|
287391
|
- |
|
marvell netgear
|
88w8361w-bem1 wn802t
|
The Marvell driver for the Netgear WN802T Wi-Fi access point with firmware 1.3.16 on the Marvell 88W8361P-BEM1 chipset does not properly parse EAPoL-Key packets, which allows remote authenticated use…
|
CWE-20
Improper Input Validation
|
CVE-2008-1144
|
2018-10-12 05:29 |
2008-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287392
|
- |
|
php_web_scripts
|
dynamic_photo_gallery
|
SQL injection vulnerability in album.php in PHP WEB SCRIPT Dynamic Photo Gallery 1.02 allows remote attackers to execute arbitrary SQL commands via the albumID parameter.
|
CWE-89
SQL Injection
|
CVE-2008-1162
|
2018-10-12 05:29 |
2008-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287393
|
- |
|
flyspray
|
flyspray
|
Flyspray 0.9.9.4 generates different error messages depending on whether the username is valid or invalid, which allows remote attackers to enumerate usernames.
|
CWE-200
Information Exposure
|
CVE-2008-1166
|
2018-10-12 05:29 |
2008-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287394
|
- |
|
sarg
|
squid_analysis_report_generator
|
Stack-based buffer overflow in the useragent function in useragent.c in Squid Analysis Report Generator (Sarg) 2.2.3.1 allows remote attackers to execute arbitrary code via a long Squid proxy server …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-1167
|
2018-10-12 05:29 |
2008-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287395
|
- |
|
kcwiki
|
kcwiki
|
Multiple PHP remote file inclusion vulnerabilities in KCWiki 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the page parameter to (1) minimal/wiki.php and (2) simplest/wiki.php.
|
CWE-94
Code Injection
|
CVE-2008-1170
|
2018-10-12 05:29 |
2008-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287396
|
- |
|
torrenttrader
|
torrenttrader torrenttrader_classic
|
Cross-site request forgery (CSRF) vulnerabilities in account-inbox.php in TorrentTrader Classic 1.08 allow remote attackers to perform certain actions as other users, as demonstrated by sending messa…
|
CWE-352
Origin Validation Error
|
CVE-2008-1172
|
2018-10-12 05:29 |
2008-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287397
|
- |
|
torrenttrader
|
torrenttrader torrenttrader_classic
|
Cross-site scripting (XSS) vulnerability in account-inbox.php in TorrentTrader Classic 1.08 allows remote attackers to inject arbitrary web script or HTML via the msg parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2008-1173
|
2018-10-12 05:29 |
2008-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287398
|
- |
|
centreon
|
centreon
|
Directory traversal vulnerability in include/doc/index.php in Centreon 1.4.2.3 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter, a different vector…
|
CWE-22
Path Traversal
|
CVE-2008-1178
|
2018-10-12 05:29 |
2008-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287399
|
- |
|
juniper
|
secure_access_2000
|
Cross-site scripting (XSS) vulnerability in dana-na/auth/rdremediate.cgi in Juniper Networks Secure Access 2000 5.5 R1 build 11711 allows remote attackers to inject arbitrary web script or HTML via t…
|
CWE-79
Cross-site Scripting
|
CVE-2008-1180
|
2018-10-12 05:29 |
2008-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287400
|
- |
|
juniper
|
secure_access_2000
|
Juniper Networks Secure Access 2000 5.5 R1 (build 11711) allows remote attackers to obtain sensitive information via a direct request for remediate.cgi without certain parameters, which reveals the p…
|
CWE-200
Information Exposure
|
CVE-2008-1181
|
2018-10-12 05:29 |
2008-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|