| OSVDB ID | Disclosure Date | Title |
|
47200
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in BilboBlog 0.2.1 allow remote authenticated administrators to inject arbitrary web script or HTML via the (1) content parameter to admin/update.php, related to conflicting code in widget.php; and allow remote attackers to inject arbitrary web script or HTML via the (2) titleId parameter to head.php, reachable through index.php; the (3) t_lang[lang_copyright] parameter to footer.php; the (4) content parameter to the default URI under admin/; the (5) url, (6) t_lang[lang_admin_help], (7) t_lang[lang_admin_clear_cache], (8) t_lang[lang_admin_home], and (9) t_lang[lang_admin_logout] parameters to admin/homelink.php; and the (10) t_lang[lang_admin_new_post] parameter to admin/post.php. NOTE: some of these details are obtained from third party information.
|
2008-07-14
|
BilboBlog admin/post.php t_lang[lang_admin_new_post] Parameter XSS
|
|
47201
Description:
BilboBlog contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'admin/delete.php' script not properly sanitizing user-supplied input to the 'num' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-14
|
BilboBlog admin/delete.php num Parameter SQL Injection
|
|
47204
Description:
(Description Provided by CVE) : admin/login.php in BilboBlog 0.2.1, when register_globals is enabled, allows remote attackers to bypass authentication and obtain administrative access via a direct request that sets the login, admin_login, password, and admin_passwd parameters.
|
2008-07-14
|
BilboBlog admin/login.php Direct Request Admin Authentication Bypass
|
|
48288
Description:
(Description Provided by CVE) : BilboBlog 0.2.1 allows remote attackers to obtain sensitive information via (1) an enable_cache=false query string to footer.php or (2) a direct request to pagination.php, which reveals the installation path in an error message.
|
2008-07-14
|
BilboBlog footer.php enable_cache=false Query String Remote Information Disclosure
|
|
48289
Description:
(Description Provided by CVE) : BilboBlog 0.2.1 allows remote attackers to obtain sensitive information via (1) an enable_cache=false query string to footer.php or (2) a direct request to pagination.php, which reveals the installation path in an error message.
|
2008-07-14
|
BilboBlog pagination.php Direct Request Error Message Path Disclosure
|
|
51472
Description:
Unknown / Incomplete
|
2008-07-14
|
eMule Shared Files List OS User Account Name Remote Disclosure
|
|
52614
Description:
(Description Provided by CVE) : Insecure method vulnerability in Sina Inc. DLoader Class ActiveX Control allows remote attackers to overwrite arbitrary files via a URL in the first parameter to the DonwloadAndInstall method. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
|
2008-07-14
|
Sina Inc. DLoader Class ActiveX DownloadAndInstall Method Arbitrary File Overwrite
|
|
68690
Description:
(Description Provided by CVE) : ftpserver.py in pyftpdlib before 0.5.0 does not delay its response after receiving an invalid login attempt, which makes it easier for remote attackers to obtain access via a brute-force attack.
|
2008-07-14
|
pyftpdlib ftpserver.py Login Attempt Response Delay Brute Force Weakness
|
|
47231
Description:
(Description Provided by CVE) : The LDT implementation in the Linux kernel 2.6.25.x before 2.6.25.11 on x86_64 platforms uses an incorrect size for ldt_desc, which allows local users to cause a denial of service (system crash) or possibly gain privileges via unspecified vectors.
|
2008-07-13
|
Linux Kernel LDT Implementatin ldt_desc Size Handling Local Privilege Escalation
|
|
47012
Description:
Pluck contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to the data/inc/themes/predefined_variables.php script not properly sanitizing user input, specifically directory traversal style attacks (../../) supplied to the 'langpref', 'file', 'blogpost', and 'cat' variables. This may allow an attacker to include a file from the targeted host that contains arbitrary commands which will be executed by the vulnerable script. Such attacks are limited due to the script only calling files already on the target host. In addition, this flaw can potentially be used to disclose the contents of any file on the system.
|
2008-07-13
|
Pluck data/inc/themes/predefined_variables.php Multiple Parameter Traversal Local File Inclusion
|
|
47013
Description:
ITechBids contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'sellers_othersitem.php' script not properly sanitizing user-supplied input to the 'seller_id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-13
|
ITechBids sellers_othersitem.php seller_id Parameter SQL Injection
|
|
47014
Description:
ITechBids contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'classifieds.php' script not properly sanitizing user-supplied input to the 'productid' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-13
|
ITechBids classifieds.php productid Parameter SQL Injection
|
|
47015
Description:
ITechBids contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'shop.php' script not properly sanitizing user-supplied input to the 'id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-13
|
ITechBids shop.php id Parameter SQL Injection
|
|
47016
Description:
ITechBids contains a flaw that allows a remote cross site scripting attack. This flaw exists because the application does not validate "productid" variables upon submission to the forward_to_friend.php script. This could allow a user to create a specially crafted URL that would execute arbitrary code in a user's browser within the trust relationship between the browser and the server, leading to a loss of integrity.
|
2008-07-13
|
ITechBids forward_to_friend.php product Parameter XSS
|
|
47065
Description:
Scripteen Free Image Hosting Script contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the admin/login.php script not properly sanitizing user-supplied input to the 'username' and 'password' parameters. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2008-07-13
|
Scripteen Free Image Hosting Script admin/login.php Multiple Parameter SQL Injection
|
|
47029
Description:
(Description Provided by CVE) : admin/index.php in Maian Search 1.1 and earlier allows remote attackers to bypass authentication and gain administrative access by sending an arbitrary search_cookie cookie.
|
2008-07-13
|
Maian Search admin/index.php search_cookie Cookie Admin Authentication Bypass
|
|
47030
Description:
(Description Provided by CVE) : admin/index.php in Maian Guestbook 3.2 and earlier allows remote attackers to bypass authentication and gain administrative access by sending an arbitrary gbook_cookie cookie.
|
2008-07-13
|
Maian Guestbook admin/index.php gbook_cookie Cookie Admin Authentication Bypass
|
|
47031
Description:
(Description Provided by CVE) : admin/index.php in Maian Recipe 1.2 and earlier allows remote attackers to bypass authentication and gain administrative access by sending an arbitrary recipe_cookie cookie.
|
2008-07-13
|
Maian Recipe admin/index.php recipe_cookie Cookie Admin Authentication Bypass
|
|
47032
Description:
(Description Provided by CVE) : admin/index.php in Maian Links 3.1 and earlier allows remote attackers to bypass authentication and gain administrative access by sending an arbitrary links_cookie cookie.
|
2008-07-13
|
Maian Links admin/index.php links_cookie Cookie Admin Authentication Bypass
|
|
47033
Description:
(Description Provided by CVE) : admin/index.php in Maian Uploader 4.0 and earlier allows remote attackers to bypass authentication and gain administrative access by sending an arbitrary uploader_cookie cookie.
|
2008-07-13
|
Maian Uploader admin/index.php uploader_cookie Cookie Admin Authentication Bypass
|
|
47034
Description:
(Description Provided by CVE) : admin/index.php in Maian Weblog 4.0 and earlier allows remote attackers to bypass authentication and gain administrative access by sending an arbitrary weblog_cookie cookie.
|
2008-07-13
|
Maian Weblog admin/index.php weblog_cookie Cookie Admin Authentication Bypass
|
|
47066
Description:
(Description Provided by CVE) : Multiple SQL injection vulnerabilities in Scripteen Free Image Hosting Script 1.2.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter to admin/login.php, or the (3) uname or (4) pass parameter to login.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
|
2008-07-13
|
Scripteen Free Image Hosting Script login.php Multiple Parameter SQL Injection
|
|
47067
Description:
(Description Provided by CVE) : Scripteen Free Image Hosting Script 1.2 and 1.2.1 allows remote attackers to bypass authentication and gain administrative access by setting the cookid cookie value to 1.
|
2008-07-13
|
Scripteen Free Image Hosting Script cookid Cookie Authentication Bypass
|
|
47155
Description:
(Description Provided by CVE) : Simple DNS Plus 4.1, 5.0, and possibly other versions before 5.1.101 allows remote attackers to cause a denial of service via multiple DNS reply packets.
|
2008-07-13
|
Simple DNS Plus Reply Packet Saturation Remote DoS
|
|
47158
Description:
(Description Provided by CVE) : xine-lib before 1.1.15 allows remote attackers to cause a denial of service (crash) via a crafted OGG file, as demonstrated by playing lol-ffplay.ogg with xine.
|
2008-07-13
|
Xine / xine-lib Crafted OGG File Handling DoS
|
|
47159
Description:
UltraStats contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'players-detail.php' script not properly sanitizing user-supplied input to the 'id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2008-07-13
|
UltraStats players-detail.php id Parameter SQL Injection
|
|
47174
Description:
(Description Provided by CVE) : search_result.cfm in Jobbex JobSite allows remote attackers to obtain sensitive information via unspecified vectors that reveal the installation path in an error message.
|
2008-07-13
|
Jobbex JobSite search_result.cfm Unspecified Error Message Path Disclosure
|
|
47192
Description:
(Description Provided by CVE) : Multiple SQL injection vulnerabilities in usercp.php in mForum 0.1a, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) City, (2) Interest, (3) Email, (4) Icq, (5) msn, or (6) Yahoo Messenger field in an edit_profile action.
|
2008-07-13
|
mForum usercp.php Multiple Parameter SQL Injection
|
|
47275
Description:
(Description Provided by CVE) : Apple Safari allows web sites to set cookies for country-specific top-level domains, such as co.uk and com.au, which could allow remote attackers to perform a session fixation attack and hijack a user's HTTP session, aka "Cross-Site Cooking," a related issue to CVE-2004-0746, CVE-2004-0866, and CVE-2004-0867.
|
2008-07-12
|
Apple Safari Top Level Domain Cross-Domain Cookie Fixation
|
|
47011
Description:
Unknown / Incomplete
|
2008-07-12
|
Maian Events admin/index.php mevents_admin_cookie Cookie Administrator Authentication Bypass
|
|
47019
Description:
Maian Music contains a flaw that may allow a malicious user to gain access to unauthorized privileges. The issue is triggered due to improper access restriction in the admin/index.php script. This can be exploited to bypass the authentication mechanism and gain access to the administration section by setting the "mmusic_cookie" cookie. This flaw may lead to a loss of integrity.
|
2008-07-12
|
Maian Events admin/index.php mmusic_cookie Cookie Admin Authentication Bypass
|
|
47023
Description:
jSite contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'index.php' script not properly sanitizing user-supplied input to the 'page' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2008-07-12
|
jSite index.php page Parameter SQL Injection
|
|
47020
Description:
webCMS contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'secciones/tablon/tablon.php' script not properly sanitizing user-supplied input to the 'id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-12
|
webCMS Portal Edition secciones/tablon/tablon.php id Parameter SQL Injection
|
|
47024
Description:
(Description Provided by CVE) : Directory traversal vulnerability in index.php in jSite 1.0 OE allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the module parameter.
|
2008-07-12
|
jSite index.php module Parameter Traversal Local File Inclusion
|
|
47025
Description:
jSite contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'admin/login.php' script not properly sanitizing user-supplied input to the 'username' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-12
|
jSite admin/login.php username Parameter SQL Injection
|
|
47055
Description:
(Description Provided by CVE) : Stack-based buffer overflow in op before Changeset 563, when xauth support is enabled, allows local users to gain privileges via a long XAUTHORITY environment variable.
|
2008-07-12
|
Op main.c Go Function XAUTHORITY Variable Local Overflow
|
|
47154
Description:
Avlc Forum contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'vlc_forum.php' script not properly sanitizing user-supplied input to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-07-12
|
Avlc Forum vlc_forum.php id Parameter SQL Injection
|
|
47937
Description:
(Description Provided by CVE) : The ffmpeg lavf demuxer allows user-assisted attackers to cause a denial of service (application crash) via a crafted GIF file, possibly related to gstreamer, as demonstrated by lol-giftopnm.gif.
|
2008-07-12
|
FFmpeg lavf Demuxer Crafted GIF File Handling DoS
|
|
48816
Description:
(Description Provided by CVE) : Apple Safari sends Referer headers containing https URLs to different https web sites, which allows remote attackers to obtain potentially sensitive information by reading Referer log data.
|
2008-07-12
|
Apple Safari Referer Log Header Remote Information Disclosure
|
|
57442
Description:
(Description Provided by CVE) : Maian Greetings 2.1 allows remote attackers to bypass authentication and gain administrative privileges by setting the mecard_admin_cookie cookie to admin.
|
2008-07-12
|
Maian Greetings mecard_admin_cookie Cookie Manipulation Admin Authentication Bypass
|