|
285191
|
- |
|
gnome
|
vinagre
|
Format string vulnerability in the vinagre_utils_show_error function (src/vinagre-utils.c) in Vinagre 0.5.x before 0.5.2 and 2.x before 2.24.2 might allow remote attackers to execute arbitrary code v…
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2008-5660
|
2018-10-12 05:56 |
2008-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285192
|
- |
|
textpattern
|
textpattern
|
Multiple cross-site scripting (XSS) vulnerabilities in Textpattern (aka Txp CMS) 4.0.5 allow remote attackers to inject arbitrary web script or HTML via (1) the PATH_INFO to setup/index.php or (2) th…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5668
|
2018-10-12 05:56 |
2008-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285193
|
- |
|
textpattern
|
textpattern
|
index.php in the comments preview section in Textpattern (aka Txp CMS) 4.0.5 allows remote attackers to cause a denial of service via a long message parameter.
|
CWE-20
Improper Input Validation
|
CVE-2008-5669
|
2018-10-12 05:56 |
2008-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285194
|
- |
|
textpattern
|
textpattern
|
Textpattern (aka Txp CMS) 4.0.5 does not ask for the old password during a password reset, which makes it easier for remote attackers to change a password after hijacking a session.
|
CWE-255
Credentials Management
|
CVE-2008-5670
|
2018-10-12 05:56 |
2008-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285195
|
- |
|
joomla
|
joomla
|
PHP remote file inclusion vulnerability in index.php in Joomla! 1.0.11 through 1.0.14, when RG_EMULATION is enabled in configuration.php, allows remote attackers to execute arbitrary PHP code via a U…
|
CWE-94
Code Injection
|
CVE-2008-5671
|
2018-10-12 05:56 |
2008-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285196
|
- |
|
darkwet
|
webcam_xp
|
Multiple array index errors in the HTTP server in Darkwet Network webcamXP 3.72.440.0 and earlier and beta 4.05.280 and earlier allow remote attackers to cause a denial of service (device crash) and …
|
CWE-20
Improper Input Validation
|
CVE-2008-5674
|
2018-10-12 05:56 |
2008-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285197
|
- |
|
opera
|
opera
|
The HTML parsing engine in Opera before 9.63 allows remote attackers to execute arbitrary code via crafted web pages that trigger an invalid pointer calculation and heap corruption.
|
CWE-399
Resource Management Errors
|
CVE-2008-5679
|
2018-10-12 05:56 |
2008-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285198
|
- |
|
opera
|
opera_browser
|
Multiple buffer overflows in Opera before 9.63 might allow (1) remote attackers to execute arbitrary code via a crafted text area, or allow (2) user-assisted remote attackers to execute arbitrary cod…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5680
|
2018-10-12 05:56 |
2008-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285199
|
- |
|
sun
|
opensolaris solaris
|
tun in IP Tunnel in Solaris 10 and OpenSolaris snv_01 through snv_76 allows local users to cause a denial of service (panic) and possibly execute arbitrary code via a crafted SIOCGTUNPARAM IOCTL requ…
|
CWE-399
Resource Management Errors
|
CVE-2008-5689
|
2018-10-12 05:56 |
2008-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285200
|
- |
|
sun
|
opensolaris solaris
|
Complete system compromise only affects x86 platforms (http://www.trapkit.de/advisories/TKADV2008-015.txt)
|
CWE-399
Resource Management Errors
|
CVE-2008-5689
|
2018-10-12 05:56 |
2008-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|