| OSVDB ID | Disclosure Date | Title |
|
39739
Description:
(Description Provided by CVE) : Z-Blog 1.7 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for zblog.mdb.
|
2007-06-01
|
Z-Blog zblog.mdb Direct Request Database Disclosure
|
|
47876
Description:
Z-Breaknews contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'single.php' script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-08-26
|
Z-Breaknews single.php id Parameter SQL Injection
|
|
86948
Description:
Z-Com, Inc. TG2521 routers use a single hardcoded SSL private key across all commercial devices. By purchasing a router and extracting the SSL key from the firmware, a remote attacker can use the key to decrypt traffic from any other device of the same model via a Man-in-The-Middle (MiTM) attack. This may give the attacker access to a wide variety of sensitive information including the credentials required to access the administrative interface of the device.
|
2010-12-19
|
Z-Com TG2521 Hardcoded SSL Private Key SSL Traffic Decryption Weakness
|
|
11098
Description:
(Description Provided by CVE) : A design flaw in the Z-Modem protocol allows the remote sender of a file to execute arbitrary programs on the client, as implemented in rz in the rzsz module of FreeBSD before 2.1.5, and possibly other programs.
|
1996-07-16
|
Z-Modem Protocol Design Flaw Arbitrary Command Execution
|
|
66144
Description:
Unknown / Incomplete
|
2010-01-09
|
Z-Stack ZigBee Smart Energy Profile ECC Session Key / Cryptographic Signature RNG Weakness
|
|
71006
Description:
Z-Vote Plugin for WordPress contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the wp-content/plugins/zvote/zvote.php script not properly sanitizing user-supplied input to the 'zvote' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-02-22
|
Z-Vote Plugin for WordPress wp-content/plugins/zvote/zvote.php zvote Parameter SQL Injection
|
|
52272
Description:
Z1Exchange contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'edit.php' script not properly sanitizing user-supplied input to the 'site' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-12-01
|
Z1Exchange edit.php site Parameter SQL Injection
|
|
52304
Description:
Z1Exchange contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'showads.php' script not properly sanitizing user-supplied input to the 'id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-12-01
|
Z1Exchange showads.php id Parameter SQL Injection
|
|
52308
Description:
Z1Exchange contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate 'id' parameters upon submission to the 'showads.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2008-12-02
|
Z1Exchange showads.php id Parameter XSS
|
|
74275
Description:
Zabbix contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'backurl' parameter upon submission to the acknow.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-07-28
|
Zabbix acknow.php backurl Parameter XSS
|
|
60956
Description:
Zabbix Agent on FreeBSD and Solaris contains a flaw that may allow an attacker to execute arbitrary code. The issue is triggered when a specially crafted request is sent from the IP address of a legitimate Zabbix server.
|
2009-09-10
|
Zabbix Agent net.tcp.listen NET_TCP_LISTEN Function Remote Code Execution
|
|
65276
Description:
Zabbix contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the events.php script not properly sanitizing user-supplied input to the 'nav_time' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2010-05-24
|
Zabbix events.php nav_time Parameter SQL Injection
|
|
66647
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in the formatQuery function in frontends/php/include/classes/class.curl.php in Zabbix before 1.8.3rc1 allow remote attackers to inject arbitrary web script or HTML via the (1) filter_set, (2) show_details, (3) filter_rst, or (4) txt_select parameters to the triggers page (tr_status.php). NOTE: some of these details are obtained from third party information.
|
2010-07-22
|
Zabbix frontends/php/include/classes/class.curl.php Multiple Parameter XSS
|
|
77771
Description:
Zabbix contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'gname' (Host name) parameter upon submission to the hostgroups.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-12-14
|
Zabbix hostgroups.php gname Parameter XSS
|
|
78087
Description:
Zabbix contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'update' action upon submission to the hosts.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-12-14
|
Zabbix hosts.php Update Action XSS
|
|
60968
Description:
(Description Provided by CVE) : The zbx_get_next_field function in libs/zbxcommon/str.c in Zabbix Server before 1.6.8 allows remote attackers to cause a denial of service (crash) via a request that lacks expected separators, which triggers a NULL pointer dereference, as demonstrated using the Command keyword.
|
2009-09-10
|
ZABBIX libs/zbxcommon/str.c zbx_get_next_field() Function NULL Dereference DoS
|
|
78086
Description:
Zabbix contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'update' action upon submission to the maintenance.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-12-14
|
Zabbix maintenance.php Update Action XSS
|
|
56145
Description:
Unknown / Incomplete
|
2009-03-30
|
Zabbix Multiple Frontend profile.php Admin Password Reset CSRF
|
|
56146
Description:
Unknown / Incomplete
|
2009-03-30
|
Zabbix Multiple Frontend scripts.php Arbitrary Command Execution CSRF
|
|
56147
Description:
Unknown / Incomplete
|
2009-03-30
|
Zabbix Multiple Frontend scripts_exec.php Arbitrary Command Execution CSRF
|
|
29575
Description:
(Description Provided by CVE) : Multiple format string vulnerabilities in zabbix before 20061006 allow attackers to cause a denial of service (application crash) and possibly execute arbitrary code via format string specifiers in information that would be recorded in the system log using (1) zabbix_log or (2) zabbix_syslog.
|
2006-10-06
|
ZABBIX Multiple Unspecified Format Strings
|
|
29576
Description:
(Description Provided by CVE) : Multiple buffer overflows in zabbix before 20061006 allow attackers to cause a denial of service (application crash) and possibly execute arbitrary code via long strings to the (1) zabbix_log and (2) zabbix_syslog functions.
|
2006-10-06
|
ZABBIX Multiple Unspecified Overflows
|
|
60965
Description:
(Description Provided by CVE) : The node_process_command function in Zabbix Server before 1.8 allows remote attackers to execute arbitrary commands via a crafted request.
|
2009-09-10
|
ZABBIX node_process_command() Function Crafted Request Arbitrary Command Execution
|
|
63456
Description:
Zabbix PHP Frontend contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'api_jsonrpc.php' script not properly sanitizing user-supplied input to the 'user' JSON parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2010-04-01
|
Zabbix PHP Frontend api_jsonrpc.php user Parameter SQL Injection
|
|
52403
Description:
Unknown / Incomplete
|
2009-03-03
|
ZABBIX PHP Frontend include/validate.inc.php extlang Parameter Arbitrary PHP Code Execution
|
|
52405
Description:
ZABBIX PHP Frontend contains a flaw that may allow a remote attacker to execute arbitrary commands or code. The issue is due to the 'locales.php' script not properly sanitizing user input, specifically directory traversal style attacks (e.g., ../../) supplied to the 'srclang' parameter. This may allow an attacker to include a file from the targeted host that contains arbitrary commands or code that will be executed by the vulnerable script. Such attacks are limited due to the script only calling files already on the target host. In addition, this flaw can potentially be used to disclose the contents of any file on the system accessible by the web server.
|
2009-03-03
|
ZABBIX PHP Frontend locales.php srclang Parameter Traversal Local File Inclusion
|
|
52404
Description:
Unknown / Incomplete
|
2009-03-03
|
ZABBIX PHP Frontend users.php CSRF
|
|
77509
Description:
Zabbix contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the popup.php script not properly sanitizing user-supplied input to the 'only_hostid' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-11-24
|
Zabbix popup.php only_hostid Parameter SQL Injection
|
|
74665
Description:
(Description Provided by CVE) : Zabbix before 1.8.6 allows remote attackers to obtain sensitive information via an invalid srcfld2 parameter to popup.php, which reveals the installation path in an error message.
|
2011-05-25
|
Zabbix popup.php srcfld2 Parameter Error Message Path Disclosure
|
|
74663
Description:
(Description Provided by CVE) : popup.php in Zabbix before 1.8.7 allows remote attackers to read the contents of arbitrary database tables via a modified srctbl parameter.
|
2011-05-25
|
Zabbix popup.php srctbl Parameter Arbitrary Database Table Access
|