Show filters
320 Total Results
Displaying 251-260 of 320
Sort by:
Attacker Value
Unknown

CVE-2009-2893

Disclosure Date: August 20, 2009 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in index.php in XZero Community Classifieds 4.97.8 allow remote attackers to inject arbitrary web script or HTML via (1) the postevent parameter in a post action or (2) the _xzcal_y parameter.
0
Attacker Value
Unknown

CVE-2009-1652

Disclosure Date: May 16, 2009 (last updated October 04, 2023)
admin/adminaddeditdetails.php in Business Community Script does not properly restrict access, which allows remote attackers to gain privileges and add administrators via a direct request.
0
Attacker Value
Unknown

CVE-2009-1651

Disclosure Date: May 16, 2009 (last updated October 04, 2023)
SQL injection vulnerability in admin/member_details.php in 2daybiz Business Community Script allows remote attackers to execute arbitrary SQL commands via the mid parameter.
0
Attacker Value
Unknown

CVE-2009-0406

Disclosure Date: February 03, 2009 (last updated October 04, 2023)
SQL injection vulnerability in index.php in Community CMS 0.4 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.
0
Attacker Value
Unknown

CVE-2008-4543

Disclosure Date: October 13, 2008 (last updated October 04, 2023)
Cisco Unity 4.x before 4.2(1)ES161, 5.x before 5.0(1)ES53, and 7.x before 7.0(2)ES8, when using anonymous authentication (aka native Unity authentication), allows remote attackers to cause a denial of service (session exhaustion) via a large number of connections.
0
Attacker Value
Unknown

CVE-2008-4542

Disclosure Date: October 13, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Cisco Unity 4.x before 4.2(1)ES162, 5.x before 5.0(1)ES56, and 7.x before 7.0(2)ES8 allows remote authenticated administrators to inject arbitrary web script or HTML by entering it in the database (aka data store).
0
Attacker Value
Unknown

CVE-2008-4544

Disclosure Date: October 13, 2008 (last updated October 04, 2023)
Unspecified vulnerability in an unspecified Microsoft API, as used by Cisco Unity and possibly other products, allows remote attackers to cause a denial of service by sending crafted packets to dynamic UDP ports, related to a "processing error."
0
Attacker Value
Unknown

CVE-2008-4545

Disclosure Date: October 13, 2008 (last updated October 04, 2023)
Cisco Unity 4.x before 4.2(1)ES161, 5.x before 5.0(1)ES53, and 7.x before 7.0(2)ES8 uses weak permissions for the D:\CommServer\Reports directory, which allows remote authenticated users to obtain sensitive information by reading files in this directory.
0
Attacker Value
Unknown

CVE-2008-3814

Disclosure Date: October 08, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Cisco Unity 4.x before 4.2(1)ES161, 5.x before 5.0(1)ES53, and 7.x before 7.0(2)ES8, when using anonymous authentication (aka native Unity authentication), allows remote attackers to bypass authentication and read or modify system configuration parameters by going to a specific link more than once.
0
Attacker Value
Unknown

CVE-2008-2093

Disclosure Date: May 06, 2008 (last updated October 04, 2023)
SQL injection vulnerability in the Profiler (com_comprofiler) component in Community Builder for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the user parameter in a userProfile action to index.php.
0