|
298281
|
- |
|
debian
|
honeyd_common
|
test.sh in Honeyd 1.5c might allow local users to overwrite arbitrary files via a symlink attack on a temporary file.
|
CWE-59
Link Following
|
CVE-2008-3928
|
2017-08-8 10:32 |
2008-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298282
|
- |
|
ampache
|
ampache
|
gather-messages.sh in Ampache 3.4.1 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/filelist temporary file.
|
CWE-59
Link Following
|
CVE-2008-3929
|
2017-08-8 10:32 |
2008-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298283
|
- |
|
debian
|
citadel_server
|
migrate_aliases.sh in Citadel Server 7.37 allows local users to overwrite arbitrary files via a symlink attack on a temporary file.
|
CWE-59
Link Following
|
CVE-2008-3930
|
2017-08-8 10:32 |
2008-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298284
|
- |
|
r_foundation
|
r
|
javareconf in R 2.7.2 allows local users to overwrite arbitrary files via a symlink attack on temporary files.
|
CWE-59
Link Following
|
CVE-2008-3931
|
2017-08-8 10:32 |
2008-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298285
|
- |
|
hp
|
openvms
|
Format string vulnerability in the finger client in HP TCP/IP Services for OpenVMS 5.x allows local users to gain privileges via format string specifiers in a (1) .plan or (2) .project file.
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2008-3940
|
2017-08-8 10:32 |
2008-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298286
|
- |
|
ozsari
|
full_php_emlak_script
|
SQL injection vulnerability in landsee.php in Full PHP Emlak Script allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2008-3942
|
2017-08-8 10:32 |
2008-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298287
|
- |
|
hp
|
openvms
|
The finger client in HP TCP/IP Services for OpenVMS 5.x allows local users to read arbitrary files via a link corresponding to a (1) .plan or (2) .project file.
|
CWE-59 NVD-CWE-noinfo
Link Following
|
CVE-2008-3946
|
2017-08-8 10:32 |
2008-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298288
|
- |
|
hp
|
openvms
|
DCL (aka the CLI) in OpenVMS Alpha 8.3 allows local users to gain privileges via a long command line.
|
NVD-CWE-noinfo CWE-20
Improper Input Validation
|
CVE-2008-3947
|
2017-08-8 10:32 |
2008-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298289
|
- |
|
suse
|
suse_linux
|
emacs/lisp/progmodes/python.el in Emacs 22.1 and 22.2 imports Python script from the current working directory during editing of a Python file, which allows local users to execute arbitrary code via …
|
NVD-CWE-noinfo CWE-94
Code Injection
|
CVE-2008-3949
|
2017-08-8 10:32 |
2008-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298290
|
- |
|
microsoft
|
organization_chart
|
orgchart.exe in Microsoft Organization Chart 2.00 allows user-assisted attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted .opx file.
|
CWE-94
Code Injection
|
CVE-2008-3956
|
2017-08-8 10:32 |
2008-09-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|