Show filters
246 Total Results
Displaying 211-220 of 246
Sort by:
Attacker Value
Unknown
CVE-2009-5040
Disclosure Date: January 07, 2011 (last updated October 04, 2023)
CallManager Express (CME) on Cisco IOS before 15.0(1)XA allows remote authenticated users to cause a denial of service (device crash) by using an extension mobility (EM) phone to interact with the menu for SNR number changes, aka Bug ID CSCta63555.
0
Attacker Value
Unknown
CVE-2010-3156
Disclosure Date: October 25, 2010 (last updated October 04, 2023)
Untrusted search path vulnerability in K2 K2Editor before 1.5.9 allows local users to gain privileges via a Trojan horse executable file in the current working directory.
0
Attacker Value
Unknown
CVE-2009-2395
Disclosure Date: July 09, 2009 (last updated October 04, 2023)
SQL injection vulnerability in the K2 (com_k2) component 1.0.1 Beta and earlier for Joomla! allows remote attackers to execute arbitrary SQL commands via the category parameter in an itemlist action to index.php.
0
Attacker Value
Unknown
CVE-2008-4995
Disclosure Date: November 07, 2008 (last updated October 04, 2023)
redirect.pl in bk2site 1.1.9 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/redirect.log temporary file. NOTE: this vulnerability is only limited to debug mode, which is disabled by default.
0
Attacker Value
Unknown
CVE-2008-4609
Disclosure Date: October 20, 2008 (last updated October 04, 2023)
The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cause a denial of service (connection queue exhaustion) via multiple vectors that manipulate information in the TCP state table, as demonstrated by sockstress.
0
Attacker Value
Unknown
CVE-2008-2859
Disclosure Date: June 25, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the IMAP service in NetWin SurgeMail before 3.9g2 allows remote attackers to cause a denial of service (daemon crash) via unknown vectors related to an "imap command."
0
Attacker Value
Unknown
CVE-2008-1497
Disclosure Date: March 25, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in the IMAP service in NetWin SurgeMail 38k4-4 and earlier allows remote authenticated users to execute arbitrary code via long arguments to the LSUB command.
0
Attacker Value
Unknown
CVE-2007-5381
Disclosure Date: October 12, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in the Line Printer Daemon (LPD) in Cisco IOS before 12.2(18)SXF11, 12.4(16a), and 12.4(2)T6 allow remote attackers to execute arbitrary code by setting a long hostname on the target system, then causing an error message to be printed, as demonstrated by a telnet session to the LPD from a source port other than 515.
0
Attacker Value
Unknown
CVE-2007-2586
Disclosure Date: May 10, 2007 (last updated October 04, 2023)
The FTP Server in Cisco IOS 11.3 through 12.4 does not properly check user authorization, which allows remote attackers to execute arbitrary code, and have other impact including reading startup-config, as demonstrated by a crafted MKD command that involves access to a VTY device and overflows a buffer, aka bug ID CSCek55259.
0
Attacker Value
Unknown
CVE-2007-2307
Disclosure Date: April 26, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in engine/engine.inc.php in WebKalk2 1.9.0 allows remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter.
0