|
278201
|
- |
|
adobe
|
flash_player
|
ActionScript in Adobe Flash Player 9.0.124.0 and earlier does not require user interaction in conjunction with (1) the FileReference.browse operation in the FileReference upload API or (2) the FileRe…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4401
|
2018-10-31 01:26 |
2008-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278202
|
- |
|
adobe
|
flash_player
|
The Settings Manager in Adobe Flash Player 9.0.124.0 and earlier allows remote attackers to cause victims to unknowingly click on a link or dialog via access control dialogs disguised as normal graph…
|
NVD-CWE-Other
|
CVE-2008-4503
|
2018-10-31 01:26 |
2008-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278203
|
- |
|
adobe
|
flash_player
|
Cross-site scripting (XSS) vulnerability in Adobe Flash Player 9.0.124.0 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors involving HTTP response headers.
|
CWE-79
Cross-site Scripting
|
CVE-2008-4818
|
2018-10-31 01:26 |
2008-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278204
|
- |
|
adobe
|
flash_player
|
Unspecified vulnerability in Adobe Flash Player 9.0.124.0 and earlier makes it easier for remote attackers to conduct DNS rebinding attacks via unknown vectors.
|
NVD-CWE-Other
|
CVE-2008-4819
|
2018-10-31 01:26 |
2008-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278205
|
- |
|
adobe
|
flash_player
|
Unspecified vulnerability in the Flash Player ActiveX control in Adobe Flash Player 9.0.124.0 and earlier on Windows allows attackers to obtain sensitive information via unknown vectors.
|
CWE-200
Information Exposure
|
CVE-2008-4820
|
2018-10-31 01:26 |
2008-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278206
|
- |
|
adobe
|
flash_player
|
Adobe Flash Player 9.0.124.0 and earlier, when a Mozilla browser is used, does not properly interpret jar: URLs, which allows attackers to obtain sensitive information via unknown vectors.
|
CWE-200
Information Exposure
|
CVE-2008-4821
|
2018-10-31 01:26 |
2008-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278207
|
- |
|
adobe
|
flash_player
|
Adobe Flash Player 9.0.124.0 and earlier does not properly interpret policy files, which allows remote attackers to bypass a non-root domain policy.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4822
|
2018-10-31 01:26 |
2008-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278208
|
- |
|
adobe
|
flash_player
|
Cross-site scripting (XSS) vulnerability in Adobe Flash Player 9.0.124.0 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to loose interpretation of an A…
|
CWE-79
Cross-site Scripting
|
CVE-2008-4823
|
2018-10-31 01:26 |
2008-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278209
|
- |
|
sun
|
java_system_messaging_server
|
Cross-site scripting (XSS) vulnerability in Sun Java System Messaging Server 6.2 and 6.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerabil…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5098
|
2018-10-31 01:26 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278210
|
- |
|
sun
|
java_system_messaging_server
|
http://sunsolve.sun.com/search/document.do?assetkey=1-26-242186-1
5. Resolution
This issue is addressed in the following releases:
SPARC Platform
* Sun Java System Messaging Server 6.…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5098
|
2018-10-31 01:26 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|