| OSVDB ID | Disclosure Date | Title |
|
11919
Description:
Cscope contains a flaw that may allow a malicious user to predict an upcoming temporary filename and use a symlink attack to cause corruption and removal of arbitrary system files. The product utilizes the directory found in the environment variable "TMPDIR" to store it's temporary files. During creation of these temporary files, cscope adheres to a predictable naming scheme for the filenames and does not check for an existing file by the chosen name. This issue may result in a loss of integrity.
|
2004-11-08
|
Cscope Tempfile Symlink Arbitrary File Deletion
|
|
24146
Description:
(Description Provided by CVE) : Format string vulnerability in the PrintString function in c_console.cpp in client/server Doom (csDoom) 0.7 and earlier allows remote attackers cause a denial of service and possibly execute arbitrary commands via format string specifiers in strings passed to the console.
|
2006-03-26
|
csDoom c_console.cpp PrintString Function Remote Format String
|
|
24144
Description:
(Description Provided by CVE) : Buffer overflow in client/server Doom (csDoom) 0.7 and earlier allows remote attackers to (1) cause a denial of service via a long nickname or teamname to the SV_SetupUserInfo function or (2) execute arbitrary code via a long string sent when joining a match or a long chat message to the SV_BroadcastPrintf function.
|
2006-03-26
|
csDoom sv_main.cpp SV_BroadcastPrintf Function Remote Overflow
|
|
24145
Description:
(Description Provided by CVE) : Buffer overflow in client/server Doom (csDoom) 0.7 and earlier allows remote attackers to (1) cause a denial of service via a long nickname or teamname to the SV_SetupUserInfo function or (2) execute arbitrary code via a long string sent when joining a match or a long chat message to the SV_BroadcastPrintf function.
|
2006-03-26
|
csDoom sv_main.cpp SV_SetupUserInfo Function Remote Overflow
|
|
72868
Description:
CSE-Semaphore TBOX Lite 200 contains a flaw related to the 'tcomm.dll' library. The issue is triggered when a remote attacker supplies a specially crafted VBScript. This may allow an attacker to bypass authentication settings.
|
2011-03-22
|
CSE-Semaphore TBOX LITE 200 tcomm.dll Crafted VBScript Remote Authentication Bypass
|
|
7305
Description:
(Description Provided by CVE) : csFAQ.cgi in csFAQ allows remote attackers to gain sensitive information via an invalid database parameter, which reveals the path to the web server in an error message.
|
2004-05-23
|
csFAQ csFAQ.cgi database Parameter Path Disclosure
|
|
14706
Description:
Unknown / Incomplete
|
2005-02-24
|
CSGuestbook GuesbookFilter.java Unspecified Overflow
|
|
43
Description:
(Description Provided by CVE) : Buffer overflow in CSM mail server allows remote attackers to cause a denial of service or execute commands via a long HELO command.
|
1999-12-29
|
CSM Mail Server HELO Command Remote Overflow
|
|
12953
Description:
(Description Provided by CVE) : Buffer overflow in CSM Proxy 4.1 allows remote attackers to cause a denial of service (crash) via a long string to the FTP port.
|
1998-07-08
|
CSM Proxy FTP Port Long String Overflow DoS
|
|
79491
Description:
Csound is prone to an overflow condition. The getnum() function in util/heti_main.c fails to properly sanitize user-supplied input resulting in a stack-based buffer overflow. With a specially crafted hetro file, a context-dependent attacker can potentially execute arbitrary code.
|
2012-02-24
|
Csound util/heti_main.c getnum() Function hetro File Handling Remote Overflow
|
|
81015
Description:
Csound is prone to an overflow condition. The main() function in util/lpci_main.c fails to properly sanitize user-supplied input resulting in a heap-based and stack-based buffer overflow. When the user converts a specially craft file, a context-dependent attacker can potentially execute arbitrary code.
|
2012-04-04
|
Csound util/lpci_main.c main() Function File Conversion Handling Multiple Overflow
|
|
79492
Description:
Csound is prone to an overflow condition. The getnum() function in util/pv_import.c fails to properly sanitize user-supplied input resulting in a stack-based buffer overflow. With a specially crafted PVOC file, a context-dependent attacker can potentially execute arbitrary code.
|
2012-02-23
|
Csound util/pv_import.c getnum() Function PVOC File Handling Remote Overflow
|
|
81016
Description:
Csound is prone to an overflow condition. The pv_import() function in util/pv_import.c fails to properly sanitize user-supplied input resulting in a heap-based buffer overflow. When the user converts a specially crafted file, a context-dependent attacker can potentially execute arbitrary code.
|
2012-04-04
|
Csound util/pv_import.c pv_import() Function File Conversion Handling Remote Overflow
|
|
49349
Description:
CSPartner contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the gestion.php script not properly sanitizing user-supplied input to the 'pseudo' and 'pass' parameters. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2008-10-23
|
CSPartner gestion.php Multiple Parameter SQL Injection
|
|
47345
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in index.php in common solutions csphonebook 1.02 allows remote attackers to inject arbitrary web script or HTML via the letter parameter.
|
2008-07-31
|
csphonebook index.php letter Parameter XSS
|
|
85875
Description:
CSS Plus Plugin for WordPress contains multiple unspecified flaws. No further details have been provided.
|
2012-09-29
|
CSS Plus Plugin for WordPress Multiple Unspecified Issues
|
|
78793
Description:
CSS styled Filelinks Extension for TYPO3 contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-02-02
|
CSS styled Filelinks Extension for TYPO3 Unspecified XSS
|
|
62735
Description:
Unknown / Incomplete
|
2010-03-04
|
CSS Web Installer CSSWEBLib.Installer ActiveX Multiple Method Overflow
|
|
761
Description:
(Description Provided by CVE) : csSearch.cgi in csSearch 2.3 and earlier allows remote attackers to execute arbitrary Perl code via the savesetup command and the setup parameter, which overwrites the setup.cgi configuration file that is loaded by csSearch.cgi.
|
2002-03-25
|
csSearch csSearch.cgi setup Parameter Arbitrary Command Execution
|
|
66237
Description:
CSSTidy contains a flaw that allows a remote cross site scripting (XSS) attack. This flaw exists because the application does not validate the 'url' parameter upon submission to the 'css_optimiser.php' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2010-07-12
|
CSSTidy css_optimiser.php url Parameter XSS
|
|
88291
Description:
CStar Design Theme for WordPress contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the /wp-content/themes/cstardesign/swf/flashmo/flashmoXML.php script not properly sanitizing user-supplied input to the 'id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2012-11-25
|
CStar Design Theme for WordPress /wp-content/themes/cstardesign/swf/flashmo/flashmoXML.php id Parameter SQL Injection
|
|
69104
Description:
CSTR Festival contains a flaw that may allow an attacker to gain access to unauthorized privileges. The issue is triggered when 'festival_server' places a zero-length directory name in the LD_LIBRARY_PATH, allowing a local attacker to use a Trojan horse shared library in the current working directory to gain elevated privileges.
|
2010-10-22
|
CSTR Festival festival_server LD_LIBRARY_PATH Zero-length Directory Name Path Subversion Local Privilege Escalation
|
|
38622
Description:
The Festival server is vulnerable to unauthenticated remote code execution. The Festival server which can be started using festival --server is vulnerable to unauthenticated remote command execution due to the inclusion of a scheme interpreter.
|
2007-03-11
|
CSTR Festival on Linux Unauthenticated Arbitrary Command Execution
|
|
3452
Description:
Unknown / Incomplete
|
2004-01-13
|
cstrings Insecure Temporary File Creation
|
|
21316
Description:
cSupport contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'tickets.php' script not properly sanitizing user-supplied input to the 'pg' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2005-11-25
|
cSupport tickets.php pg Parameter SQL Injection
|
|
12438
Description:
(Description Provided by CVE) : Buffer overflow in the get_field_headers function in csv2xml.cpp for csv2xml 0.5.1 allows remote attackers to execute arbitrary code via a crafted CSV file.
|
2004-12-16
|
csv2xml get_csv_token() Function Overflow
|
|
17604
Description:
Unknown / Incomplete
|
2005-06-28
|
CSV_DB / i_DB csv_db.cgi file Parameter Arbitrary Command Execution
|
|
14180
Description:
(Description Provided by CVE) : csvform.pl 0.1 allows remote attackers to execute arbitrary commands via metacharacters in the file parameter.
|
2001-12-11
|
CSVForm csvform.pl file Parameter Arbitrary Command Execution
|
|
76777
Description:
(Description Provided by CVE) : The LiveData Service in CSWorks before 2.0.4115.1 allows remote attackers to cause a denial of service (service crash) via crafted TCP packets.
|
2011-10-27
|
CSWorks LiveData Service TCP Packet Parsing Remote DoS
|
|
77497
Description:
(Description Provided by CVE) : apps/a3/cfg_ethping.cgi in the Ctek SkyRouter 4200 and 4300 allows remote attackers to execute arbitrary commands via shell metacharacters in the PINGADDRESS parameter for a "u" action.
|
2011-11-29
|
Ctek SkyRouter 4200 / 4300 apps/a3/cfg_ethping.cgi PINGADDRESS Parameter Remote Shell Command Injection
|