back adobe -- acrobat adobe -- acrobat reader adobe -- reader
|
The customDictionaryOpen spell method in the JavaScript API in Adobe Reader 8.1.4 and 9.1 on Linux allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a PDF file that triggers a call to this method with a long string in the second argument. | 2009-04-30 | 6.8 | CVE-2009-1493 MISC
|
back aemuleplus -- emule plus emuleplus -- emule plus
|
The logging feature in eMule Plus before 1.2e allows remote attackers to cause a denial of service (infinite loop) via unspecified attack vectors. | 2009-04-29 | 5.0 | CVE-2009-1485 XF CONFIRM SECUNIA
|
back amule -- amule
|
Incomplete blacklist vulnerability in DownloadListCtrl.cpp in amule 2.2.4 allows remote attackers to conduct argument injection attacks into a command for mplayer via a crafted filename. | 2009-04-27 | 6.8 | CVE-2009-1440 MLIST MISC
|
back andrew simpson -- webcollab
|
Cross-site scripting (XSS) vulnerability in tasks.php in WebCollab before 2.50 (aka Billy Goat) allows remote attackers to inject arbitrary web script or HTML via the selection parameter in a todo action. | 2009-04-28 | 4.3 | CVE-2009-1454 CONFIRM MISC
|
back andrew simpson -- webcollab
|
Multiple cross-site request forgery (CSRF) vulnerabilities in WebCollab before 2.50 (aka Billy Goat) allow remote attackers to hijack the authentication of administrators for requests that change an arbitrary password or have other unspecified impact. | 2009-04-28 | 6.8 | CVE-2009-1455 CONFIRM MISC
|
back anoochit chalothorn -- tiny blogr
|
SQL injection vulnerability in class.eport.php in Tiny Blogr 1.0.0 rc4, when magic quotes gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the txtUsername parameter (aka the Username field). NOTE: some of these details are obtained from third party information. | 2009-04-28 | 6.8 | CVE-2009-1453 BID BUGTRAQ MILW0RM SECUNIA
|
back apple -- cups
|
The web interface for CUPS before 1.3.10 does not validate the HTTP Host header in a client request, which makes it easier for remote attackers to conduct DNS rebinding attacks. | 2009-04-24 | 6.4 | CVE-2009-0164 CONFIRM CONFIRM CONFIRM
|
back bernie innocenti -- geeki geeki
|
Multiple directory traversal vulnerabilities in geekigeeki.py in GeekiGeeki before 3.0 allow remote attackers to read arbitrary files via directory traversal sequences in a pagename argument in the (1) handle edit and (2) handle raw functions. | 2009-05-01 | 5.0 | CVE-2008-6786 OSVDB
|
back bluevirus-design -- sma-db
|
Cross-site scripting (XSS) vulnerability in startpage.php in SMA-DB 0.3.12 allows remote attackers to inject arbitrary web script or HTML via the PATH INFO. | 2009-04-28 | 4.3 | CVE-2009-1451 MILW0RM
|
back debian -- libdbd-pg-perl debiandbd-pg-perl -- 0.94 debianl -- libdbd-pg-perl ldebian -- libdbd-pg-perl
|
Memory leak in the dequote bytea function in quote.c in the DBD::Pg (aka DBD-Pg or libdbd-pg-perl) module before 2.0.0 for Perl allows context-dependent attackers to cause a denial of service (memory consumption) by fetching data with BYTEA columns. | 2009-04-30 | 5.0 | CVE-2009-1341 MISC DEBIAN CONFIRM CONFIRM CONFIRM
|
back elkagroup -- image gallery
|
Unrestricted file upload vulnerability in upload.php in Elkagroup Image Gallery 1.0 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in gallery/pictures/. NOTE: some of these details are obtained from third party information. | 2009-04-27 | 6.5 | CVE-2009-1446 VUPEN BID MILW0RM SECUNIA
|
back evolution-extreme -- nuke evolution xtreme
|
Cross-site scripting (XSS) vulnerability in player.php in Nuke Evolution Xtreme 2.x allows remote attackers to inject arbitrary web script or HTML via the defaultVisualExt parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2009-04-28 | 4.3 | CVE-2009-1457 XF BID SECUNIA OSVDB
|
back exif -- exif
|
Cross-site scripting (XSS) vulnerability in the Exif module 5.x-1.x before 5.x-1.2 and 6.x-1.x-dev before April 13, 2009, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via EXIF tags in an image. | 2009-05-01 | 4.3 | CVE-2009-1501 BID CONFIRM
|
back foswiki -- foswiki
|
Cross-site request forgery (CSRF) vulnerability in Foswiki before 1.0.5 allows remote attackers to hijack the authentication of arbitrary users for requests that modify pages, change permissions, or change group memberships, as demonstrated by a URL for a (1) save or (2) view script in the SRC attribute of an IMG element, a related issue to CVE-2009-1339. | 2009-04-30 | 6.8 | CVE-2009-1434 MLIST CONFIRM
|
back freebsd -- freebsd
|
The db interface in libc in FreeBSD 6.3, 6.4, 7.0, 7.1, and 7.2-PRERELEASE does not properly initialize memory for Berkeley DB 1.85 database structures, which allows local users to obtain sensitive information by reading a database file. | 2009-04-27 | 4.9 | CVE-2009-1436 BID
|
back gecad -- axigen mail server
|
Cross-site scripting (XSS) vulnerability in the web mail interface feature in AXIGEN Mail Server 6.2.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving e-mail messages. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2009-04-29 | 4.3 | CVE-2009-1484 BID SECUNIA
|
back gnu -- gnutls
|
lib/pk-libgcrypt.c in libgnutls in GnuTLS before 2.6.6 does not properly handle invalid DSA signatures, which allows remote attackers to cause a denial of service (application crash) and possibly have unspecified other impact via a malformed DSA key that triggers a (1) free of an uninitialized pointer or (2) double free. | 2009-04-30 | 4.3 | CVE-2009-1415 MLIST
|
back gnu -- gnutls
|
lib/gnutls pk.c in libgnutls in GnuTLS 2.5.0 through 2.6.5 generates RSA keys stored in DSA structures, instead of the intended DSA keys, which might allow remote attackers to spoof signatures on certificates or have unspecified other impact by leveraging an invalid DSA key. | 2009-04-30 | 6.0 | CVE-2009-1416 MLIST
|
back gnu -- gnutls
|
gnutls-cli in GnuTLS before 2.6.6 does not verify the activation and expiration times of X.509 certificates, which allows remote attackers to successfully present a certificate that is (1) not yet valid or (2) no longer valid, related to lack of time checks in the gnutls x509 verify certificate function in lib/x509/verify.c in libgnutls x509, as used by (a) Exim, (b) OpenLDAP, and (c) libsoup. | 2009-04-30 | 5.0 | CVE-2009-1417 MLIST
|
back hp -- hp-ux
|
Unspecified vulnerability in useradd in HP HP-UX B.11.11, B.11.23, and B.11.31 allows local users to access arbitrary files and directories via unknown vectors, a different issue than CVE-2008-1660. | 2009-04-29 | 6.0 | CVE-2009-0719 BID
|
back hypersilence -- silentum loginsys
|
Cross-site scripting (XSS) vulnerability in login.php in Silentum LoginSys 1.0.0 allows remote attackers to inject arbitrary web script or HTML via the message parameter. | 2009-04-28 | 4.3 | CVE-2008-6764 XF BID OSVDB SECUNIA MISC
|
back idb -- idb
|
Directory traversal vulnerability in inc/profilemain.php in Game Maker 2k Internet Discussion Boards (iDB) 0.2.5 Pre-Alpha SVN 243 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the skin parameter in a settings action to profile.php. | 2009-05-01 | 6.8 | CVE-2009-1498 XF BID MILW0RM
|
back intelliants -- elitius
|
SQL injection vulnerability in classes/Xp.php in eLitius 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to banner-details.php. | 2009-05-01 | 6.5 | CVE-2009-1506 BID MILW0RM
|
back joomla -- cmimarketplace
|
Directory traversal vulnerability in the Cmi Marketplace (com cmimarketplace) component 0.1 for Joomla! allows remote attackers to list arbitrary directories via a .. (dot dot) in the viewit parameter to index.php. | 2009-05-01 | 5.0 | CVE-2009-1496 BID MILW0RM
|
back keir davis -- x-forum
|
Static code injection vulnerability in X-Forum 0.6.2 allows remote authenticated administrators to inject arbitrary PHP code into Config.php via the adminEMail parameter to SaveConfig.php. | 2009-05-01 | 6.5 | CVE-2009-1512 MILW0RM
|
back koschtit -- koschtit image gallery
|
Multiple directory traversal vulnerabilities in KoschtIT Image Gallery 1.82 allow remote attackers to include and execute arbitrary local files via directory traversal sequences in the file parameter to (1) ki makepic.php and (2) ki nojsdisplayimage.php in ki base/. | 2009-05-01 | 6.4 | CVE-2009-1510 BID MILW0RM
|
back lovpop -- apricot
|
Cross-site scripting (XSS) vulnerability in apricot.php in LovPop.net APRICOT, probably 1.20, allows remote attackers to inject arbitrary web script or HTML via unspecified parameters. | 2009-04-27 | 4.3 | CVE-2009-1448 XF JVNDB JVN
|
back memcachedb -- memcached
|
The process stat function in (1) Memcached before 1.2.8 and (2) MemcacheDB 1.2.0 discloses (a) the contents of /proc/self/maps in response to a stats maps command and (b) memory-allocation statistics in response to a stats malloc command, which allows remote attackers to obtain sensitive information such as the locations of memory regions, and defeat ASLR protection, by sending a command to the daemon's TCP port. | 2009-04-30 | 5.0 | CVE-2009-1255 CONFIRM
|
back memcachedb -- memcached
|
The process stat function in Memcached 1.2.8 discloses memory-allocation statistics in response to a stats malloc command, which allows remote attackers to obtain potentially sensitive information by sending this command to the daemon's TCP port. | 2009-04-30 | 5.0 | CVE-2009-1494 MISC MISC MISC
|
back mephisteus -- the personal sticky threads
|
The Personal Sticky Threads addon 1.0.3c for vBulletin allows remote authenticated users to read the title, author, and pages of an arbitrary thread by toggling a personal sticky. | 2009-04-27 | 4.0 | CVE-2008-6754 BID BUGTRAQ SECUNIA OSVDB
|
back moinmo -- moinmoin moinmoin -- moinmoin
|
Multiple cross-site scripting (XSS) vulnerabilities in action/AttachFile.py in MoinMoin 1.8.2 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) an AttachFile sub-action in the error msg function or (2) multiple vectors related to package file errors in the upload form function, different vectors than CVE-2009-0260. | 2009-04-29 | 4.3 | CVE-2009-1482 CONFIRM
|
back mozilla -- firefox
|
The nsTextFrame::ClearTextRun function in layout/generic/nsTextFrameThebes.cpp in Mozilla Firefox 3.0.9 allows remote attackers to cause a denial of service (memory corruption) and probably execute arbitrary code via unspecified vectors. NOTE: this vulnerability reportedly exists because of an incorrect fix for CVE-2009-1302. | 2009-04-30 | 6.8 | CVE-2009-1313 REDHAT CONFIRM CONFIRM CONFIRM CONFIRM BID CONFIRM SECTRACK SECTRACK
|
back mseclab -- htc touch cruise mseclab -- htc touch pro
|
HTC Touch Pro and HTC Touch Cruise vCard allows remote attackers to cause denial of service (CPU consumption, SMS consumption, and connectivity loss) via a flood of vCards to UDP port 9204. | 2009-05-01 | 5.0 | CVE-2008-6775 XF BUGTRAQ MISC OSVDB FULLDISC
|
back myphp -- myphp forum
|
Multiple SQL injection vulnerabilities in MyPHP Forum 3.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter in a confirm action, the (2) user parameter in a newconfirm action, and (3) reqpwd action to member.php; and the (4) quote parameter in a post action and (5) pid parameter in an edit action to post.php, different vectors than CVE-2005-0413.2 and CVE-2007-6667. | 2009-05-01 | 6.0 | CVE-2008-6777 XF BID MILW0RM SECUNIA
|
back peterselie -- yourplace
|
Unrestricted file upload vulnerability in upload.php in YourPlace 1.0.2 and earlier allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file. | 2009-04-29 | 6.0 | CVE-2008-6769 XF BID MILW0RM
|
back peterselie -- yourplace
|
YourPlace 1.0.2 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to a database containing user credentials via a direct request for users.txt. | 2009-04-29 | 5.0 | CVE-2008-6770 XF BID MILW0RM SECUNIA
|
back peterselie -- yourplace
|
YourPlace 1.0.2 and earlier allows remote attackers to obtain sensitive system information via a direct request via a direct request to user/uploads/phpinfo.php, which calls the phpinfo function. | 2009-04-29 | 5.0 | CVE-2008-6771 XF BID MILW0RM SECUNIA
|
back peterselie -- yourplace
|
Static code injection vulnerability in user/internettoolbar/edit.php in YourPlace 1.0.2 and earlier allows remote authenticated users to execute arbitrary PHP code into user/internettoolbar/index.php via the (1) fav1 url, (2) fav1 name, (3) fav2 url, (4) fav2 name, (5) fav3 url, (6) fav3 name, (7) fav4 url, (8) fav4 name, (9) fav5 url, or (10) fav5 name parameters. | 2009-04-29 | 6.5 | CVE-2008-6773 XF BID MILW0RM SECUNIA
|
back peterselie -- yourplace
|
internettoolbar/edit.php in YourPlace 1.0.2 and earlier does not end execution when an invalid username is detected, which allows remote attackers to bypass intended restrictions and edit toolbar settings via an invalid username. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | 2009-04-29 | 5.0 | CVE-2008-6774 XF SECUNIA
|
back projectcms -- projectcms
|
SQL injection vulnerability in index.php in ProjectCMS 1.0 Beta allows remote attackers to execute arbitrary SQL commands via the sn parameter. | 2009-05-01 | 6.8 | CVE-2009-1500 BID MILW0RM
|
back razorcms -- razorcms
|
Multiple cross-site scripting (XSS) vulnerabilities in admin/index.php in razorCMS before 0.4 allow remote attackers to inject arbitrary web script or HTML via (1) the slab parameter in an edit action, (2) the catname parameter in a showcats action, and (3) the cat parameter in a reordercat action. | 2009-04-28 | 4.3 | CVE-2009-1458 XF BID SECUNIA CONFIRM OSVDB FULLDISC FULLDISC
|
back razorcms -- razorcms
|
Cross-site request forgery (CSRF) vulnerability in razorCMS before 0.4 allows remote attackers to hijack the authentication of administrators for requests that create a web page containing PHP code. | 2009-04-28 | 6.8 | CVE-2009-1459 XF BID SECUNIA CONFIRM OSVDB FULLDISC FULLDISC
|
back razorcms -- razorcms
|
razorCMS before 0.4 uses weak permissions for (1) admin/core/admin config.php, which allows local users to obtain the administrator's password hash and FTP user credentials; and (2) the root directory, (3) datastore/, and (4) admin/core/, which allows local users to have an unspecified impact. | 2009-04-28 | 4.6 | CVE-2009-1460 XF BID SECUNIA CONFIRM OSVDB FULLDISC FULLDISC
|
back rens rikkerink -- fungamez
|
Directory traversal vulnerability in admin/load.php in FunGamez RC1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the module parameter to index.php. | 2009-04-29 | 6.8 | CVE-2009-1488 XF VUPEN BID MILW0RM BUGTRAQ
|
back shopsystem-forum -- k&s shopsoftware
|
Unrestricted file upload vulnerability in admin/editor/images.php in K&S Shopsoftware allows remote attackers to execute arbitrary PHP code by uploading a file with an executable extension, then accessing it via a direct request to the file in images/upload/. | 2009-04-29 | 6.8 | CVE-2008-6768 XF BID MILW0RM SECUNIA
|
back stephane rajalu -- malleo
|
Directory traversal vulnerability in admin.php in Malleo 1.2.3 allows remote authenticated administrators to include and execute arbitrary local files via a .. (dot dot) in the module parameter. | 2009-04-28 | 6.0 | CVE-2009-1456 BID BUGTRAQ SECUNIA
|
back studiolounge -- address book
|
Unrestricted file upload vulnerability in upload-file.php in Adam Patterson Studio Lounge Address Book 2.5, as reachable from index2.php, allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in profiles/. | 2009-04-29 | 6.8 | CVE-2009-1483 XF VUPEN BID OSVDB MILW0RM SECUNIA
|
back sun -- jdk
|
Algorithmic complexity vulnerability in the java.util.regex.Pattern.compile method in Sun Java Development Kit (JDK) before 1.6, when used with spring.jar in SpringSource Spring Framework 1.1.0 through 2.5.6 and 3.0.0.M1 through 3.0.0.M2 and dm Server 1.0.0 through 1.0.2, allows remote attackers to cause a denial of service (CPU consumption) via serializable data with a long regex string containing multiple optional groups, a related issue to CVE-2004-2540. | 2009-04-27 | 5.0 | CVE-2009-1190 CONFIRM XF CONFIRM BUGTRAQ MISC SECUNIA
|
back sun -- opensolaris sun -- solaris
|
Multiple unspecified vulnerabilities in the DTrace ioctl handlers in Sun Solaris 10, and OpenSolaris before snv 114, allow local users to cause a denial of service (panic) via unknown vectors. | 2009-04-29 | 4.9 | CVE-2009-1478 SUNALERT
|
back symantec -- brightmail gateway appliance
|
Cross-site scripting (XSS) vulnerability in the Control Center in Symantec Brightmail Gateway Appliance before 8.0.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. | 2009-04-24 | 4.3 | CVE-2009-0063 VUPEN CONFIRM SECTRACK
|
back symantec -- antivirus symantec -- endpoint protection symantec -- norton 360 symantec -- norton internet security
|
Multiple cross-site scripting (XSS) vulnerabilities in ccLgView.exe in the Symantec Log Viewer, as used in Symantec AntiVirus (SAV) before 10.1 MR8, Symantec Endpoint Protection (SEP) 11.0 before 11.0 MR1, Norton 360 1.0, and Norton Internet Security 2005 through 2008, allow remote attackers to inject arbitrary web script or HTML via a crafted e-mail message, related to "two parsing errors." | 2009-04-29 | 4.3 | CVE-2009-1428 CONFIRM
|
back symantec -- antivirus symantec -- client security symantec -- endpoint protection symantec -- endpoint protection protection
|
Symantec Reporting Server, as used in Symantec AntiVirus (SAV) Corporate Edition 10.1 before 10.1 MR8 and 10.2 before 10.2 MR2, Symantec Client Security (SCS) before 3.1 MR8, and the Symantec Endpoint Protection Manager (SEPM) component in Symantec Endpoint Protection (SEP) before 11.0 MR2, allows remote attackers to inject arbitrary text into the login screen, and possibly conduct phishing attacks, via vectors involving a URL that is not properly handled. | 2009-04-30 | 5.0 | CVE-2009-1432 XF VUPEN CONFIRM BID SECTRACK SECTRACK SECTRACK SECUNIA
|
back tim hockin -- acpid
|
The daemon in acpid before 1.0.10 allows remote attackers to cause a denial of service (CPU consumption and connectivity loss) by opening a large number of UNIX sockets without closing them, which triggers an infinite loop. | 2009-04-24 | 5.0 | CVE-2009-0798 CONFIRM
|
back twiki -- twiki
|
Cross-site request forgery (CSRF) vulnerability in TWiki before 4.3.1 allows remote authenticated users to hijack the authentication of arbitrary users for requests that update pages, as demonstrated by a URL for a save script in the SRC attribute of an IMG element, a related issue to CVE-2009-1434. | 2009-04-30 | 6.0 | CVE-2009-1339 SECTRACK
|
back viart -- viart shop
|
Cross-site scripting (XSS) vulnerability in manuals search.php in ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to inject arbitrary web script or HTML via the manuals search parameter. | 2009-04-28 | 4.3 | CVE-2008-6757 SECTRACK BID BUGTRAQ OSVDB SECUNIA
|
back viart -- viart shop
|
Cross-site request forgery (CSRF) vulnerability in cart save.php in ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to hijack the authentication of arbitrary users for requests that conduct persistent cross-site scripting (XSS) attacks via the cart name parameter in a save action. | 2009-04-28 | 6.8 | CVE-2008-6758 SECTRACK BID BUGTRAQ SECUNIA OSVDB OSVDB
|
back viart -- viart shop
|
ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to obtain sensitive information via a URL in the POST DATA parameter to manuals search.php, which reveals the installation path in an error message. | 2009-04-28 | 4.3 | CVE-2008-6759 SECTRACK BID BUGTRAQ OSVDB
|
back viart -- viart shop
|
ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to obtain sensitive information via an unauthenticated add and save action for a shopping cart in cart save.php, which reveals the SQL table names in an error message, related to code that mishandles the lack of a user id parameter. | 2009-04-28 | 4.3 | CVE-2008-6760 SECTRACK BID BUGTRAQ OSVDB
|
back viart -- viart shop
|
ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to access the contents of an arbitrary shopping cart via a modified cart name parameter. | 2009-04-28 | 4.3 | CVE-2008-6765 SECTRACK BID BUGTRAQ
|
back viart -- viart shop
|
cart save.php in ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to cause a denial of service (excessive shopping carts) via a flood of requests. | 2009-04-28 | 4.3 | CVE-2008-6766 SECTRACK BUGTRAQ OSVDB
|
back webfileexplorer -- web file explorer
|
Web File Explorer 3.1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for data/db.mdb. | 2009-05-01 | 5.0 | CVE-2009-1495 MILW0RM SECUNIA
|
back wordpress -- wordpress
|
Open redirect vulnerability in wp-admin/upgrade.php in WordPress, probably 2.6.x, allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the backto parameter. | 2009-04-28 | 4.3 | CVE-2008-6762 OSVDB BUGTRAQ
|
back zoneminder -- zoneminder
|
ZoneMinder 1.23.3 on Fedora 10 sets the ownership of /etc/zm.conf to the apache user account, and sets the permissions to 0600, which makes it easier for remote attackers to modify this file by accessing it through a (1) PHP or (2) CGI script. | 2009-04-27 | 5.0 | CVE-2008-6755 FEDORA
|