| OSVDB ID | Disclosure Date | Title |
|
88596
Description:
kscreensaver contains a flaw that is triggered during the handling of a key process containing Alt, SysRq, and F. This will cause the screen lock process to be terminated, which may allow a physically present attacker to bypass the screen lock feature by terminating the screen lock process.
|
2009-12-28
|
kscreensaver SysRq Key Process Termination Screen Lock Bypass
|
|
44362
Description:
Ksemail contains a flaw that allows a remote attacker to read files outside of the web path. The issue is due to the index.php script not properly sanitizing user input, specifically directory traversal style attacks (../../) supplied via the 'lang' and 'language' variable(s).
|
2008-04-10
|
Ksemail index.php Multiple Parameter Traversal Local File Inclusion
|
|
43677
Description:
(Description Provided by CVE) : The _bad_protocol_once function in phpgwapi/inc/class.kses.inc.php in KSES, as used in eGroupWare before 1.4.003, Moodle before 1.8.5, and other products, allows remote attackers to bypass HTML filtering and conduct cross-site scripting (XSS) attacks via a string containing crafted URL protocols.
|
2008-03-19
|
KSES class.kses.inc.php _bad_protocol_once() Function HTML Filter Bypass
|
|
47977
Description:
Unknown / Incomplete
|
2008-09-03
|
KSES lib/kses.php kses_bad_protocol_once Function Arbitrary PHP Code Execution
|
|
28788
Description:
Unknown / Incomplete
|
2006-05-21
|
KSES Unspecified XSS
|
|
64324
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in the fix_non_standard_entities function in the KSES HTML text cleaning library (weblib.php), as used in Moodle 1.8.x before 1.8.12 and 1.9.x before 1.9.8, allows remote attackers to inject arbitrary web script or HTML via crafted HTML entities.
|
2010-03-31
|
KSES weblib.php fix_non_standard_entities Function XSS Protection Bypass
|
|
17065
Description:
Unknown / Incomplete
|
1991-07-28
|
KSH suid_exec Unspecified File Permission Check Issue
|
|
17066
Description:
Unknown / Incomplete
|
1991-07-28
|
KSH suid_exec Unspecified Interpreter Verification Issue
|
|
47343
Description:
Kshop contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate 'search' variables upon submission to the 'Kshop_search.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2008-08-06
|
Kshop Module for Xoops kshop_search.php search Parameter XSS
|
|
34455
Description:
(Description Provided by CVE) : SQL injection vulnerability in product_details.php in the Kshop 1.17 and earlier module for Xoops allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
2007-04-01
|
Kshop Module for XOOPS product_details.php id Parameter SQL Injection
|
|
57542
Description:
(Description Provided by CVE) : Kshout 2.x and 3.x stores settings.dat under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as usernames and passwords.
|
2005-07-26
|
Kshout settings.dat Direct Request Credentials Disclosure
|
|
36517
Description:
(Description Provided by CVE) : Multiple stack-based buffer overflows in the KSign KSignSWAT ActiveX Control (AxKSignSWAT.dll) 2.0.3.3 allow remote attackers to execute arbitrary code via long arguments to the (1) SWAT_Init, (2) SWAT_InitEx, (3) SWAT_InitEx2, (4) SWAT_InitEx3, and (5) SWAT_Login functions.
|
2007-05-22
|
KSignSWAT ActiveX (AxKSignSWAT.dll) Multiple Function Overflow
|
|
66686
Description:
(Description Provided by CVE) : Stack-based buffer overflow in KSP 2006 FINAL allows remote attackers to execute arbitrary code via a long string in a .M3U playlist file.
|
2009-08-24
|
KSP M3U Playlist File Handling Overflow
|
|
57983
Description:
(Description Provided by CVE) : Stack-based buffer overflow in KSP Sound Player 2009 R2 and R2.1 allows remote attackers to execute arbitrary code via a long string in a .m3u playlist file.
|
2009-09-10
|
KSP Sound Player M3U Playlist File Handling Overflow
|
|
55789
Description:
(Description Provided by CVE) : Multiple stack-based buffer overflows in the mt_codec::getHdrHead function in kernel/kls_hdr/fmt_codec_hdr.cpp in ksquirrel-libs 0.8.0 allow context-dependent attackers to execute arbitrary code via a crafted Radiance RGBE image (aka .hdr file).
|
2009-02-25
|
ksquirrel-libs kernel/kls_hdr/fmt_codec_hdr.cpp mt_codec::getHdrHead Function Radiance RGBE Handling Multiple Overflows
|
|
18006
Description:
(Description Provided by CVE) : KTH Kerberos IV and Kerberos V (Heimdal) for Telnet clients do not encrypt connections if the server does not support the requested encryption, which allows remote attackers to read communications via a man-in-the-middle attack.
|
2002-02-11
|
KTH / Heimdal Kerberos 4/5 Unencrypted Connection Fallback
|
|
18007
Description:
(Description Provided by CVE) : The Kerberos Telnet protocol, as implemented by KTH Kerberos IV and Kerberos V (Heimdal), does not encrypt authentication and encryption options sent from the server, which allows remote attackers to downgrade authentication and encryption mechanisms via a man-in-the-middle attack.
|
2002-02-11
|
KTH / Heimdal Kerberos Protocol Cleartext Authentication/Encryption Disclosure
|
|
4897
Description:
A remote overflow exists in KTH Kerberos 4 FTP Client. The FTP Client fails to do proper bounds checking while receiving a server response to a client request for passive mode, resulting in a heap overflow. By impersonating an FTP Server, an attacker can trigger the overflow on the FTP Client, resulting in a loss of integrity.
|
2002-04-24
|
KTH Kerberos 4 FTP Client PASV Execute Arbitrary Code
|
|
4888
Description:
(Description Provided by CVE) : KTH Kerberos IV allows local users to specify an alternate proxy using the krb4_proxy variable, which allows the user to generate false proxy responses and possibly gain privileges.
|
2000-12-08
|
KTH Kerberos 4 krb4_proxy False Response Remote Privilege Escalation
|
|
4889
Description:
(Description Provided by CVE) : KTH Kerberos IV allows local users to change the configuration of a Kerberos server running at an elevated privilege by specifying an alternate directory using with the KRBCONFDIR environmental variable, which allows the user to gain additional privileges.
|
2000-12-08
|
KTH Kerberos 4 KRBCONFDIR Alternate Directory Privilege Escalation
|
|
4890
Description:
When the ticket creating process of Kerberos writes temporary files to the /tmp directory, it uses predictable file names. These file names can be anticipated by an attacker who can create a symbolic link utilizing this name. This could enable the attacker to overwrite system files as root, thus causing a Denial of Service.
|
2000-12-08
|
KTH Kerberos 4 Ticket File Symlink Arbitrary File Overwrite
|
|
21161
Description:
A local overflow exists in ktools. The 'VGETSTRING()' function fails to perform proper bounds checking resulting in a buffer overflow. With a specially crafted request, a malicious user can cause arbitrary code execution resulting in a loss of integrity.
|
2005-11-26
|
ktools VGETSTRING Function Overflow
|
|
33980
Description:
(Description Provided by CVE) : chunkcounter.cpp in KTorrent before 2.1.2 allows remote attackers to cause a denial of service (crash) and heap corruption via a negative or large idx value.
|
2007-03-09
|
KTorrent chunkcounter.cpp Malformed idx Value DoS
|
|
33981
Description:
(Description Provided by CVE) : Directory traversal vulnerability in torrent.cpp in KTorrent before 2.1.2 allows remote attackers to overwrite arbitrary files via ".." sequences in a torrent filename.
|
2007-03-09
|
KTorrent torrent.cpp Torrent Filename Traversal Arbitrary File Overwrite
|
|
49356
Description:
(Description Provided by CVE) : The web interface plugin in KTorrent before 3.1.4 allows remote attackers to bypass intended access restrictions and upload arbitrary torrent files, and trigger the start of downloads and seeding, via a crafted HTTP POST request.
|
2008-10-27
|
KTorrent Web Interface Plugin Crafted POST Request Arbitrary Torrent File Upload
|
|
49357
Description:
(Description Provided by CVE) : Eval injection vulnerability in the web interface plugin in KTorrent before 3.1.4 allows remote attackers to execute arbitrary PHP code via unspecified parameters to this interface's PHP scripts.
|
2008-10-27
|
KTorrent Web Interface Plugin Multiple Variable Arbitrary PHP Code Injection
|
|
50477
Description:
KTP Computer Customer Database contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to an Unspecified script not properly sanitizing user-supplied input to the 'lname' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-12-01
|
KTP Computer Customer Database Login lname Parameter SQL Injection
|
|
50478
Description:
(Description Provided by CVE) : Directory traversal vulnerability in KTP Computer Customer Database (KTPCCD) CMS, when magic_quotes_gpc is disabled, allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the p parameter to the default URI.
|
2008-11-30
|
KTP Computer Customer Database p Parameter Traversal Local File Inclusion
|
|
50476
Description:
KTP Computer Customer Database contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to an Unspecified script not properly sanitizing user-supplied input to the 'tid' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-12-01
|
KTP Computer Customer Database tid Parameter SQL Injection
|
|
5132
Description:
(Description Provided by CVE) : ktrace in BSD-based operating systems allows the owner of a process with special privileges to trace the process after its privileges have been lowered, which may allow the owner to obtain sensitive information that the process obtained while it was running with the extra privileges.
|
2004-04-08
|
ktrace Elevated Privilege Trace Information Disclosure
|