|
284241
|
- |
|
spyce
|
spyce
|
Open redirect vulnerability in spyce/examples/redirect.spy in Spyce - Python Server Pages (PSP) 2.1.3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via…
|
CWE-22
Path Traversal
|
CVE-2008-0981
|
2018-10-16 07:04 |
2008-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284242
|
- |
|
spyce
|
spyce
|
Spyce - Python Server Pages (PSP) 2.1.3 allows remote attackers to obtain sensitive information via a direct request for spyce/examples/automaton.spy, which reveals the path in an error message.
|
CWE-20
Improper Input Validation
|
CVE-2008-0982
|
2018-10-16 07:04 |
2008-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284243
|
- |
|
lighttpd
|
lighttpd
|
lighttpd 1.4.18, and possibly other versions before 1.5.0, does not properly calculate the size of a file descriptor array, which allows remote attackers to cause a denial of service (crash) via a la…
|
CWE-399
Resource Management Errors
|
CVE-2008-0983
|
2018-10-16 07:04 |
2008-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284244
|
- |
|
miro videolan
|
miro_player vlc_media_player
|
The MP4 demuxer (mp4.c) for VLC media player 0.8.6d and earlier, as used in Miro Player 1.1 and earlier, allows remote attackers to overwrite arbitrary memory and execute arbitrary code via a malform…
|
CWE-399
Resource Management Errors
|
CVE-2008-0984
|
2018-10-16 07:04 |
2008-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284245
|
- |
|
google
|
android_sdk
|
Heap-based buffer overflow in the GIF library in the WebKit framework for Google Android SDK m3-rc37a and earlier allows remote attackers to execute arbitrary code via a crafted GIF file whose logica…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-0985
|
2018-10-16 07:04 |
2008-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284246
|
- |
|
google
|
android_sdk
|
Integer overflow in the BMP::readFromStream method in the libsgl.so library in Google Android SDK m3-rc37a and earlier, and m5-rc14, allows remote attackers to execute arbitrary code via a crafted BM…
|
CWE-189
Numeric Errors
|
CVE-2008-0986
|
2018-10-16 07:04 |
2008-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284247
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Directory traversal vulnerability in ContentServer.py in the Wiki Server in Apple Mac OS X 10.5.2 (aka Leopard) allows remote authenticated users to write arbitrary files via ".." sequences in file a…
|
CWE-22
Path Traversal
|
CVE-2008-1000
|
2018-10-16 07:04 |
2008-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284248
|
- |
|
asterisk
|
asterisk-addons
|
The ooh323 channel driver in Asterisk Addons 1.2.x before 1.2.9 and Asterisk-Addons 1.4.x before 1.4.7 creates a remotely accessible TCP port that is intended solely for localhost communication, and …
|
CWE-399
Resource Management Errors
|
CVE-2008-2543
|
2018-10-16 07:04 |
2008-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284249
|
- |
|
wellyblog
|
wellyblog
|
Cross-site scripting (XSS) vulnerability in edit.php in wellyblog allows remote attackers to inject arbitrary web script or HTML via the articleid parameter in an add action.
|
CWE-79
Cross-site Scripting
|
CVE-2008-5205
|
2018-10-16 07:04 |
2008-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
284250
|
- |
|
cacti
|
cacti
|
graph.php in Cacti 0.8.7 before 0.8.7b and 0.8.6 before 0.8.6k allows remote attackers to obtain the full path via an invalid local_graph_id parameter and other unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2008-0784
|
2018-10-16 07:03 |
2008-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|