Show filters
570 Total Results
Displaying 491-500 of 570
Sort by:
Attacker Value
Unknown
CVE-2009-0219
Disclosure Date: January 21, 2009 (last updated October 04, 2023)
The PDF distiller in the Attachment Service in Research in Motion (RIM) BlackBerry Enterprise Server (BES) 4.1.3 through 4.1.6, BlackBerry Professional Software 4.1.4, and BlackBerry Unite! before 1.0.3 bundle 28 performs delete operations on uninitialized pointers, which allows user-assisted remote attackers to execute arbitrary code via a crafted data stream in a .pdf file.
0
Attacker Value
Unknown
CVE-2009-0176
Disclosure Date: January 20, 2009 (last updated October 04, 2023)
Multiple heap-based buffer overflows in the PDF distiller in the Attachment Service in Research in Motion (RIM) BlackBerry Enterprise Server (BES) 4.1.3 through 4.1.6, BlackBerry Professional Software 4.1.4, and BlackBerry Unite! before 1.0.3 bundle 28 allow user-assisted remote attackers to execute arbitrary code via (1) a crafted stream in a .pdf file, related to "symWidths"; or (2) a crafted data stream in a .pdf file, related to "bitmaps."
0
Attacker Value
Unknown
CVE-2008-4543
Disclosure Date: October 13, 2008 (last updated October 04, 2023)
Cisco Unity 4.x before 4.2(1)ES161, 5.x before 5.0(1)ES53, and 7.x before 7.0(2)ES8, when using anonymous authentication (aka native Unity authentication), allows remote attackers to cause a denial of service (session exhaustion) via a large number of connections.
0
Attacker Value
Unknown
CVE-2008-4542
Disclosure Date: October 13, 2008 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Cisco Unity 4.x before 4.2(1)ES162, 5.x before 5.0(1)ES56, and 7.x before 7.0(2)ES8 allows remote authenticated administrators to inject arbitrary web script or HTML by entering it in the database (aka data store).
0
Attacker Value
Unknown
CVE-2008-4544
Disclosure Date: October 13, 2008 (last updated October 04, 2023)
Unspecified vulnerability in an unspecified Microsoft API, as used by Cisco Unity and possibly other products, allows remote attackers to cause a denial of service by sending crafted packets to dynamic UDP ports, related to a "processing error."
0
Attacker Value
Unknown
CVE-2008-4545
Disclosure Date: October 13, 2008 (last updated October 04, 2023)
Cisco Unity 4.x before 4.2(1)ES161, 5.x before 5.0(1)ES53, and 7.x before 7.0(2)ES8 uses weak permissions for the D:\CommServer\Reports directory, which allows remote authenticated users to obtain sensitive information by reading files in this directory.
0
Attacker Value
Unknown
CVE-2008-3814
Disclosure Date: October 08, 2008 (last updated October 04, 2023)
Unspecified vulnerability in Cisco Unity 4.x before 4.2(1)ES161, 5.x before 5.0(1)ES53, and 7.x before 7.0(2)ES8, when using anonymous authentication (aka native Unity authentication), allows remote attackers to bypass authentication and read or modify system configuration parameters by going to a specific link more than once.
0
Attacker Value
Unknown
CVE-2008-3246
Disclosure Date: July 21, 2008 (last updated October 04, 2023)
Unspecified vulnerability in the PDF distiller component in the BlackBerry Attachment Service in BlackBerry Unite! 1.0 SP1 (1.0.1) before bundle 36 and BlackBerry Enterprise Server 4.1 SP3 (4.1.3) through 4.1 SP5 (4.1.5) allows user-assisted remote attackers to execute arbitrary code via a crafted PDF file attachment.
0
Attacker Value
Unknown
CVE-2008-2093
Disclosure Date: May 06, 2008 (last updated October 04, 2023)
SQL injection vulnerability in the Profiler (com_comprofiler) component in Community Builder for Mambo and Joomla! allows remote attackers to execute arbitrary SQL commands via the user parameter in a userProfile action to index.php.
0
Attacker Value
Unknown
CVE-2008-1900
Disclosure Date: April 22, 2008 (last updated October 04, 2023)
option_Update.asp in Carbon Communities 2.4 and earlier allows remote attackers to edit arbitrary member information via a modified ID field.
0