Browse Database

Browsing Vulnerabilities Disclosed in January of 2009

<< Back to Browse
OSVDB IDDisclosure DateTitle
52459 2009-01-29 ImageField Module for Drupal Image File Upload Arbitrary PHP Code Execution
51714 2009-01-29 D-Link DVG-2001S Forms/page_CfgDevInfo_Set URL XSS
51715 2009-01-29 D-Link DVG-2001S Firmware Manipulation CSRF
51736 2009-01-29 sudo parse.c System Group Interpretation Local Privilege Escalation
51790 2009-01-29 Car Portal Login Feature Multiple Parameter SQL Injection
51791 2009-01-29 Pre Lecture Exercises CMS login.php school Parameter SQL Injection
51792 2009-01-29 Motorola Wimax CPEi300 sysconf.cgi page Parameter XSS
51793 2009-01-29 Motorola Wimax CPEi300 sysconf.cgi page Parameter Traversal Arbitrary File Access
51824 2009-01-29 SkaLinks admin/ URI Admin Name Field SQL Injection
51909 2009-01-29 GStreamer Plug-ins gst/qtdemux/qtdemux.c gst_qtp_trak_handler Function Array Index Handling Unspecified Issue
52460 2009-01-29 ImageField Module for Drupal index.php description Parameter XSS
52850 2009-01-29 trickle trickle-overload.so LD_PRELOAD Search Path Subversion Local Arbitrary Code Execution
53979 2009-01-29 IBM WebSphere Application Server (WAS) WebContainer Component Unspecified CRLF Injection
53990 2009-01-29 IBM WebSphere Application Server (WAS) ibm_security_logout Servlet logoutExitPage Feature Arbitrary Site Redirect
56432 2009-01-29 Microsoft IE onclick Action Mouse Click Subversion (Clickjacking)
55720 2009-01-28 Amaya Web Browser Xml2thot.c Multiple Function Overflow
55721 2009-01-28 Amaya Web Browser html2toth.c Multiple Function Overflow
51644 2009-01-28 SocialEngine blog.php category_id Parameter SQL Injection
52555 2009-01-28 Solaris IP-in-IP Processing Crafted self-encapsulated Packet Local DoS
51648 2009-01-28 GameScript games.php search Parameter XSS
51649 2009-01-28 GameScript page.php user Parameter SQL Injection
51654 2009-01-28 GameScript page.php page Parameter Traversal Local File Inclusion
51645 2009-01-28 Max.Blog offline_auth.php username Parameter SQL Injection
52577 2009-01-28 Sun Fire X2100 / X2200 Embedded Lights Out Manager (ELOM) Unspecified Remote Privilege Escalation (6648082)
52845 2009-01-28 ExpressionEngine system/index.php avatar Parameter XSS
51605 2009-01-28 osCommerce Admin Account Creation CSRF
51643 2009-01-28 FFmpeg libavformat/4xm.c fourxm_read_header Function 4xm File Handling Memory Corruption
51680 2009-01-28 HP Select Access Unspecified XSS
51687 2009-01-28 PSCS VPOP3 Email Server Email Message XSS
51785 2009-01-28 Community CMS index.php id Parameter SQL Injection
51786 2009-01-28 smartSite CMS articles.php var Parameter SQL Injection
51787 2009-01-28 Chipmunk Blogger Script admin/authenticate.php Multiple Parameter SQL Injection
51789 2009-01-28 Chipmunk Blogger Script admin/reguser.php Direct Request Admin Privilege Escalation
52498 2009-01-28 xine-lib demuxers/demux_4xm.c current_track Value Handling Overflow
52935 2009-01-28 Amaya Web Browser CheckUniqueName Function Duplicated Attribute Value Inputs Overflows
77350 2009-01-28 Arch Linux Shaman Root Authentication Bypass Local Privilege Escalation
52671 2009-01-27 Microsoft IE shell32 Module Unspecified Form Data Handling Overflow
52490 2009-01-27 Apple Safari for Windows http URI Handler Malformed Domain Name DoS
52028 2009-01-27 Max.Blog submit_post.php draft Parameter SQL Injection
52029 2009-01-27 Max.Blog show_post.php id Parameter SQL Injection

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2002 - 2013 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use