|
285301
|
- |
|
clientsoftware
|
wincome_mpd_total
|
Integer overflow in the remote administration protocol processing in Client Software WinCom LPD Total 3.0.2.623 and earlier allows remote attackers to cause a denial of service (crash) via a large st…
|
CWE-189
Numeric Errors
|
CVE-2008-5159
|
2018-10-12 05:54 |
2008-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285302
|
- |
|
openbsd ssh
|
openssh tectia_client tectia_connector tectia_connectsecure tectia_server
|
Error handling in the SSH protocol in (1) SSH Tectia Client and Server and Connector 4.0 through 4.4.11, 5.0 through 5.2.4, and 5.3 through 5.3.8; Client and Server and ConnectSecure 6.0 through 6.0.…
|
CWE-200
Information Exposure
|
CVE-2008-5161
|
2018-10-12 05:54 |
2008-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285303
|
- |
|
openbsd ssh
|
openssh tectia_client tectia_connector tectia_connectsecure tectia_server
|
http://securitytracker.com/alerts/2008/Nov/1021235.html
CBC mode connections are affected
|
CWE-200
Information Exposure
|
CVE-2008-5161
|
2018-10-12 05:54 |
2008-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285304
|
- |
|
openbsd ssh
|
openssh tectia_client tectia_connector tectia_connectsecure tectia_server
|
With a valid username and password patches are available at the following link:
https://downloads.ssh.com/
|
CWE-200
Information Exposure
|
CVE-2008-5161
|
2018-10-12 05:54 |
2008-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285305
|
- |
|
theratstudios
|
the_rat_cms
|
Multiple SQL injection vulnerabilities in The Rat CMS Pre-Alpha 2 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) viewarticle.php and (2) viewarticle2.php.
|
CWE-89
SQL Injection
|
CVE-2008-5163
|
2018-10-12 05:54 |
2008-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285306
|
- |
|
theratstudios
|
the_rat_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in The Rat CMS Pre-Alpha 2 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to (a) viewarticle.php and (b) vi…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5164
|
2018-10-12 05:54 |
2008-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285307
|
- |
|
clientsoftware
|
wincom_mpd_total
|
Multiple buffer overflows in Client Software WinCom LPD Total 3.0.2.623 and earlier allow remote attackers to execute arbitrary code via (1) a long 0x02 command to the remote administration service o…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5176
|
2018-10-12 05:54 |
2008-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285308
|
- |
|
linux
|
linux_kernel
|
The inotify functionality in Linux kernel 2.6 before 2.6.28-rc5 might allow local users to gain privileges via unknown vectors related to race conditions in inotify watch removal and umount.
|
NVD-CWE-noinfo CWE-362
Race Condition
|
CVE-2008-5182
|
2018-10-12 05:54 |
2008-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285309
|
- |
|
sphider
|
sphider
|
Cross-site scripting (XSS) vulnerability in search.php in Sphider 1.3.4, when the search suggestion feature is enabled, allows remote attackers to inject arbitrary web script or HTML via the query pa…
|
CWE-79
Cross-site Scripting
|
CVE-2008-5211
|
2018-10-12 05:54 |
2008-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285310
|
- |
|
dvbbs
|
dvbbs
|
SQL injection vulnerability in login.asp in Dvbbs 8.2.0 allows remote attackers to execute arbitrary SQL commands via the username parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5222
|
2018-10-12 05:54 |
2008-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|