Show filters
461 Total Results
Displaying 341-350 of 461
Sort by:
Attacker Value
Unknown

CVE-2008-6141

Disclosure Date: February 14, 2009 (last updated October 04, 2023)
Unspecified vulnerability in Avaya IP Softphone 6.0 SP4 and 6.01.85 allows remote attackers to cause a denial of service (crash) via a large amount of H.323 data.
0
Attacker Value
Unknown

CVE-2008-6037

Disclosure Date: February 03, 2009 (last updated October 04, 2023)
SQL injection vulnerability in view.php in AvailScript Article Script allows remote attackers to execute arbitrary SQL commands via the v parameter.
0
Attacker Value
Unknown

CVE-2008-5932

Disclosure Date: January 21, 2009 (last updated October 04, 2023)
CodeAvalanche FreeForum stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the password via a direct request for _private/CAForum.mdb. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2008-5896

Disclosure Date: January 12, 2009 (last updated October 04, 2023)
CodeAvalanche RateMySite stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CARateMySite.mdb. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2008-5898

Disclosure Date: January 12, 2009 (last updated October 04, 2023)
CodeAvalanche Directory stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CADirectory.mdb. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2008-5899

Disclosure Date: January 12, 2009 (last updated October 04, 2023)
CodeAvalanche FreeForAll stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CAFFAPage.mdb. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2008-5900

Disclosure Date: January 12, 2009 (last updated October 04, 2023)
CodeAvalanche Articles stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CAArticles.mdb. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2008-5897

Disclosure Date: January 12, 2009 (last updated October 04, 2023)
CodeAvalanche FreeWallpaper stores sensitive information under the web root with insufficient access control, which allows remote attackers to download the database file containing the administrator password via a direct request for _private/CAFreeWallpaper.mdb. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2008-5882

Disclosure Date: January 09, 2009 (last updated October 04, 2023)
SQL injection vulnerability in login.asp in Citrix Application Gateway - Broadcast Server (BCS) before 6.1, as used by Avaya AG250 - Broadcast Server before 2.0 and possibly other products, allows remote attackers to execute arbitrary SQL commands via the txtUID parameter.
0
Attacker Value
Unknown

CVE-2008-5710

Disclosure Date: December 24, 2008 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in the web management interface in Avaya Communication Manager (CM) 3.1.x, 4.0.3, and 5.x allow remote attackers to read (1) configuration files, (2) log files, (3) binary image files, and (4) help files via unknown vectors.
0