Show filters
234 Total Results
Displaying 201-210 of 234
Sort by:
Attacker Value
Unknown
CVE-2008-4387
Disclosure Date: November 10, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the Simba MDrmSap ActiveX control in mdrmsap.dll in SAP SAPgui allows remote attackers to execute arbitrary code via unknown vectors involving instantiation by Internet Explorer.
0
Attacker Value
Unknown
CVE-2008-4965
Disclosure Date: November 06, 2008 (last updated October 04, 2023)
liguidsoap.py in liguidsoap 0.3.8.1+2 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/liguidsoap.liq, (2) /tmp/lig.#####.log, and (3) /tmp/emission.ogg temporary files.
0
Attacker Value
Unknown
CVE-2008-4798
Disclosure Date: October 30, 2008 (last updated October 04, 2023)
The loadModule function in lib/WebGUI/Asset.pm in WebGUI before 7.5.30 (stable) allows remote attackers to execute arbitrary code by uploading a Perl module and accessing it via a crafted URL.
0
Attacker Value
Unknown
CVE-2008-4572
Disclosure Date: October 15, 2008 (last updated October 04, 2023)
GuildFTPd 0.999.14, and possibly other versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via long arguments to the CWD and LIST commands, which triggers heap corruption related to an improper free call, and possibly triggering a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2008-3503
Disclosure Date: August 06, 2008 (last updated October 04, 2023)
RSSFromParent in Plain Black WebGUI before 7.5.13 does not restrict view access to Collaboration System (CS) RSS feeds, which allows remote attackers to obtain sensitive information (CS data).
0
Attacker Value
Unknown
CVE-2008-2964
Disclosure Date: July 02, 2008 (last updated October 04, 2023)
SQL injection vulnerability in guide.php in ResearchGuide 0.5 allows remote attackers to execute arbitrary SQL commands via the id parameter.
0
Attacker Value
Unknown
CVE-2008-2077
Disclosure Date: May 05, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Plain Black WebGUI 7.4.34 has unknown impact and attack vectors related to "data form list view."
0
Attacker Value
Unknown
CVE-2008-0940
Disclosure Date: February 25, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Plain Black WebGUI before 7.4.24 allows remote attackers to inject arbitrary web script or HTML when creating a username, a different vulnerability than CVE-2007-0407.
0
Attacker Value
Unknown
CVE-2008-0621
Disclosure Date: February 06, 2008 (last updated October 04, 2023)
Buffer overflow in SAPLPD 6.28 and earlier included in SAP GUI 7.10 and SAPSprint before 1018 allows remote attackers to execute arbitrary code via long arguments to the (1) 0x01, (2) 0x02, (3) 0x03, (4) 0x04, and (5) 0x05 LPD commands.
0
Attacker Value
Unknown
CVE-2008-0620
Disclosure Date: February 06, 2008 (last updated October 04, 2023)
SAPLPD 6.28 and earlier included in SAP GUI 7.10 and SAPSprint before 1018 allows remote attackers to cause a denial of service (crash) via a 0x53 LPD command, which causes the server to terminate.
0