adobe -- acrobat |
Adobe Acrobat 9 uses more efficient encryption than previous versions, which makes it easier for attackers to guess a document's password via a brute-force attack. |
2008-12-04 | 7.5 | CVE-2008-5331 BID MISC CONFIRM |
apple -- cups |
Integer overflow in the _cupsImageReadPNG function in CUPS 1.1.17 through 1.3.9 allows remote attackers to execute arbitrary code via a PNG image with a large height value, which bypasses a validation check and triggers a buffer overflow. |
2008-12-01 | 7.5 | CVE-2008-5286 BID CONFIRM |
apple -- iphone_configuration_web_utility |
Directory traversal vulnerability in the web interface in Apple iPhone Configuration Web Utility 1.0 on Windows allows remote attackers to read arbitrary files via unspecified vectors. |
2008-12-03 | 7.8 | CVE-2008-5315 BUGTRAQ SECUNIA FULLDISC |
bdigital_web_solutions -- webstudio_ehotel |
SQL injection vulnerability in index.php in WebStudio eHotel allows remote attackers to execute arbitrary SQL commands via the pageid parameter. |
2008-12-01 | 7.5 | CVE-2008-5293 XF MILW0RM SECUNIA |
bdigital_web_solutions -- webstudio_ecatalogue |
SQL injection vulnerability in index.php in WebStudio eCatalogue allows remote attackers to execute arbitrary SQL commands via the pageid parameter. |
2008-12-01 | 7.5 | CVE-2008-5294 XF MILW0RM SECUNIA |
bdigital_web_solutions -- webstudio_cms |
SQL injection vulnerability in index.php in WebStudio CMS allows remote attackers to execute arbitrary SQL commands via the pageid parameter. |
2008-12-04 | 7.5 | CVE-2008-5336 BID BUGTRAQ MILW0RM |
easy-script -- wysi_wiki_wyg |
Wysi Wiki Wyg 1.0 allows remote attackers to obtain system information via an invalid categup parameter to index.php, which calls the phpinfo function. |
2008-12-03 | 7.8 | CVE-2008-5322 MILW0RM SECUNIA MISC |
fuzzylime -- fuzzylime_cms |
Directory traversal vulnerability in code/track.php in FuzzyLime 3.03 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the p parameter, a different vector than CVE-2007-4805 and CVE-2008-3165. |
2008-12-01 | 7.5 | CVE-2008-5291 BID MILW0RM SECUNIA |
ibm -- rational_clearquest |
ClearQuest Web in IBM Rational ClearQuest MultiSite before 7.1 allows remote servers to direct a client's submissions and changes to an arbitrary database by specifying multiple comma-separated server identifiers on the JTLRMIREGISTRYSERVERS line in a jtl.properties file. |
2008-12-04 | 7.5 | CVE-2008-5329 XF AIXAPAR SECUNIA |
iea_software -- air_marshal iea_software -- emerald iea_software -- radius_test_client iea_software -- radiusnt iea_software -- radiusx iea_software -- radlogin |
The web server in IEA Software RadiusNT and RadiusX 5.1.38 and other versions before 5.1.44, Emerald 5.0.49 and other versions before 5.0.52, Air Marshal 2.0.4 and other versions before 2.0.8, and Radius test client (aka Radlogin) 4.0.20 and earlier, allows remote attackers to cause a denial of service (crash) via an HTTP Content-Length header with a negative value, which triggers a single byte overwrite of memory using a NULL terminator. NOTE: some of these details are obtained from third party information. |
2008-11-28 | 10.0 | CVE-2008-5284 BID CONFIRM CONFIRM CONFIRM FRSIRT SECUNIA MISC |
inspector_it -- wiz-ad |
SQL injection vulnerability in Wiz-Ad 1.3 allows remote attackers to execute arbitrary SQL commands via unknown vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. |
2008-12-04 | 7.5 | CVE-2007-6719 BID |
jamit_software -- jamit_job_board |
SQL injection vulnerability in index.php in Jamit Job Board 3.4.10 allows remote attackers to execute arbitrary SQL commands via the show_emp parameter. |
2008-12-01 | 7.5 | CVE-2008-5295 BID MILW0RM SECUNIA |
littlecms -- lcms littlecms -- little_cms_color_engine |
Buffer overflow in the ReadEmbeddedTextTag function in src/cmsio1.c in Little cms color engine (aka lcms) before 1.16 allows attackers to have an unknown impact via vectors related to a length parameter inconsistency involving the contents of "the input file," a different vulnerability than CVE-2007-2741. |
2008-12-03 | 10.0 | CVE-2008-5316 CONFIRM |
littlecms -- lcms littlecms -- little_cms_color_engine |
Integer signedness error in the cmsAllocGamma function in src/cmsgamma.c in Little cms color engine (aka lcms) before 1.17 allows attackers to have an unknown impact via a file containing a certain "number of entries" value, which is interpreted improperly, leading to an allocation of insufficient memory. |
2008-12-03 | 10.0 | CVE-2008-5317 CONFIRM |
lovecms -- the_simple_forum |
The Simple Forum 3.1d module for LoveCMS 1.6.2 Final does properly restrict access to administrator functions, which allows remote attackers to change the administrator password via a direct request to modules/simpleforum/admin/index.php. |
2008-12-02 | 7.5 | CVE-2008-5308 XF BID MILW0RM FRSIRT SECUNIA OSVDB |
multimania -- bandsite_portal_system multimania -- bandwebsite |
SQL injection vulnerability in lyrics.php in Bandwebsite (aka Bandsite portal system) 1.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. |
2008-12-04 | 7.5 | CVE-2008-5337 MISC BID MILW0RM |
netart_media -- real_estate_portal |
SQL injection vulnerability in NetArt Media Real Estate Portal 1.2 allows remote attackers to execute arbitrary SQL commands via the ad_id parameter in the re_send_email module to index.php. |
2008-12-02 | 7.5 | CVE-2008-5309 XF BID MILW0RM |
netart_media -- car_portal |
SQL injection vulnerability in image.php in NetArt Media Car Portal 2.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. |
2008-12-02 | 7.5 | CVE-2008-5310 XF BID MILW0RM FRSIRT |
netart_media -- blog_system |
SQL injection vulnerability in image.php in NetArt Media Blog System 1.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. |
2008-12-02 | 7.5 | CVE-2008-5311 XF BID MILW0RM FRSIRT |
nitrotech -- nitrotech |
SQL injection vulnerability in members.php in NitroTech 0.0.3a allows remote attackers to execute arbitrary SQL commands via the id parameter. |
2008-12-04 | 7.5 | CVE-2008-5333 BID MILW0RM |
nitrotech -- nitrotech |
PHP remote file inclusion vulnerability in includes/common.php in NitroTech 0.0.3a allows remote attackers to execute arbitrary PHP code via a URL in the root parameter. |
2008-12-04 | 10.0 | CVE-2008-5334 MILW0RM |
octeth -- oempro |
Multiple SQL injection vulnerabilities in Octeth Oempro 3.5.5.1, and possibly other versions before 4, allow remote attackers to execute arbitrary SQL commands via the FormValue_Email parameter (aka Email field) to index.php in (1) member/, (2) client/, or (3) admin/; or (4) the FormValue_SearchKeywords parameter to client/campaign_track.php. |
2008-12-03 | 7.5 | CVE-2008-3058 OSVDB OSVDB MISC MISC |
pie -- pie |
Multiple PHP remote file inclusion vulnerabilities in Pie 0.5.3 allow remote attackers to execute arbitrary PHP code via a URL in the (1) lib parameter to files in lib/action/ including (a) alias.php, (b) cancel.php, (c) context.php, (d) deadlinks.php, (e) delete.php, and others; and the (2) GLOBALS[pie][library_path] parameter to files in lib/share/ including (f) diff.php, (g) file.php, (h) locale.php, (i) mapfile.php, (j) page.php, and others. |
2008-12-04 | 10.0 | CVE-2008-5332 BID MILW0RM |
pilot_group -- pg_real_estate_solution |
SQL injection vulnerability in admin/index.php in PG Real Estate Solution allows remote attackers to execute arbitrary SQL commands via the login_lg parameter (username). NOTE: some of these details are obtained from third party information. |
2008-12-02 | 7.5 | CVE-2008-5306 XF BID MILW0RM FRSIRT SECUNIA |
pilot_group -- pg_real_roommate_finder_solution |
SQL injection vulnerability in admin/index.php in PG Roommate Finder Solution allows remote attackers to execute arbitrary SQL commands via the login_lg parameter. NOTE: some of these details are obtained from third party information. |
2008-12-02 | 7.5 | CVE-2008-5307 XF BID MILW0RM FRSIRT SECUNIA |
samba -- samba |
smbd in Samba 3.0.29 through 3.2.4 might allow remote attackers to read arbitrary memory and cause a denial of service via crafted (1) trans, (2) trans2, and (3) nttrans requests, related to a "cut&paste error" that causes an improper bounds check to be performed. |
2008-12-01 | 8.5 | CVE-2008-4314 UBUNTU SECTRACK BID FRSIRT CONFIRM CONFIRM SECUNIA SECUNIA OSVDB |
scripts4you -- faq_manager |
SQL injection vulnerability in catagorie.php in Werner Hilversum FAQ Manager 1.2 allows remote attackers to execute arbitrary SQL commands via the cat_id parameter. |
2008-12-01 | 7.5 | CVE-2008-5287 XF BID MILW0RM SECUNIA |
scripts4you -- clean_cms |
SQL injection vulnerability in full_txt.php in Werner Hilversum Clean CMS 1.5 allows remote attackers to execute arbitrary SQL commands via the id parameter. |
2008-12-01 | 7.5 | CVE-2008-5289 BID MILW0RM MILW0RM SECUNIA |
sun -- jdk sun -- jre sun -- sdk |
Sun Java Web Start and Java Plug-in for JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allow remote attackers to execute arbitrary code via a crafted jnlp file that modifies the (1) java.home, (2) java.ext.dirs, or (3) user.home System Properties, aka "Java Web Start File Inclusion." |
2008-12-04 | 9.3 | CVE-2008-2086 MISC BUGTRAQ REDHAT SUNALERT |
sun -- jdk sun -- jre sun -- sdk |
Unspecified vulnerability in Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows untrusted JWS applications to gain privileges to access local files or applications via unknown vectors. |
2008-12-05 | 10.0 | CVE-2008-5340 SUNALERT |
sun -- jdk sun -- jre sun -- sdk |
Unspecified vulnerability in Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows "hidden code" to make unauthorized network connections and "hijack HTTP sessions using cookies stored in the browser" via unknown vectors. |
2008-12-05 | 9.0 | CVE-2008-5343 SUNALERT |
sun -- jdk sun -- jre sun -- sdk |
Unspecified vulnerability in Java Web Start (JWS) and Java Plug-in with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows untrusted applets to read arbitrary files and make unauthorized network connections via unknown vectors related to applet classloading. |
2008-12-05 | 7.5 | CVE-2008-5344 SUNALERT |
sun -- jdk sun -- jre sun -- sdk |
Unspecified vulnerability in Java Runtime Environment (JRE) with Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; SDK and JRE 1.4.2_18 and earlier; and SDK and JRE 1.3.1_23 and earlier allows code that is loaded from a local filesystem to read arbitrary files and make unauthorized connections to localhost via unknown vectors. |
2008-12-05 | 7.5 | CVE-2008-5345 SUNALERT |
sun -- jdk sun -- jre sun -- sdk |
Unspecified vulnerability in Java Runtime Environment (JRE) for Sun JDK and JRE 5.0 Update 16 and earlier; SDK and JRE 1.4.2_18 and earlier; and SDK and JRE 1.3.1_23 or earlier allows untrusted applets and applications to read arbitrary memory via a crafted ZIP file. |
2008-12-05 | 7.1 | CVE-2008-5346 SUNALERT |
sun -- jdk sun -- jre |
Multiple unspecified vulnerabilities in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier allow untrusted applets and applications to gain privileges via vectors related to access to inner classes in the (1) JAX-WS and (2) JAXB packages. |
2008-12-05 | 7.5 | CVE-2008-5347 SUNALERT |
sun -- jdk sun -- jre sun -- sdk |
Unspecified vulnerability in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier, when using Kerberos authentication, allows remote attackers to cause a denial of service (OS resource consumption) via unknown vectors. |
2008-12-05 | 7.1 | CVE-2008-5348 SUNALERT |
sun -- jdk sun -- jre |
Unspecified vulnerability in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier, and JDK and JRE 5.0 Update 16 and earlier, allows remote attackers to cause a denial of service (CPU consumption) via a crafted RSA public key. |
2008-12-05 | 7.1 | CVE-2008-5349 SUNALERT |
sun -- jdk sun -- jre sun -- sdk |
Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier accepts UTF-8 encodings that are not the "shortest" form, which makes it easier for attackers to bypass protection mechanisms for other applications that rely on shortest-form UTF-8 encodings. |
2008-12-05 | 7.5 | CVE-2008-5351 SUNALERT |
sun -- jdk sun -- jre |
Integer overflow in the JAR unpacking utility (unpack200) in the unpack library (unpack.dll) in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier, and JDK and JRE 5.0 Update 16 and earlier, allows untrusted applications and applets to gain privileges via a Pack200 compressed JAR file that triggers a heap-based buffer overflow. |
2008-12-05 | 9.3 | CVE-2008-5352 SUNALERT |
sun -- jdk sun -- jre sun -- sdk |
Unspecified vulnerability in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows untrusted applets and applications to gain privileges via unknown vectors related to "deserializing calendar objects." |
2008-12-05 | 10.0 | CVE-2008-5353 SUNALERT |
sun -- jdk sun -- jre sun -- sdk |
Stack-based buffer overflow in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier allows locally-launched and possibly remote untrusted Java applications to execute arbitrary code via a JAR file with a long Main-Class manifest entry. |
2008-12-05 | 9.3 | CVE-2008-5354 SUNALERT |
sun -- jdk sun -- jre sun -- sdk |
The "Java Update" feature for Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier does not verify the signature of the JRE that is downloaded, which allows remote attackers to execute arbitrary code via DNS man-in-the-middle attacks. |
2008-12-05 | 10.0 | CVE-2008-5355 SUNALERT |
sun -- jdk sun -- jre sun -- sdk |
Heap-based buffer overflow in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; and SDK and JRE 1.4.2_18 and earlier might allow remote attackers to execute arbitrary code via a crafted TrueType font file. |
2008-12-05 | 9.3 | CVE-2008-5356 SUNALERT |
sun -- jdk sun -- jre sun -- sdk |
Integer overflow in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; SDK and JRE 1.4.2_18 and earlier; and SDK and JRE 1.3.1_23 and earlier might allow remote attackers to execute arbitrary code via a crafted TrueType font file, which triggers a heap-based buffer overflow. |
2008-12-05 | 9.3 | CVE-2008-5357 IDEFENSE |
sun -- jdk sun -- jre |
Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier might allow remote attackers to execute arbitrary code via a crafted GIF file that triggers memory corruption during display of the splash screen, possibly related to splashscreen.dll. |
2008-12-05 | 9.3 | CVE-2008-5358 SUNALERT |
sun -- jdk sun -- jre sun -- sdk |
Buffer overflow in Java Runtime Environment (JRE) for Sun JDK and JRE 6 Update 10 and earlier; JDK and JRE 5.0 Update 16 and earlier; SDK and JRE 1.4.2_18 and earlier; and SDK and JRE 1.3.1_23 and earlier might allow remote attackers to execute arbitrary code via unknown vectors related to "image processing code." |
2008-12-05 | 9.3 | CVE-2008-5359 SUNALERT |
videogirls -- videogirls_biz |
SQL injection vulnerability in view_snaps.php in VideoGirls BiZ, allows remote attackers to execute arbitrary SQL commands via the type parameter. |
2008-12-01 | 7.5 | CVE-2008-5292 BID MILW0RM SECUNIA |
videolan -- vlc_media_player |
Integer overflow in the ReadRealIndex function in real.c in the Real demuxer plugin in VideoLAN VLC media player 0.9.0 through 0.9.7 allows remote attackers to execute arbitrary code via a malformed RealMedia (.rm) file that triggers a heap-based buffer overflow. |
2008-12-03 | 9.3 | CVE-2008-5276 CONFIRM MISC BID BUGTRAQ OSVDB FRSIRT SECUNIA CONFIRM |
vitalwerks -- no-ip_duc |
Buffer overflow in No-IP DUC 2.1.7 and earlier allows remote DNS servers to execute arbitrary code via a crafted DNS response, related to a missing length check in the GetNextLine function. |
2008-12-01 | 7.6 | CVE-2008-5297 MISC MLIST MILW0RM CONFIRM CONFIRM |
xoops_hocasi -- gesgaleri |
SQL injection vulnerability in index.php in GesGaleri, a module for XOOPS, allows remote attackers to execute arbitrary SQL commands via the no parameter. |
2008-12-03 | 7.5 | CVE-2008-5321 XF BID MILW0RM |