Show filters
234 Total Results
Displaying 201-210 of 234
Sort by:
Attacker Value
Unknown

CVE-2008-4387

Disclosure Date: November 10, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the Simba MDrmSap ActiveX control in mdrmsap.dll in SAP SAPgui allows remote attackers to execute arbitrary code via unknown vectors involving instantiation by Internet Explorer.
0
Attacker Value
Unknown

CVE-2008-4965

Disclosure Date: November 06, 2008 (last updated October 04, 2023)
liguidsoap.py in liguidsoap 0.3.8.1+2 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/liguidsoap.liq, (2) /tmp/lig.#####.log, and (3) /tmp/emission.ogg temporary files.
0
Attacker Value
Unknown

CVE-2008-4798

Disclosure Date: October 30, 2008 (last updated October 04, 2023)
The loadModule function in lib/WebGUI/Asset.pm in WebGUI before 7.5.30 (stable) allows remote attackers to execute arbitrary code by uploading a Perl module and accessing it via a crafted URL.
0
Attacker Value
Unknown

CVE-2008-4572

Disclosure Date: October 15, 2008 (last updated October 04, 2023)
GuildFTPd 0.999.14, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long arguments to the CWD and LIST commands, which triggers heap corruption related to an improper free call, and possibly triggering a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2008-3503

Disclosure Date: August 06, 2008 (last updated October 04, 2023)
RSSFromParent in Plain Black WebGUI before 7.5.13 does not restrict view access to Collaboration System (CS) RSS feeds, which allows remote attackers to obtain sensitive information (CS data).
0
Attacker Value
Unknown

CVE-2008-2964

Disclosure Date: July 02, 2008 (last updated October 04, 2023)
SQL injection vulnerability in guide.php in ResearchGuide 0.5 allows remote attackers to execute arbitrary SQL commands via the id parameter.
0
Attacker Value
Unknown

CVE-2008-2077

Disclosure Date: May 05, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Plain Black WebGUI 7.4.34 has unknown impact and attack vectors related to "data form list view."
0
Attacker Value
Unknown

CVE-2008-0940

Disclosure Date: February 25, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Plain Black WebGUI before 7.4.24 allows remote attackers to inject arbitrary web script or HTML when creating a username, a different vulnerability than CVE-2007-0407.
0
Attacker Value
Unknown

CVE-2008-0621

Disclosure Date: February 06, 2008 (last updated October 04, 2023)
Buffer overflow in SAPLPD 6.28 and earlier included in SAP GUI 7.10 and SAPSprint before 1018 allows remote attackers to execute arbitrary code via long arguments to the (1) 0x01, (2) 0x02, (3) 0x03, (4) 0x04, and (5) 0x05 LPD commands.
0
Attacker Value
Unknown

CVE-2008-0620

Disclosure Date: February 06, 2008 (last updated October 04, 2023)
SAPLPD 6.28 and earlier included in SAP GUI 7.10 and SAPSprint before 1018 allows remote attackers to cause a denial of service (crash) via a 0x53 LPD command, which causes the server to terminate.
0