Show filters
120 Total Results
Displaying 111-120 of 120
Sort by:
Attacker Value
Unknown

CVE-2007-3189

Disclosure Date: June 12, 2007 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in auth.php in Just For Fun Network Management System (JFFNMS) 0.8.3 allows remote attackers to inject arbitrary web script or HTML via the user parameter.
0
Attacker Value
Unknown

CVE-2007-3191

Disclosure Date: June 12, 2007 (last updated October 04, 2023)
Just For Fun Network Management System (JFFNMS) 0.8.3 allows remote attackers to obtain configuration information via a direct request to admin/adm/test.php, which calls the phpinfo function.
0
Attacker Value
Unknown

CVE-2007-3204

Disclosure Date: June 12, 2007 (last updated October 04, 2023)
SQL injection vulnerability in auth.php in Just For Fun Network Management System (JFFNMS) 0.8.4-pre2 allows remote attackers to execute arbitrary SQL commands via the pass parameter. NOTE: this issue reportedly exists because of an initial incomplete fix for CVE-2007-3190. The provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown

CVE-2007-3192

Disclosure Date: June 12, 2007 (last updated October 04, 2023)
admin/setup.php in Just For Fun Network Management System (JFFNMS) 0.8.3 allows remote attackers to read and modify configuration settings via a direct request.
0
Attacker Value
Unknown

CVE-2007-3190

Disclosure Date: June 12, 2007 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in auth.php in Just For Fun Network Management System (JFFNMS) 0.8.3, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) user and (2) pass parameters.
0
Attacker Value
Unknown

CVE-2007-2864

Disclosure Date: June 06, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in the Anti-Virus engine before content update 30.6 in multiple CA (formerly Computer Associates) products allows remote attackers to execute arbitrary code via a large invalid value of the coffFiles field in a .CAB file.
0
Attacker Value
Unknown

CVE-2006-2068

Disclosure Date: April 27, 2006 (last updated October 04, 2023)
Unspecified vulnerability in Hitachi JP1 products allow remote attackers to cause a denial of service (application stop or fail) via unexpected requests or data.
0
Attacker Value
Unknown

CVE-2005-2668

Disclosure Date: August 23, 2005 (last updated February 22, 2025)
Multiple buffer overflows in Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allow remote attackers to execute arbitrary code via unknown vectors.
0
Attacker Value
Unknown

CVE-2005-2669

Disclosure Date: August 23, 2005 (last updated February 22, 2025)
Computer Associates (CA) Message Queuing (CAM / CAFT) 1.05, 1.07 before Build 220_13, and 1.11 before Build 29_13 allows remote attackers to execute arbitrary commands via spoofed CAFT packets.
0
Attacker Value
Unknown

CVE-2004-2436

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Computer Associates Unicenter Common Services 3.0 and earlier stores the database "SA" password in cleartext in the TndAddNspTmp.bat file, which could allow local users to gain privileges.
0