Show filters
14 Total Results
Displaying 11-14 of 14
Sort by:
Attacker Value
Unknown
CVE-2008-5628
Disclosure Date: December 17, 2008 (last updated October 04, 2023)
SQL injection vulnerability in index.php in CMS little 0.0.1 allows remote attackers to execute arbitrary SQL commands via the term parameter.
0
Attacker Value
Unknown
CVE-2008-5317
Disclosure Date: December 03, 2008 (last updated October 04, 2023)
Integer signedness error in the cmsAllocGamma function in src/cmsgamma.c in Little cms color engine (aka lcms) before 1.17 allows attackers to have an unknown impact via a file containing a certain "number of entries" value, which is interpreted improperly, leading to an allocation of insufficient memory.
0
Attacker Value
Unknown
CVE-2008-5316
Disclosure Date: December 03, 2008 (last updated October 04, 2023)
Buffer overflow in the ReadEmbeddedTextTag function in src/cmsio1.c in Little cms color engine (aka lcms) before 1.16 allows attackers to have an unknown impact via vectors related to a length parameter inconsistency involving the contents of "the input file," a different vulnerability than CVE-2007-2741.
0
Attacker Value
Unknown
CVE-2008-3036
Disclosure Date: July 07, 2008 (last updated October 04, 2023)
Directory traversal vulnerability in index.php in CMS little 0.0.1 allows remote attackers to include and execute arbitrary local files, and probably remote files, via a .. (dot dot) in the template parameter.
0