to …
|
CWE-89
SQL Injection
|
CVE-2009-3703
|
2018-10-11 04:47 |
2009-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287700
|
- |
|
konae
|
alleycode_html_editor
|
Stack-based buffer overflow in the Meta Content Optimizer in Konae Technologies Alleycode HTML Editor 2.21 allows user-assisted remote attackers to execute arbitrary code via a long value in a TITLE …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-3709
|
2018-10-11 04:47 |
2009-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|