Show filters
664 Total Results
Displaying 441-450 of 664
Sort by:
Attacker Value
Unknown
CVE-2008-2443
Disclosure Date: May 27, 2008 (last updated October 04, 2023)
SQL injection vulnerability in dpage.php in The Real Estate Script allows remote attackers to execute arbitrary SQL commands via the docID parameter.
0
Attacker Value
Unknown
CVE-2008-1931
Disclosure Date: April 25, 2008 (last updated October 04, 2023)
Realtek HD Audio Codec Drivers RTKVHDA.sys and RTKVHDA64.sys before 6.0.1.5605 on Windows Vista allow local users to create, write, and read registry keys via a crafted IOCTL request.
0
Attacker Value
Unknown
CVE-2008-1932
Disclosure Date: April 25, 2008 (last updated October 04, 2023)
Integer overflow in Realtek HD Audio Codec Drivers RTKVHDA.sys and RTKVHDA64.sys before 6.0.1.5605 on Windows Vista allows local users to execute arbitrary code via a crafted IOCTL request.
0
Attacker Value
Unknown
CVE-2008-1728
Disclosure Date: April 11, 2008 (last updated October 04, 2023)
ConnectionManagerImpl.java in Ignite Realtime Openfire 3.4.5 allows remote authenticated users to cause a denial of service (daemon outage) by triggering large outgoing queues without reading messages.
0
Attacker Value
Unknown
CVE-2008-1309
Disclosure Date: March 12, 2008 (last updated October 04, 2023)
The RealAudioObjects.RealAudio ActiveX control in rmoc3260.dll in RealNetworks RealPlayer Enterprise, RealPlayer 10, RealPlayer 10.5 before build 6.0.12.1675, and RealPlayer 11 before 11.0.3 build 6.0.14.806 does not properly manage memory for the (1) Console or (2) Controls property, which allows remote attackers to execute arbitrary code or cause a denial of service (browser crash) via a series of assignments of long string values, which triggers an overwrite of freed heap memory.
0
Attacker Value
Unknown
CVE-2008-0805
Disclosure Date: February 19, 2008 (last updated October 04, 2023)
Unrestricted file upload vulnerability in image.php in PHPizabi 0.848b C1 HFP1 allows remote attackers to execute arbitrary code by uploading a file with an executable extension from the event page, then accessing it via a direct request to the file in system/cache/pictures.
0
Attacker Value
Unknown
CVE-2008-0098
Disclosure Date: January 08, 2008 (last updated October 04, 2023)
Buffer overflow in RealPlayer 11 build 6.0.14.748 allows remote attackers to execute arbitrary code via unspecified vectors. NOTE: As of 20080103, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.
0
Attacker Value
Unknown
CVE-2007-6472
Disclosure Date: December 20, 2007 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in phpMyRealty (PMR) 1.0.9 allow (1) remote attackers to execute arbitrary SQL commands via the type parameter to search.php and (2) remote authenticated administrators to execute arbitrary SQL commands via the listing_updated_days parameter to admin/findlistings.php. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2007-6463
Disclosure Date: December 20, 2007 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in the admin panel in PHP Real Estate Classifieds allow remote attackers to inject arbitrary web script or HTML via unspecified "text areas/boxes."
0
Attacker Value
Unknown
CVE-2007-6462
Disclosure Date: December 20, 2007 (last updated October 04, 2023)
SQL injection vulnerability in fullnews.php in PHP Real Estate Classifieds allows remote attackers to execute arbitrary SQL commands via the id parameter.
0