Show filters
524 Total Results
Displaying 481-490 of 524
Sort by:
Attacker Value
Unknown
CVE-2008-6293
Disclosure Date: February 26, 2009 (last updated October 04, 2023)
admin/Index.php in Acc Real Estate 4.0 allows remote attackers to bypass authentication and gain administrative access by setting the username_cookie to "admin."
0
Attacker Value
Unknown
CVE-2008-6294
Disclosure Date: February 26, 2009 (last updated October 04, 2023)
admin/Index.php in Acc Statistics 1.1 allows remote attackers to bypass authentication and gain administrative access by setting the username_cookie cookie to "admin."
0
Attacker Value
Unknown
CVE-2008-6291
Disclosure Date: February 26, 2009 (last updated October 04, 2023)
Acc PHP eMail 1.1 allows remote attackers to bypass authentication and gain administrative access by setting the NEWSLETTERLOGIN cookie to "admin".
0
Attacker Value
Unknown
CVE-2008-6292
Disclosure Date: February 26, 2009 (last updated October 04, 2023)
Acc Autos 4.0 allows remote attackers to bypass authentication and gain administrative access by setting the (1) username_cookie to "admin," (2) right_cookie to "1," and (3) id_cookie to "1."
0
Attacker Value
Unknown
CVE-2009-0515
Disclosure Date: February 11, 2009 (last updated October 04, 2023)
Directory traversal vulnerability in check_lang.php in Yet Another NOCC (YANOCC) 0.1.0 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang parameter.
0
Attacker Value
Unknown
CVE-2008-4609
Disclosure Date: October 20, 2008 (last updated October 04, 2023)
The TCP implementation in (1) Linux, (2) platforms based on BSD Unix, (3) Microsoft Windows, (4) Cisco products, and probably other operating systems allows remote attackers to cause a denial of service (connection queue exhaustion) via multiple vectors that manipulate information in the TCP state table, as demonstrated by sockstress.
0
Attacker Value
Unknown
CVE-2008-3196
Disclosure Date: July 16, 2008 (last updated October 04, 2023)
skeleton.c in yacc does not properly handle reduction of a rule with an empty right hand side, which allows context-dependent attackers to cause an out-of-bounds stack access when the yacc stack pointer points to the end of the stack.
0
Attacker Value
Unknown
CVE-2008-1685
Disclosure Date: April 06, 2008 (last updated November 08, 2023)
gcc 4.2.0 through 4.3.0 in GNU Compiler Collection, when casts are not used, considers the sum of a pointer and an int to be greater than or equal to the pointer, which might lead to removal of length testing code that was intended as a protection mechanism against integer overflow and buffer overflow attacks, and provide no diagnostic message about this removal. NOTE: the vendor has determined that this compiler behavior is correct according to section 6.5.6 of the C99 standard (aka ISO/IEC 9899:1999)
0
Attacker Value
Unknown
CVE-2008-1367
Disclosure Date: March 17, 2008 (last updated October 04, 2023)
gcc 4.3.x does not generate a cld instruction while compiling functions used for string manipulation such as memcpy and memmove on x86 and i386, which can prevent the direction flag (DF) from being reset in violation of ABI conventions and cause data to be copied in the wrong direction during signal handling in the Linux kernel, which might allow context-dependent attackers to trigger memory corruption. NOTE: this issue was originally reported for CPU consumption in SBCL.
0
Attacker Value
Unknown
CVE-2007-5481
Disclosure Date: October 16, 2007 (last updated October 04, 2023)
Distributed Checksum Clearinghouse (DCC) 1.3.65 allows remote attackers to cause a denial of service (crash) via a "SOCKS flood."
0