Show filters
194 Total Results
Displaying 101-110 of 194
Sort by:
Attacker Value
Unknown
CVE-2009-3172
Disclosure Date: September 11, 2009 (last updated October 04, 2023)
Unspecified vulnerability in Hitachi Groupmax Groupware Server 07-00 through 07-50-/A, Groupmax Server Set 03-00 through 06-52, Groupware Server Set 03-00 through 06-52, and Scheduler Server Set 03-00 through 06-52 has unknown impact and attack vectors related to invalid access rights.
0
Attacker Value
Unknown
CVE-2003-1574
Disclosure Date: August 24, 2009 (last updated October 04, 2023)
TikiWiki 1.6.1 allows remote attackers to bypass authentication by entering a valid username with an arbitrary password, possibly related to the Internet Explorer "Remember Me" feature. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2009-2355
Disclosure Date: July 07, 2009 (last updated October 04, 2023)
The forum module in NullLogic Groupware 1.2.7 allows remote authenticated users to cause a denial of service (application crash) by specifying (1) an empty string or (2) a non-numeric string when selecting a forum, related to the fmessagelist function.
0
Attacker Value
Unknown
CVE-2009-2356
Disclosure Date: July 07, 2009 (last updated October 04, 2023)
Multiple stack-based buffer overflows in the pgsqlQuery function in NullLogic Groupware 1.2.7, when PostgreSQL is used, might allow remote attackers to execute arbitrary code via input to the (1) POP3, (2) SMTP, or (3) web component that triggers a long SQL query.
0
Attacker Value
Unknown
CVE-2009-2354
Disclosure Date: July 07, 2009 (last updated October 04, 2023)
SQL injection vulnerability in the auth_checkpass function in the login page in NullLogic Groupware 1.2.7 allows remote attackers to execute arbitrary SQL commands via the username parameter.
0
Attacker Value
Unknown
CVE-2009-1204
Disclosure Date: April 01, 2009 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in TikiWiki (Tiki) CMS/Groupware 2.2 allows remote attackers to inject arbitrary web script or HTML via the PHP_SELF portion of a URI to (1) tiki-galleries.php, (2) tiki-list_file_gallery.php, (3) tiki-listpages.php, and (4) tiki-orphan_pages.php.
0
Attacker Value
Unknown
CVE-2009-0932
Disclosure Date: March 17, 2009 (last updated October 04, 2023)
Directory traversal vulnerability in framework/Image/Image.php in Horde before 3.2.4 and 3.3.3 and Horde Groupware before 1.1.5 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the Horde_Image driver name.
0
Attacker Value
Unknown
CVE-2009-0931
Disclosure Date: March 17, 2009 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in the tag cloud search script (horde/services/portal/cloud_search.php) in Horde before 3.2.4 and 3.3.3, and Horde Groupware before 1.1.5, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2008-5409
Disclosure Date: December 10, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the pdf.xmd module in (1) BitDefender Free Edition 10 and Antivirus Standard 10, (2) BullGuard Internet Security 8.5, and (3) Software602 Groupware Server 6.0.08.1118 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PDF file, possibly related to included compressed streams that were processed with the ASCIIHexDecode filter. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2008-5318
Disclosure Date: December 03, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Tikiwiki before 2.2 has unknown impact and attack vectors related to "size of user-provided input," a different issue than CVE-2008-3653.
0