| OSVDB ID | Disclosure Date | Title |
|
42367
Description:
XRMS CRM contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the 'msg' variable upon submission to the '/admin/users/self.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2008-02-29
|
XRMS CRM /admin/users/self.php msg Variable XSS
|
|
42483
Description:
(Description Provided by CVE) : includes/library.php in netOffice Dwins 1.3 p2 compares the demoSession variable to the 'true' string literal instead of the true boolean literal, which allows remote attackers to bypass authentication and execute arbitrary code by setting this variable to 1, as demonstrated by uploading a PHP script via an add action to projects_site/uploadfile.php.
|
2008-02-29
|
netOffice Dwins projects_site/uploadfile.php demoSession Variable Remote Code Execution
|
|
42554
Description:
(Description Provided by CVE) : Multiple stack-based buffer overflows in the Learn2 Corporation STRunner (aka Street Technologies) ActiveX control in iestm32.dll allow remote attackers to execute arbitrary code via unspecified vectors.
|
2008-02-29
|
Learn2 Corporation STRunner iestm32.dll ActiveX Unspecified Overflows
|
|
42551
Description:
phpMyTourney contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to 'tourney/index.php' not properly sanitizing user input supplied to the 'page' variable. This may allow an attacker to include a file from a remote host that contains arbitrary commands which will be executed by the vulnerable script.
|
2008-02-29
|
phpMyTourney tourney/index.php page Variable Remote File Inclusion
|
|
42704
Description:
(Description Provided by CVE) : Directory traversal vulnerability in include/doc/index.php in Centreon 1.4.2.3 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter, a different vector than CVE-2008-1119.
|
2008-02-29
|
Centreon include/doc/index.php page Variable Traversal Arbitrary File Access
|
|
43515
Description:
(Description Provided by CVE) : SQL injection vulnerability in Koobi CMS 4.2.3 through 4.3.0 allows remote attackers to execute arbitrary SQL commands via the categ parameter in a links action to index.php, a different vector than CVE-2008-1122.
|
2008-02-29
|
Koobi CMS index.php links Action categ Variable SQL Injection
|
|
42324
Description:
Unknown / Incomplete
|
2008-02-28
|
phpShop Unspecified Remote Issue (ZD-00000190)
|
|
42323
Description:
Unknown / Incomplete
|
2008-02-28
|
CA ARCserve Backup for Laptops & Desktops Unspecified Local Issue
|
|
42330
Description:
Unknown / Incomplete
|
2008-02-28
|
IBM DB2 Universal Database Unspecified Remote Issue
|
|
42327
Description:
Unknown / Incomplete
|
2008-02-28
|
SAP MaxDB Unspecified Local Privilege Escalation
|
|
42325
Description:
Unknown / Incomplete
|
2008-02-28
|
Novell eDirectory Unspecified Remote Issue
|
|
42326
Description:
Unknown / Incomplete
|
2008-02-28
|
eScan Anti-Virus for Linux Unspecified Remote Issue
|
|
42320
Description:
Unknown / Incomplete
|
2008-02-28
|
Weird Solutions BOOTPTurbo Unspecified Remote Code Execution
|
|
42319
Description:
Unknown / Incomplete
|
2008-02-28
|
myBloggie Multiple Unspecified Path Disclosure
|
|
42318
Description:
Unknown / Incomplete
|
2008-02-28
|
myBloggie Multiple Unspecified SQL Injection
|
|
42317
Description:
Unknown / Incomplete
|
2008-02-28
|
ElectroServer Unspecified Remote Issue
|
|
42316
Description:
Unknown / Incomplete
|
2008-02-28
|
3Com FTP Server Unspecified Remote DoS
|
|
43000
Description:
Unknown / Incomplete
|
2008-02-28
|
Netwin SmsGate Malformed Content-Length Header Processing Remote DoS
|
|
42315
Description:
Unknown / Incomplete
|
2008-02-28
|
MailEnable Remote Management Unspecified Remote Overflow
|
|
42356
Description:
(Description Provided by CVE) : The ipsec4_get_ulp function in the kernel in NetBSD 2.0 through 3.1 and NetBSD-current before 20071028, when the fast_ipsec subsystem is enabled, allows remote attackers to bypass the IPsec policy by sending packets from a source machine with a different endianness than the destination machine, a different vulnerability than CVE-2006-0905.
|
2008-02-28
|
NetBSD FAST_IPSEC ipsec4_get_ulp() Function IPSEC Policy Bypass
|
|
42629
Description:
(Description Provided by CVE) : Unspecified vulnerability in the ipsecah kernel module in Sun Solaris 10, when a key management daemon for IPsec security associations is running, allows local users to cause a denial of service (panic) via unspecified vectors.
|
2008-02-28
|
Solaris ipsecah(7P) Kernel Module Unspecified Local DoS
|
|
43170
Description:
(Description Provided by CVE) : mod_userdir in lighttpd 1.4.18 and earlier, when userdir.path is not set, uses a default of $HOME, which might allow remote attackers to read arbitrary files, as demonstrated by accessing the ~nobody directory.
|
2008-02-28
|
lighttpd mod_userdir userdir.path Information Disclosure
|
|
43169
Description:
(Description Provided by CVE) : mod_cgi in lighttpd 1.4.18 sends the source code of CGI scripts instead of a 500 error when a fork failure occurs, which might allow remote attackers to obtain sensitive information.
|
2008-02-28
|
lighttpd mod_cgi Fork Failure CGI Source Disclosure
|
|
43040
Description:
(Description Provided by CVE) : ViewVC before 1.0.5 includes "all-forbidden" files within search results that list CVS or Subversion (SVN) commits, which allows remote attackers to obtain sensitive information.
|
2008-02-28
|
ViewVC Crafted Query CVS / SVN Restricted File Listing
|
|
43041
Description:
(Description Provided by CVE) : ViewVC before 1.0.5 stores sensitive information under the web root with insufficient access control, which allows remote attackers to read files and list folders under the hidden CVSROOT folder.
|
2008-02-28
|
ViewVC Crafted URL CVSROOT Folders Disclosure
|
|
43042
Description:
(Description Provided by CVE) : ViewVC before 1.0.5 provides revision metadata without properly checking whether access was intended, which allows remote attackers to obtain sensitive information by reading (1) forbidden pathnames in the revision view, (2) log history that can only be reached by traversing a forbidden object, or (3) forbidden diff view path parameters.
|
2008-02-28
|
ViewVC Revision View Restricted Content Disclosure
|
|
43043
Description:
(Description Provided by CVE) : ViewVC before 1.0.5 provides revision metadata without properly checking whether access was intended, which allows remote attackers to obtain sensitive information by reading (1) forbidden pathnames in the revision view, (2) log history that can only be reached by traversing a forbidden object, or (3) forbidden diff view path parameters.
|
2008-02-28
|
ViewVC Log History Restricted Content Disclosure
|
|
43044
Description:
(Description Provided by CVE) : ViewVC before 1.0.5 provides revision metadata without properly checking whether access was intended, which allows remote attackers to obtain sensitive information by reading (1) forbidden pathnames in the revision view, (2) log history that can only be reached by traversing a forbidden object, or (3) forbidden diff view path parameters.
|
2008-02-28
|
ViewVC Diff View Restricted Content Disclosure
|
|
42292
Description:
Interspire Shopping Cart contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate 'search_query' variables upon submission to the 'search.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2008-02-28
|
Interspire Shopping Cart search.php search_query Variable XSS
|
|
42301
Description:
Maian Cart contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the "keywords" variable upon submission to the index.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2008-02-28
|
Maian Cart index.php keywords Variable XSS
|
|
42885
Description:
(Description Provided by CVE) : Format string vulnerability in the cryactio function in Crysis 1.1.1.5879 allows remote authenticated users to execute arbitrary code via format string specifiers in the user name, which is triggered when the game character is killed.
|
2008-02-28
|
Crysis User Name cryactio Function Remote Format String
|
|
42549
Description:
(Description Provided by CVE) : Directory traversal vulnerability in include/doc/get_image.php in Centreon 1.4.2.3 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the img parameter.
|
2008-02-28
|
Centreon include/doc/get_image.php img Variable Traversal Arbitrary File Access
|
|
42550
Description:
Koobi Pro contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'index.php' script not properly sanitizing user-supplied input to the 'categ' variable. This may allow an attacker to inject or manipulate SQL queries in the backend database.
|
2008-02-28
|
Koobi Pro index.php categ Variable SQL Injection
|
|
42555
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in SiteBuilder Elite 1.2 allow remote attackers to execute arbitrary PHP code via a URL in the CarpPath parameter to (1) files/carprss.php and (2) files/amazon-bestsellers.php.
|
2008-02-28
|
SiteBuilder Elite files/carprss.php CarpPath Variable Remote File Inclusion
|
|
42556
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in SiteBuilder Elite 1.2 allow remote attackers to execute arbitrary PHP code via a URL in the CarpPath parameter to (1) files/carprss.php and (2) files/amazon-bestsellers.php.
|
2008-02-28
|
SiteBuilder Elite files/amazon-bestsellers.php CarpPath Variable Remote File Inclusion
|
|
42557
Description:
(Description Provided by CVE) : Multiple directory traversal vulnerabilities in Podcast Generator 1.0 BETA 2 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) theme_path parameter to core/themes.php and the (2) filename parameter to download.php.
|
2008-02-28
|
Podcast Generator core/themes.php theme_path Variable Traversal Arbitrary File Access
|
|
42558
Description:
(Description Provided by CVE) : Multiple directory traversal vulnerabilities in Podcast Generator 1.0 BETA 2 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) theme_path parameter to core/themes.php and the (2) filename parameter to download.php.
|
2008-02-28
|
Podcast Generator download.php filename Variable Traversal Arbitrary File Access
|
|
42559
Description:
Podcast Generator contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to 'loadparser.php' not properly sanitizing user input supplied to the 'absoluteurl' variable. This may allow an attacker to include a file from a remote host that contains arbitrary commands which will be executed by the vulnerable script.
|
2008-02-28
|
Podcast Generator loadparser.php absoluteurl Variable Remote File Inclusion
|
|
42560
Description:
Podcast Generator contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to 'admin.php' not properly sanitizing user input supplied to the 'absoluteurl' variable. This may allow an attacker to include a file from a remote host that contains arbitrary commands which will be executed by the vulnerable script.
|
2008-02-28
|
Podcast Generator admin.php absoluteurl Variable Remote File Inclusion
|
|
42561
Description:
Podcast Generator contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to 'categories.php' not properly sanitizing user input supplied to the 'absoluteurl' variable. This may allow an attacker to include a file from a remote host that contains arbitrary commands which will be executed by the vulnerable script.
|
2008-02-28
|
Podcast Generator categories.php absoluteurl Variable Remote File Inclusion
|