|
287841
|
- |
|
inter7
|
sqwebmail
|
Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 and possibly other versions allows remote attackers to inject arbitrary web script or HTML via an HTML e-mail containing tags with strings …
|
NVD-CWE-Other
|
CVE-2005-2769
|
2017-10-26 10:29 |
2005-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287842
|
- |
|
microsoft
|
windows_nt
|
Windows NT searches a user's home directory (%systemroot% by default) before other directories to find critical programs such as NDDEAGNT.EXE, EXPLORER.EXE, USERINIT.EXE or TASKMGR.EXE, which could a…
|
NVD-CWE-Other
|
CVE-1999-1365
|
2017-10-26 10:29 |
1999-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287843
|
- |
|
apache
|
http_server
|
Apache HTTP Server 1.3.22 through 1.3.27 on OpenBSD allows remote attackers to obtain sensitive information via (1) the ETag header, which reveals the inode number, or (2) multipart MIME boundary, wh…
|
CWE-200
Information Exposure
|
CVE-2003-1418
|
2017-10-20 10:29 |
2003-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287844
|
- |
|
phpauctions
|
phpauctions
|
SQL injection vulnerability in profile.php in PHPAuctions (aka PHPAuctionSystem) allows remote attackers to execute arbitrary SQL commands via the user_id parameter.
|
CWE-89
SQL Injection
|
CVE-2009-0106
|
2017-10-19 10:30 |
2009-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287845
|
- |
|
phpauctions
|
phpauctions
|
Cross-site scripting (XSS) vulnerability in profile.php in PHPAuctions (aka PHPAuctionSystem) allows remote attackers to inject arbitrary web script or HTML via the user_id parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2009-0107
|
2017-10-19 10:30 |
2009-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287846
|
- |
|
vmware
|
ace fusion server vmware_player vmware_workstation
|
vmwarebase.dll, as used in the vmware-authd service (aka vmware-authd.exe), in VMware Workstation 6.5.1 build 126130, 6.5.1 and earlier; VMware Player 2.5.1 build 126130, 2.5.1 and earlier; VMware AC…
|
CWE-399
Resource Management Errors
|
CVE-2009-0177
|
2017-10-19 10:30 |
2009-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287847
|
- |
|
trilogic
|
media_player
|
Stack-based buffer overflow in Triologic Media Player 7 and 8.0.0.0 allows user-assisted remote attackers to execute arbitrary code via a long string in a .m3u playlist file. NOTE: some of these det…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-0262
|
2017-10-19 10:30 |
2009-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287848
|
- |
|
nullsoft
|
winamp
|
Multiple buffer overflows in Winamp 5.541 and earlier allow remote attackers to cause a denial of service and possibly execute arbitrary code via (1) a large Common Chunk (COMM) header value in an AI…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-0263
|
2017-10-19 10:30 |
2009-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287849
|
- |
|
joomla
|
com_waticketsystem
|
SQL injection vulnerability in the WebAmoeba (WA) Ticket System (com_waticketsystem) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a categ…
|
CWE-89
SQL Injection
|
CVE-2009-0333
|
2017-10-19 10:30 |
2009-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287850
|
- |
|
dmxready
|
classified_listings_manager
|
SQL injection vulnerability in CategoryManager/upload_image_category.asp in DMXReady Classified Listings Manager 1.1 and earlier allows remote attackers to execute arbitrary SQL commands via the cid …
|
CWE-89
SQL Injection
|
CVE-2009-0426
|
2017-10-19 10:30 |
2009-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|