| OSVDB ID | Disclosure Date | Title |
|
43982
Description:
(Description Provided by CVE) : Directory traversal vulnerability in the PXE TFTP Service (PXEMTFTP.exe) in LANDesk Management Suite (LDMS) 8.7 SP5 and earlier and 8.8 allows remote attackers to read arbitrary files via unspecified vectors.
|
2008-03-31
|
LANDesk Management Suite PXE TFTP Service Traversal Arbitrary File Access
|
|
43915
Description:
(Description Provided by CVE) : Stack-based buffer overflow in XnView 1.92 and 1.92.1 allows user-assisted remote attackers to execute arbitrary code via a long FontName parameter in a slideshow (.sld) file, a different vector than CVE-2008-1461.
|
2008-03-31
|
XnView Slideshow (.sld) FontName Handling Overflow
|
|
44027
Description:
CuteFlow contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the pages/edituser.php script not properly sanitizing user-supplied input to the 'userid' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2008-03-31
|
CuteFlow pages/edituser.php userid Parameter SQL Injection
|
|
43894
Description:
JV2 Folder Gallery contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the "image" variable upon submission to the index.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2008-03-31
|
JV2 Folder Gallery index.php image Parameter XSS
|
|
43909
Description:
JV2 Quick Gallery contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate the "f" variable upon submission. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2008-03-31
|
JV2 Quick Gallery index.php f Parameter XSS
|
|
44024
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in CuteFlow 1.5.0 and 2.10.0 allow remote attackers to inject arbitrary web script or HTML via the language parameter to (1) page/showcirculation.php; and (2) edittemplate_step2.php, (3) showfields.php, (4) showuser.php, (5) editmailinglist_step1.php, and (6) showtemplates.php in pages/.
|
2008-03-31
|
CuteFlow pages/showtemplates.php language Parameter XSS
|
|
43920
Description:
WP-Download Plugin for WordPress contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'wp-download.php' script not properly sanitizing user-supplied input to the 'dl_id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-03-31
|
WP-Download Plugin for WordPress wp-download.php dl_id Parameter SQL Injection
|
|
43956
Description:
(Description Provided by CVE) : The Macrovision InstallShield InstallScript One-Click Install (OCI) ActiveX control 12.0 before SP2 does not validate the DLL files that are named as parameters to the control, which allows remote attackers to download arbitrary library code onto a client machine.
|
2008-03-31
|
Macrovision InstallShield InstallScript One-Click Install ActiveX Arbitrary Code Execution
|
|
43965
Description:
(Description Provided by CVE) : Directory traversal vulnerability in admin/login.php in EasyNews 4.0 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang parameter.
|
2008-03-31
|
EasyNews admin/login.php lang Parameter Traversal Local File Inclusion
|
|
43966
Description:
EasyNews contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'dynamicpages/index.php' script not properly sanitizing user-supplied input to the 'read' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-03-31
|
EasyNews dynamicpages/index.php read Parameter SQL Injection
|
|
43967
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in staticpages/easypublish/index.php in EasyNews 4.0 allows remote attackers to inject arbitrary web script or HTML via the read parameter in an edp_pupublish action.
|
2008-03-31
|
EasyNews staticpages/easypublish/index.php read Parameter XSS
|
|
44023
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in CuteFlow 1.5.0 and 2.10.0 allow remote attackers to inject arbitrary web script or HTML via the language parameter to (1) page/showcirculation.php; and (2) edittemplate_step2.php, (3) showfields.php, (4) showuser.php, (5) editmailinglist_step1.php, and (6) showtemplates.php in pages/.
|
2008-03-31
|
CuteFlow pages/editmailinglist_step1.php language Parameter XSS
|
|
44019
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in CuteFlow 1.5.0 and 2.10.0 allow remote attackers to inject arbitrary web script or HTML via the language parameter to (1) page/showcirculation.php; and (2) edittemplate_step2.php, (3) showfields.php, (4) showuser.php, (5) editmailinglist_step1.php, and (6) showtemplates.php in pages/.
|
2008-03-31
|
CuteFlow pages/showcirculation.php language Parameter XSS
|
|
44020
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in CuteFlow 1.5.0 and 2.10.0 allow remote attackers to inject arbitrary web script or HTML via the language parameter to (1) page/showcirculation.php; and (2) edittemplate_step2.php, (3) showfields.php, (4) showuser.php, (5) editmailinglist_step1.php, and (6) showtemplates.php in pages/.
|
2008-03-31
|
CuteFlow pages/edittemplate_step2.php language Parameter XSS
|
|
44021
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in CuteFlow 1.5.0 and 2.10.0 allow remote attackers to inject arbitrary web script or HTML via the language parameter to (1) page/showcirculation.php; and (2) edittemplate_step2.php, (3) showfields.php, (4) showuser.php, (5) editmailinglist_step1.php, and (6) showtemplates.php in pages/.
|
2008-03-31
|
CuteFlow pages/showfields.php language Parameter XSS
|
|
44022
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in CuteFlow 1.5.0 and 2.10.0 allow remote attackers to inject arbitrary web script or HTML via the language parameter to (1) page/showcirculation.php; and (2) edittemplate_step2.php, (3) showfields.php, (4) showuser.php, (5) editmailinglist_step1.php, and (6) showtemplates.php in pages/.
|
2008-03-31
|
CuteFlow pages/showuser.php language Parameter XSS
|
|
44025
Description:
(Description Provided by CVE) : SQL injection vulnerability in login.php in CuteFlow 1.5.0 and 2.10.0 allows remote attackers to execute arbitrary SQL commands via the UserId parameter, related to the login form field in index.php.
|
2008-03-31
|
CuteFlow login.php UserId Parameter SQL Injection
|
|
44026
Description:
(Description Provided by CVE) : Multiple SQL injection vulnerabilities in CuteFlow 2.10.0 allow remote authenticated users to execute arbitrary SQL commands via the (1) listid parameter to pages/editmailinglist_step1.php, the (2) userid parameter to pages/edituser.php, the (3) fieldid parameter to pages/editfield.php, and the (4) templateid to pages/edittemplate_step1.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
|
2008-03-31
|
CuteFlow pages/editmailinglist_step1.php listid Parameter SQL Injection
|
|
44028
Description:
CuteFlow contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the pages/editfield.php script not properly sanitizing user-supplied input to the 'fieldid' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2008-03-31
|
CuteFlow pages/editfield.php fieldid Parameter SQL Injection
|
|
44029
Description:
(Description Provided by CVE) : Multiple SQL injection vulnerabilities in CuteFlow 2.10.0 allow remote authenticated users to execute arbitrary SQL commands via the (1) listid parameter to pages/editmailinglist_step1.php, the (2) userid parameter to pages/edituser.php, the (3) fieldid parameter to pages/editfield.php, and the (4) templateid to pages/edittemplate_step1.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
|
2008-03-31
|
CuteFlow pages/edittemplate_step1.php templateid Parameter SQL Injection
|
|
44187
Description:
(Description Provided by CVE) : The SOAP interface in OTRS 2.1.x before 2.1.8 and 2.2.x before 2.2.6 allows remote attackers to "read and modify objects" via SOAP requests, related to "Missing security checks."
|
2008-03-31
|
OTRS (Open Ticket Request System) SOAP Interface Unauthenticated Object Manipulation
|
|
44207
Description:
Neat weblog contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'index.php' script not properly sanitizing user-supplied input to the 'articleId' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-03-31
|
Neat weblog index.php articleId Parameter SQL Injection
|
|
44209
Description:
(Description Provided by CVE) : Directory traversal vulnerability in body.php in phpSpamManager (phpSM) 0.53 beta allows remote attackers to read arbitrary local files via a .. (dot dot) in the filename parameter.
|
2008-03-31
|
phpSpamManager body.php filename Parameter Traversal Local File Inclusion
|
|
44241
Description:
(Description Provided by CVE) : SQL injection vulnerability in jgs_treffen.php in the JGS-XA JGS-Treffen 2.0.2 and earlier addon for Woltlab Burning Board (wBB) allows remote attackers to execute arbitrary SQL commands via the view_id parameter in an ansicht action.
|
2008-03-31
|
JGS-Treffen Addon for Woltlab Burning Board jgs_treffen.php view_id Parameter SQL Injection
|
|
52805
Description:
PHPGKit contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to 'connexion.php' not properly sanitizing user input supplied to the 'DOCUMENT_ROOT' parameter. This may allow an attacker to include a file from a remote host that contains arbitrary commands which will be executed by the vulnerable script.
|
2008-03-31
|
PHPGKit connexion.php DOCUMENT_ROOT Parameter Remote File Inclusion
|
|
57623
Description:
@lex Poll contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate 'language_setup' parameters upon submission to the 'setup.php' script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2008-03-31
|
@lex Poll setup.php language_setup Parameter XSS
|
|
57624
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in @lex Guestbook 4.0.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) language_setup parameter to setup.php or (2) test parameter to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: a third party has been reported that the test parameter is not used in @lex Guestbook.
|
2008-03-31
|
@lex Guestbook setup.php language_setup Parameter XSS
|
|
57625
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in @lex Guestbook 4.0.5 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) language_setup parameter to setup.php or (2) test parameter to index.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: a third party has been reported that the test parameter is not used in @lex Guestbook.
|
2008-03-31
|
@lex Guestbook index.php test Parameter XSS
|
|
43922
Description:
(Description Provided by CVE) : aavmker4.sys in avast! Home and Professional 4.7 for Windows does not properly validate input to IOCTL 0xb2d60030, which allows local users to gain privileges via certain IOCTL requests.
|
2008-03-30
|
avast! Home/Professional aavmker4.sys IOCTL Handling Local Privilege Escalation
|
|
43993
Description:
(Description Provided by CVE) : suPHP before 0.6.3 allows local users to gain privileges via (1) a race condition that involves multiple symlink changes to point a file owned by a different user, or (2) a symlink to the directory of a different user, which is used to determine privileges.
|
2008-03-30
|
suPHP for Apache (mod_suphp) Owner Mode Race Condition Symlink Local Privilege Escalation
|
|
43994
Description:
(Description Provided by CVE) : suPHP before 0.6.3 allows local users to gain privileges via (1) a race condition that involves multiple symlink changes to point a file owned by a different user, or (2) a symlink to the directory of a different user, which is used to determine privileges.
|
2008-03-30
|
suPHP for Apache (mod_suphp) Directory Symlink Local Privilege Escalation
|
|
43912
Description:
(Description Provided by CVE) : Stack-based buffer overflow in the audit_log_user_command function in lib/audit_logging.c in Linux Audit before 1.7 might allow remote attackers to execute arbitrary code via a long command argument. NOTE: some of these details are obtained from third party information.
|
2008-03-30
|
Linux Audit lib/audit_logging.c audit_log_user_command() Function Local Overflow
|
|
43905
Description:
(Description Provided by CVE) : PowerDNS Recursor before 3.1.5 uses insufficient randomness to calculate (1) TRXID values and (2) UDP source port numbers, which makes it easier for remote attackers to poison a DNS cache, related to (a) algorithmic deficiencies in rand and random functions in external libraries, (b) use of a 32-bit seed value, and (c) choice of the time of day as the sole seeding information.
|
2008-03-30
|
PowerDNS Recursor DNS Predictable Transaction ID (TRXID) Cache Poisoning Weakness
|
|
44142
Description:
(Description Provided by CVE) : ** DISPUTED ** gcc 4.2.0 through 4.3.0 in GNU Compiler Collection, when casts are not used, considers the sum of a pointer and an int to be greater than or equal to the pointer, which might lead to removal of length testing code that was intended as a protection mechanism against integer overflow and buffer overflow attacks, and provide no diagnostic message about this removal. NOTE: the vendor has determined that this compiler behavior is correct according to section 6.5.6 of the C99 standard (aka ISO/IEC 9899:1999).
|
2008-03-30
|
Gnu GCC Length Testing Code Failure Code Compilation Weakness
|
|
50360
Description:
Legion of the Bouncy Castle contains a flaw in the Java Cryptography API. The issue is triggered when an error related to a Bleichenbacher vulnerability in simple RSA CMS signatures without signed attributes occurs. No further details have been provided.
|
2008-03-30
|
Legion of the Bouncy Castle Crypto Package CMS Signature Bleichenbacher Weakness
|
|
48861
Description:
Unknown / Incomplete
|
2008-03-30
|
MOStlyCE for Mambo Multiple Unspecified Issues
|
|
43910
Description:
Smoothflash contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'admin_view_image.php' script not properly sanitizing user-supplied input to the 'cid' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-03-30
|
Smoothflash admin_view_image.php cid Parameter SQL Injection
|
|
44201
Description:
(Description Provided by CVE) : Directory traversal vulnerability in v2demo/page.php in Jshop Server 1.x through 2.x allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the xPage parameter.
|
2008-03-30
|
Jshop Server v2demo/page.php xPage Parameter Traversal Local File Inclusion
|
|
44240
Description:
(Description Provided by CVE) : Directory traversal vulnerability in view_private.php in Keep It Simple Guest Book (KISGB) 5.0.0 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the tmp_theme parameter. NOTE: 5.1.1 is also reportedly affected.
|
2008-03-30
|
KISGB view_private.php tmp_theme Parameter Traversal Local File Inclusion
|
|
44396
Description:
mxbBB mx_blogs contains a flaw that may allow a remote attacker to execute arbitrary commands or code. The issue is due to the 'includes/functions_weblog.php' script not properly sanitizing user input supplied to the ' mx_root_path' parameter. This may allow an attacker to include a file from a third-party remote host that contains commands or code that will be executed by the vulnerable script with the same privileges as the web server.
|
2008-03-30
|
mxbBB mx_blogs includes/functions_weblog.php mx_root_path Parameter Remote File Inclusion
|