|
285291
|
- |
|
anelectron
|
advanced_electron_forum
|
Electron Inc. Advanced Electron Forum before 1.0.7 allows remote attackers to execute arbitrary PHP code via PHP code embedded in bbcode in the email parameter, which is processed by the preg_replace…
|
CWE-94
Code Injection
|
CVE-2008-5090
|
2018-10-12 05:54 |
2008-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285292
|
- |
|
myfwb
|
myfwb
|
SQL injection vulnerability in index.php in MyFWB 1.0 allows remote attackers to execute arbitrary SQL commands via the page parameter.
|
CWE-89
SQL Injection
|
CVE-2008-5097
|
2018-10-12 05:54 |
2008-11-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285293
|
- |
|
microsoft
|
.net_framework
|
The strong name (SN) implementation in Microsoft .NET Framework 2.0.50727 relies on the digital signature Public Key Token embedded in the pathname of a DLL file instead of the digital signature of t…
|
CWE-310
Cryptographic Issues
|
CVE-2008-5100
|
2018-10-12 05:54 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285294
|
- |
|
karjasoft
|
sami_ftp_server
|
KarjaSoft Sami FTP Server 2.0.x allows remote attackers to cause a denial of service (daemon crash or hang) via certain (1) APPE, (2) CWD, (3) DELE, (4) MKD, (5) RMD, (6) RETR, (7) RNFR, (8) RNTO, (9…
|
CWE-20
Improper Input Validation
|
CVE-2008-5105
|
2018-10-12 05:54 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285295
|
- |
|
karjasoft
|
sami_ftp_server
|
Buffer overflow in KarjaSoft Sami FTP Server 2.0.x allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via a long argument to an arbitrary command,…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5106
|
2018-10-12 05:54 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285296
|
- |
|
sun
|
java_system_identity_manager
|
Cross-site request forgery (CSRF) vulnerability in Sun Java System Identity Manager 6.0 through 6.0 SP4, 7.0, and 7.1 allows remote attackers to hijack the authentication of administrators for reques…
|
CWE-352
Origin Validation Error
|
CVE-2008-5115
|
2018-10-12 05:54 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285297
|
- |
|
sun
|
java_system_identity_manager
|
Directory traversal vulnerability in idm/includes/helpServer.jsp in Sun Java System Identity Manager 6.0 through 6.0 SP4, 7.0, and 7.1 allows remote attackers to read arbitrary files in the filesyste…
|
CWE-22
Path Traversal
|
CVE-2008-5116
|
2018-10-12 05:54 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285298
|
- |
|
hp
|
openvms
|
Stack-based buffer overflow in the Process Software MultiNet finger service (aka FINGERD) for HP OpenVMS 8.3 allows remote attackers to execute arbitrary code via a long request string.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5120
|
2018-10-12 05:54 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285299
|
- |
|
jscape
|
secure_ftp_applet
|
JSCAPE Secure FTP Applet 4.8.0 and earlier does not ask the user to verify a new or mismatched SSH host key, which makes it easier for remote attackers to perform man-in-the-middle attacks.
|
CWE-287
Improper Authentication
|
CVE-2008-5124
|
2018-10-12 05:54 |
2008-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
285300
|
- |
|
clientsoftware
|
wincome_mpd_total
|
Client Software WinCom LPD Total 3.0.2.623 and earlier allows remote attackers to bypass authentication and perform administrative actions via vectors involving "simply skipping the auth stage."
|
CWE-287
Improper Authentication
|
CVE-2008-5158
|
2018-10-12 05:54 |
2008-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|