| OSVDB ID | Disclosure Date | Title |
|
52808
Description:
SoftComplex PHP Image Gallery contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the index.php script not properly sanitizing user-supplied input to the 'ctg' and 'Admin' parameters. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2008-11-06
|
SoftComplex PHP Image Gallery index.php Multiple Parameter SQL Injection
|
|
53224
Description:
Nice PHP contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the FAQ script not properly sanitizing user-supplied input to the 'Password' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-11-06
|
Nice PHP FAQ Script Admin Panel Password Parameter SQL Injection
|
|
53672
Description:
DeltaScripts PHP Links contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'admin/adm_login.php' script not properly sanitizing user-supplied input to the 'admin_username' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-11-06
|
DeltaScripts PHP Links admin/adm_login.php admin_username Parameter SQL Injection
|
|
53700
Description:
Pre ADS Portal contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate 'msg' parameters upon submission to the 'x' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2008-11-06
|
Pre ADS Portal homeadmin/adminhome.php msg Parameter XSS
|
|
53701
Description:
Pre ADS Portal contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate 'msg' parameters upon submission to the 'x' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2008-11-06
|
Pre ADS Portal homeadmin/signinform.php msg Parameter XSS
|
|
50306
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in TestLink before 1.8 RC1 allow remote attackers to inject arbitrary web script or HTML via (1) Testproject Names and (2) Testplan Names in planEdit.php, and possibly (3) Testcaseprefixes in projectview.tpl.
|
2008-11-05
|
TestLink projectview.tpl Testcaseprefixes XSS
|
|
50307
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in TestLink before 1.8 RC1 allow remote attackers to inject arbitrary web script or HTML via (1) Testproject Names and (2) Testplan Names in planEdit.php, and possibly (3) Testcaseprefixes in projectview.tpl.
|
2008-11-05
|
TestLink planEdit.php Multiple Parameter XSS
|
|
49695
Description:
Mole Group Taxi Google API Script contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'login.php' script not properly sanitizing user-supplied input to the 'user name' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-11-05
|
Mole Group Taxi Google API Script login.php user name Parameter SQL Injection
|
|
49694
Description:
Mole Group Airline Ticket Sale Script contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'info.php' script not properly sanitizing user-supplied input to the 'flight' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-11-05
|
Mole Group Airline Ticket Sale Script info.php flight Parameter SQL Injection
|
|
49735
Description:
(Description Provided by CVE) : The SPARC hypervisor in Sun System Firmware 6.6.3 through 6.6.5 and 7.1.3 through 7.1.3.e on UltraSPARC T1, T2, and T2+ processors allows logical domain users to access memory in other logical domains via unknown vectors.
|
2008-11-05
|
Sun SPARC System Firmware Unspecified Cross Logical Domain (ldm(1M)) Data Access
|
|
49588
Description:
Pre Podcast Portal contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'Tour.php' script not properly sanitizing user-supplied input to the 'id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-11-05
|
Pre Podcast Portal Tour.php id Parameter SQL Injection
|
|
50070
Description:
(Description Provided by CVE) : Directory traversal vulnerability in index.php in Simple Machines Forum (SMF) 1.0 before 1.0.15 and 1.1 before 1.1.7 allows remote authenticated administrators to install packages from arbitrary directories via a .. (dot dot) in the package parameter during an install2 action, as demonstrated by a predictable package filename in attachments/ that was uploaded through a post2 action to index.php.
|
2008-11-05
|
Simple Machines Forum (SMF) Attachment Name Prediction Weakness
|
|
49809
Description:
(Description Provided by CVE) : Stack-based buffer overflow in VideoLAN VLC media player 0.9.x before 0.9.6 might allow user-assisted attackers to execute arbitrary code via an an invalid RealText (rt) subtitle file, related to the ParseRealText function in modules/demux/subtitle.c. NOTE: this issue was SPLIT from CVE-2008-5032 on 20081110.
|
2008-11-05
|
VLC Media Player RealText Demuxer Subtitle File Handling Overflow
|
|
50037
Description:
(Description Provided by CVE) : system-tools-backends before 2.6.0-1ubuntu1.1 in Ubuntu 8.10, as used by "Users and Groups" in GNOME System Tools, hashes account passwords with 3DES and consequently limits effective password lengths to eight characters, which makes it easier for context-dependent attackers to successfully conduct brute-force password attacks.
|
2008-11-05
|
Ubuntu Linux system-tools-backends 3DES Hashed Password Weakness
|
|
49579
Description:
PHP Auto Listings contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'moreinfo.php' script not properly sanitizing user-supplied input to the 'itemno' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-11-05
|
PHP Auto Listings moreinfo.php itemno Parameter SQL Injection
|
|
49571
Description:
Drinks Script contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'index.php' script not properly sanitizing user-supplied input to the 'recid' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-11-05
|
Drinks Script index.php recid Parameter SQL Injection
|
|
49737
Description:
(Description Provided by CVE) : Novell Access Manager 3 SP4 does not properly expire X.509 certificate sessions, which allows physically proximate attackers to obtain a logged-in session by using a victim's web-browser process that continues to send the original and valid SSL sessionID, related to inability of Apache Tomcat to clear entries from its SSL cache.
|
2008-11-05
|
Novell Access Manger Identity Server X509 Session Termination Failure
|
|
49808
Description:
A remote overflow exists in VideoLAN VLC Media Player. The media player fails to properly bounds check CUE Demuxer images resulting in a stack overflow. With a specially crafted image, an attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2008-11-05
|
VLC Media Player CUE Demuxer Image File Handling Overflow
|
|
49572
Description:
Dada Mail Manager Component for Joomla! contains a flaw that may allow a remote attacker to execute arbitrary commands or code. The issue is due to the 'config.dadamail.php' script not properly sanitizing user input supplied to the 'mosConfig_absolute_path' parameter. This may allow an attacker to include a file from a third-party remote host that contains commands or code that will be executed by the vulnerable script with the same privileges as the web server.
|
2008-11-05
|
Dada Mail Manager Component for Joomla! config.dadamail.php mosConfig_absolute_path Parameter Remote File Inclusion
|
|
49573
Description:
(Description Provided by CVE) : Pre Classified Listing PHP allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".
|
2008-11-05
|
PreProjects Multiple Products Multiple Cookie Manipulation Admin Authentication Bypass
|
|
49574
Description:
(Description Provided by CVE) : The get_file_type function in lib/file_content.php in DFLabs PTK 0.1, 0.2, and 1.0 allows remote attackers to execute arbitrary commands via shell metacharacters after an arg1= sequence in a filename within a forensic image.
|
2008-11-05
|
PTK file_content.php get_file_type() Function Image File Handling Arbitrary Command Execution
|
|
49580
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in the administrative interface in Drupal Content Construction Kit (CCK) 5.x before 5.x-1.10 and 6.x before 6.x-2.0, a module for Drupal, allows remote authenticated users with "administer content" permissions to inject arbitrary web script or HTML via (1) field labels and (2) content-type names.
|
2008-11-05
|
Drupal Content Construction Kit (CCK) Unspecified Field Labels / Content-Type Names XSS
|
|
49601
Description:
(Description Provided by CVE) : Unspecified vulnerability in the VLAN Trunking Protocol (VTP) implementation on Cisco IOS and CatOS, when the VTP operating mode is not transparent, allows remote attackers to cause a denial of service (device reload or hang) via a crafted VTP packet sent to a switch interface configured as a trunk port.
|
2008-11-05
|
Cisco IOS / CatOS Crafted VTP Packet Handling DoS
|
|
49709
Description:
(Description Provided by CVE) : Unspecified vulnerability in Adobe ColdFusion 8 and 8.0.1 and ColdFusion MX 7.0.2 allows local users to bypass sandbox restrictions, and obtain sensitive information or possibly gain privileges, via unknown vectors.
|
2008-11-05
|
Adobe ColdFusion Unspecified Sandbox Restriction Bypass
|
|
49636
Description:
hMailServer PHPWebAdmin contains a flaw that may allow a remote attacker to execute arbitrary commands or code. The issue is due to the 'index.php' script not properly sanitizing user input, specifically directory traversal style attacks (e.g., ../../) supplied to the 'page' parameter. This may allow an attacker to include a file from the targeted host that contains arbitrary commands or code that will be executed by the vulnerable script. Such attacks are limited due to the script only calling files already on the target host. In addition, this flaw can potentially be used to disclose the contents of any file on the system accessible by the web server.
|
2008-11-05
|
hMailServer PHPWebAdmin index.php page Parameter Traversal Local File Inclusion
|
|
49637
Description:
hMailServer PHPWebAdmin contains a flaw that may allow a remote attacker to execute arbitrary commands or code. The issue is due to the 'initialize.php' script not properly sanitizing user input supplied to the 'hmail_config[includepath]' parameter. This may allow an attacker to include a file from a third-party remote host that contains commands or code that will be executed by the vulnerable script with the same privileges as the web server.
|
2008-11-05
|
hMailServer PHPWebAdmin initialize.php hmail_config[includepath] Parameter Remote File Inclusion
|
|
49662
Description:
Pre Simple CMS contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'siteadmin/loginsucess.php' script not properly sanitizing user-supplied input to the 'user' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-11-05
|
Pre Simple CMS siteadmin/loginsucess.php user Parameter SQL Injection
|
|
49716
Description:
(Description Provided by CVE) : Unspecified vulnerability in the AdvFS showfile command in HP Tru64 UNIX 5.1B-3 and 5.1B-4 allows local users to gain privileges via unspecified vectors.
|
2008-11-05
|
HP Tru64 UNIX AdvFS showfile Command Unspecified Local Privilege Escalation
|
|
49753
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in Adobe Flash Player 9.0.124.0 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors involving HTTP response headers.
|
2008-11-05
|
Adobe Flash Player HTTP Response Header XSS
|
|
49780
Description:
(Description Provided by CVE) : Unspecified vulnerability in Adobe Flash Player 9.0.124.0 and earlier makes it easier for remote attackers to conduct DNS rebinding attacks via unknown vectors.
|
2008-11-05
|
Adobe Flash Player Unspecified Remote DNS Rebinding Weakness
|
|
49781
Description:
(Description Provided by CVE) : Unspecified vulnerability in the Flash Player ActiveX control in Adobe Flash Player 9.0.124.0 and earlier on Windows allows attackers to obtain sensitive information via unknown vectors.
|
2008-11-05
|
Adobe Flash Player on Windows ActiveX Unspecified Information Disclosure
|
|
49783
Description:
(Description Provided by CVE) : Adobe Flash Player 9.0.124.0 and earlier, when a Mozilla browser is used, does not properly interpret jar: URLs, which allows attackers to obtain sensitive information via unknown vectors.
|
2008-11-05
|
Adobe Flash Player on Mozilla jar: URL Unspecified Information Disclosure
|
|
49785
Description:
(Description Provided by CVE) : Adobe Flash Player 9.0.124.0 and earlier does not properly interpret policy files, which allows remote attackers to bypass a non-root domain policy.
|
2008-11-05
|
Adobe Flash Player Policy File Interpretation Remote Non-root Domain Policy Bypass
|
|
49790
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in Adobe Flash Player 9.0.124.0 and earlier allows remote attackers to inject arbitrary web script or HTML via vectors related to loose interpretation of an ActionScript attribute.
|
2008-11-05
|
Adobe Flash Player ActionScript Attribute Interpretation Unspecified XSS
|
|
49821
Description:
(Description Provided by CVE) : Heap-based buffer overflow in the cddb_read_disc_data function in cddb.c in libcdaudio 0.99.12p2 allows remote CDDB servers to execute arbitrary code via long CDDB data.
|
2008-11-05
|
libcdaudio cddb.c cddb_read_disc_data Function CDDB Data Handling Remote Overflow
|
|
49840
Description:
Small ShoutBox Module for phpBB contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'shoutbox_view.php' script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-11-05
|
Small ShoutBox Module for phpBB shoutbox_view.php id Parameter SQL Injection
|
|
52280
Description:
(Description Provided by CVE) : Pre Multi-Vendor Shopping Malls allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) adminid cookies to "admin".
|
2008-11-05
|
Pre Multi-Vendor Shopping Malls Multiple Cookie Manipulation Admin Authentication Bypass
|
|
52281
Description:
Pre Multi-Vendor Shopping Malls contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the buyer_detail.php script not properly sanitizing user-supplied input to the 'sid' and 'cid' parameters. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2008-11-05
|
Pre Multi-Vendor Shopping Malls buyer_detail.php Multiple Parameter SQL Injection
|
|
53709
Description:
(Description Provided by CVE) : homeadmin/adminhome.php in Pre ADS Portal 2.0 and earlier does not require administrative authentication, which allows remote attackers to have an unspecified impact via a direct request.
|
2008-11-05
|
Pre ADS Portal homeadmin/adminhome.php Direct Request Admin Authentication Bypass
|
|
54276
Description:
(Description Provided by CVE) : Multiple SQL injection vulnerabilities in login.php in Pre Projects Pre Real Estate Listings allow remote attackers to execute arbitrary SQL commands via (1) the us parameter (aka the Username field) or (2) the ps parameter (aka the Password field).
|
2008-11-05
|
Pre Real Estate Listings login.php Multiple Parameter SQL Injection
|