|
293251
|
- |
|
cutephp
|
cutenews
|
plugins/wacko/highlight/html.php in Strawberry in CuteNews.ru 1.1.1 (aka Strawberry) allows remote attackers to execute arbitrary PHP code via the text parameter, which is inserted into an executable…
|
CWE-94
Code Injection
|
CVE-2008-4557
|
2017-09-29 10:32 |
2008-10-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293252
|
- |
|
xigla
|
absolute_poll_manager_xe
|
SQL injection vulnerability in xlacomments.asp in XIGLA Software Absolute Poll Manager XE 4.1 allows remote attackers to execute arbitrary SQL commands via the p parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4569
|
2017-09-29 10:32 |
2008-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293253
|
- |
|
real-estate-scripts
|
real-estate-scripts
|
SQL injection vulnerability in index.php in Real Estate Classifieds allows remote attackers to execute arbitrary SQL commands via the cat parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4570
|
2017-09-29 10:32 |
2008-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293254
|
- |
|
guildftpd
|
guildftpd
|
GuildFTPd 0.999.14, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long arguments to the CWD and LIST commands, whic…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-4572
|
2017-09-29 10:32 |
2008-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293255
|
- |
|
aspindir
|
munzursoft_web_portal_w3
|
SQL injection vulnerability in kategori.asp in MunzurSoft Wep Portal W3 allows remote attackers to execute arbitrary SQL commands via the kat parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4573
|
2017-09-29 10:32 |
2008-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293256
|
- |
|
aspindir
|
ayco_okul_portali
|
SQL injection vulnerability in default.asp in Ayco Okul Portali allows remote attackers to execute arbitrary SQL commands via the linkid parameter.
|
CWE-89
SQL Injection
|
CVE-2008-4574
|
2017-09-29 10:32 |
2008-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293257
|
- |
|
linux
|
linux_kernel
|
sctp in Linux kernel before 2.6.25.18 allows remote attackers to cause a denial of service (OOPS) via an INIT-ACK that states the peer does not support AUTH, which causes the sctp_process_init functi…
|
NVD-CWE-noinfo CWE-287
Improper Authentication
|
CVE-2008-4576
|
2017-09-29 10:32 |
2008-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293258
|
- |
|
chilkat_software
|
ftp
|
Insecure method vulnerability in the Chilkat FTP 2.0 ActiveX component (ChilkatCert.dll) allows remote attackers to overwrite arbitrary files via a full pathname in the SavePkcs8File method.
|
NVD-CWE-Other
|
CVE-2008-4583
|
2017-09-29 10:32 |
2008-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293259
|
- |
|
chilkat_software
|
mail
|
Insecure method vulnerability in Chilkat Mail 7.8 ActiveX control (ChilkatCert.dll) allows remote attackers to overwrite arbitrary files via a full pathname to the SaveLastError method.
|
NVD-CWE-Other
|
CVE-2008-4584
|
2017-09-29 10:32 |
2008-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293260
|
- |
|
acresso
|
flexnet_connect
|
Insecure method vulnerability in the MVSNCLientWebAgent61.WebAgent.1 ActiveX control (isusweb.dll 6.1.100.61372) in Macrovision FLEXnet Connect 6.1 allows remote attackers to force the download and e…
|
NVD-CWE-Other
|
CVE-2008-4586
|
2017-09-29 10:32 |
2008-10-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|