Show filters
664 Total Results
Displaying 421-430 of 664
Sort by:
Attacker Value
Unknown
CVE-2008-6010
Disclosure Date: January 30, 2009 (last updated October 04, 2023)
Multiple directory traversal vulnerabilities in SG Real Estate Portal 2.0 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) mod, (2) page, or (3) lang parameter to index.php; or the (4) action or (5) folder parameter in a security request to admin/index.php.
0
Attacker Value
Unknown
CVE-2008-5911
Disclosure Date: January 20, 2009 (last updated October 04, 2023)
Multiple buffer overflows in RealNetworks Helix Server and Helix Mobile Server 11.x before 11.1.8 and 12.x before 12.0.1 allow remote attackers to (1) cause a denial of service via three crafted RTSP SETUP commands, or execute arbitrary code via (2) an NTLM authentication request with malformed base64-encoded data, (3) an RTSP DESCRIBE command, or (4) a DataConvertBuffer request.
0
Attacker Value
Unknown
CVE-2008-4770
Disclosure Date: January 16, 2009 (last updated October 04, 2023)
The CMsgReader::readRect function in the VNC Viewer component in RealVNC VNC Free Edition 4.0 through 4.1.2, Enterprise Edition E4.0 through E4.4.2, and Personal Edition P4.0 through P4.4.2 allows remote VNC servers to execute arbitrary code via crafted RFB protocol data, related to "encoding type."
0
Attacker Value
Unknown
CVE-2008-5664
Disclosure Date: December 19, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in Realtek Media Player (aka Realtek Sound Manager, RtlRack, or rtlrack.exe) 1.15.0.0 allows remote attackers to execute arbitrary code via a crafted playlist (PLA) file.
0
Attacker Value
Unknown
CVE-2008-4570
Disclosure Date: October 15, 2008 (last updated October 04, 2023)
SQL injection vulnerability in index.php in Real Estate Classifieds allows remote attackers to execute arbitrary SQL commands via the cat parameter.
0
Attacker Value
Unknown
CVE-2008-4328
Disclosure Date: September 30, 2008 (last updated October 04, 2023)
SQL injection vulnerability in site_search.php in EasyRealtorPRO 2008 allows remote attackers to execute arbitrary SQL commands via the (1) item, (2) search_ordermethod, and (3) search_order parameters.
0
Attacker Value
Unknown
CVE-2008-4322
Disclosure Date: September 29, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in RealFlex Technologies Ltd. RealWin Server 2.0, as distributed by DATAC, allows remote attackers to execute arbitrary code via a crafted FC_INFOTAG/SET_CONTROL packet.
0
Attacker Value
Unknown
CVE-2008-4134
Disclosure Date: September 19, 2008 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in manager/static/view.php in phpRealty 0.03 and earlier, and possibly other versions before 0.05, allows remote attackers to execute arbitrary PHP code via a URL in the INC parameter.
0
Attacker Value
Unknown
CVE-2008-3861
Disclosure Date: August 29, 2008 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in phpMyRealty (PMR) 1.0.9 and earlier allow remote attackers to execute arbitrary SQL commands via (1) the id parameter in pages.php and (2) the price_max parameter in search.php.
0
Attacker Value
Unknown
CVE-2008-3766
Disclosure Date: August 22, 2008 (last updated October 04, 2023)
Realtime Internet Band Rehearsal Low-Latency (Internet) Connection tool (llcon) before 2.1.2 allows remote attackers to cause a denial of service (application crash) via malformed protocol messages.
0