Browse Database

Browsing Vulnerabilities Disclosed in November of 2008

<< Back to Browse
OSVDB IDDisclosure DateTitle
52808 2008-11-06 SoftComplex PHP Image Gallery index.php Multiple Parameter SQL Injection
53224 2008-11-06 Nice PHP FAQ Script Admin Panel Password Parameter SQL Injection
53672 2008-11-06 DeltaScripts PHP Links admin/adm_login.php admin_username Parameter SQL Injection
53700 2008-11-06 Pre ADS Portal homeadmin/adminhome.php msg Parameter XSS
53701 2008-11-06 Pre ADS Portal homeadmin/signinform.php msg Parameter XSS
50306 2008-11-05 TestLink projectview.tpl Testcaseprefixes XSS
50307 2008-11-05 TestLink planEdit.php Multiple Parameter XSS
49695 2008-11-05 Mole Group Taxi Google API Script login.php user name Parameter SQL Injection
49694 2008-11-05 Mole Group Airline Ticket Sale Script info.php flight Parameter SQL Injection
49735 2008-11-05 Sun SPARC System Firmware Unspecified Cross Logical Domain (ldm(1M)) Data Access
49588 2008-11-05 Pre Podcast Portal Tour.php id Parameter SQL Injection
50070 2008-11-05 Simple Machines Forum (SMF) Attachment Name Prediction Weakness
49809 2008-11-05 VLC Media Player RealText Demuxer Subtitle File Handling Overflow
50037 2008-11-05 Ubuntu Linux system-tools-backends 3DES Hashed Password Weakness
49579 2008-11-05 PHP Auto Listings moreinfo.php itemno Parameter SQL Injection
49571 2008-11-05 Drinks Script index.php recid Parameter SQL Injection
49737 2008-11-05 Novell Access Manger Identity Server X509 Session Termination Failure
49808 2008-11-05 VLC Media Player CUE Demuxer Image File Handling Overflow
49572 2008-11-05 Dada Mail Manager Component for Joomla! config.dadamail.php mosConfig_absolute_path Parameter Remote File Inclusion
49573 2008-11-05 PreProjects Multiple Products Multiple Cookie Manipulation Admin Authentication Bypass
49574 2008-11-05 PTK file_content.php get_file_type() Function Image File Handling Arbitrary Command Execution
49580 2008-11-05 Drupal Content Construction Kit (CCK) Unspecified Field Labels / Content-Type Names XSS
49601 2008-11-05 Cisco IOS / CatOS Crafted VTP Packet Handling DoS
49709 2008-11-05 Adobe ColdFusion Unspecified Sandbox Restriction Bypass
49636 2008-11-05 hMailServer PHPWebAdmin index.php page Parameter Traversal Local File Inclusion
49637 2008-11-05 hMailServer PHPWebAdmin initialize.php hmail_config[includepath] Parameter Remote File Inclusion
49662 2008-11-05 Pre Simple CMS siteadmin/loginsucess.php user Parameter SQL Injection
49716 2008-11-05 HP Tru64 UNIX AdvFS showfile Command Unspecified Local Privilege Escalation
49753 2008-11-05 Adobe Flash Player HTTP Response Header XSS
49780 2008-11-05 Adobe Flash Player Unspecified Remote DNS Rebinding Weakness
49781 2008-11-05 Adobe Flash Player on Windows ActiveX Unspecified Information Disclosure
49783 2008-11-05 Adobe Flash Player on Mozilla jar: URL Unspecified Information Disclosure
49785 2008-11-05 Adobe Flash Player Policy File Interpretation Remote Non-root Domain Policy Bypass
49790 2008-11-05 Adobe Flash Player ActionScript Attribute Interpretation Unspecified XSS
49821 2008-11-05 libcdaudio cddb.c cddb_read_disc_data Function CDDB Data Handling Remote Overflow
49840 2008-11-05 Small ShoutBox Module for phpBB shoutbox_view.php id Parameter SQL Injection
52280 2008-11-05 Pre Multi-Vendor Shopping Malls Multiple Cookie Manipulation Admin Authentication Bypass
52281 2008-11-05 Pre Multi-Vendor Shopping Malls buyer_detail.php Multiple Parameter SQL Injection
53709 2008-11-05 Pre ADS Portal homeadmin/adminhome.php Direct Request Admin Authentication Bypass
54276 2008-11-05 Pre Real Estate Listings login.php Multiple Parameter SQL Injection

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2002 - 2013 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use