Show filters
350 Total Results
Displaying 271-280 of 350
Sort by:
Attacker Value
Unknown

CVE-2008-0952

Disclosure Date: June 04, 2008 (last updated October 04, 2023)
The AppendStringToFile function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to create files with arbitrary content via a full pathname in the first argument and the content in the second argument, a different vulnerability than CVE-2007-5608 and CVE-2008-0953.
0
Attacker Value
Unknown

CVE-2007-5608

Disclosure Date: June 04, 2008 (last updated October 04, 2023)
The DownloadFile function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to force a download of an arbitrary file onto a client machine via a URL in the first argument and a destination filename in the second argument, a different vulnerability than CVE-2008-0952 and CVE-2008-0953.
0
Attacker Value
Unknown

CVE-2008-0953

Disclosure Date: June 04, 2008 (last updated October 04, 2023)
The StartApp function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to execute arbitrary programs via a .exe filename in the argument, a different vulnerability than CVE-2007-5608 and CVE-2008-0953.
0
Attacker Value
Unknown

CVE-2007-5610

Disclosure Date: June 04, 2008 (last updated October 04, 2023)
The DeleteSingleFile function in the HPISDataManagerLib.Datamgr ActiveX control in HPISDataManager.dll in HP Instant Support before 1.0.0.24 allows remote attackers to delete an arbitrary file via a full pathname in the argument.
0
Attacker Value
Unknown

CVE-2008-2449

Disclosure Date: May 27, 2008 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Isaac McGowan phpInstantGallery 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) gallery parameter to (a) index.php and (b) image.php, and the (2) imgnum parameter to image.php. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown

CVE-2008-0944

Disclosure Date: February 25, 2008 (last updated October 04, 2023)
Ipswitch Instant Messaging (IM) 2.0.8.1 and earlier allows remote attackers to cause a denial of service (NULL dereference and application crash) via a version field containing zero.
0
Attacker Value
Unknown

CVE-2008-0946

Disclosure Date: February 25, 2008 (last updated October 04, 2023)
Directory traversal vulnerability in the IM Server (aka IMserve or IMserver) in Ipswitch Instant Messaging (IM) 2.0.8.1 and earlier allows remote authenticated users to create arbitrary empty files via a .. (dot dot) in the recipient field.
0
Attacker Value
Unknown

CVE-2008-0945

Disclosure Date: February 25, 2008 (last updated October 04, 2023)
Format string vulnerability in the logging function in the IM Server (aka IMserve or IMserver) in Ipswitch Instant Messaging (IM) 2.0.8.1 and earlier allows remote authenticated users to cause a denial of service (daemon crash) and possibly have unspecified other impact via format string specifiers in an IP address field.
0
Attacker Value
Unknown

CVE-2007-6409

Disclosure Date: December 17, 2007 (last updated October 04, 2023)
The gg protocol handler in Gadu-Gadu, when this product is installed but not running, does not properly handle the skin attribute, which allows remote attackers to cause a denial of service (resource consumption) via unspecified network traffic.
0
Attacker Value
Unknown

CVE-2007-6411

Disclosure Date: December 17, 2007 (last updated October 04, 2023)
Multiple buffer overflows in the HandleEmotsConfig function in the GG Client in Gadu-Gadu 7.7 Build 3669 allow user-assisted remote attackers to execute arbitrary code or cause a denial of service (gg.exe process crash) via a long string in an emots.txt file.
0