Show filters
735 Total Results
Displaying 631-640 of 735
Sort by:
Attacker Value
Unknown
CVE-2009-1669
Disclosure Date: May 18, 2009 (last updated October 04, 2023)
The smarty_function_math function in libs/plugins/function.math.php in Smarty 2.6.22 allows context-dependent attackers to execute arbitrary commands via shell metacharacters in the equation attribute of the math function. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2008-6621
Disclosure Date: April 06, 2009 (last updated October 04, 2023)
Unspecified vulnerability in GraphicsMagick before 1.2.3 allows remote attackers to cause a denial of service (crash) via unspecified vectors in DPX images. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2009-1057
Disclosure Date: March 24, 2009 (last updated October 04, 2023)
MicroSmarts Enterprise ZipItFast! 3.0 allows remote attackers to execute arbitrary code via a crafted .zip file that triggers memory corruption, related to a "format string buffer overflow." NOTE: CVE has not investigated whether the specified file.zip file can be used for exploitation of this product.
0
Attacker Value
Unknown
CVE-2009-0965
Disclosure Date: March 19, 2009 (last updated October 04, 2023)
SQL injection vulnerability in functions/browse.php in Ganesha Digital Library (GDL) 4.0 and 4.2 allows remote attackers to execute arbitrary SQL commands via the node parameter in a browse action to gdl.php.
0
Attacker Value
Unknown
CVE-2008-6303
Disclosure Date: February 26, 2009 (last updated October 04, 2023)
SQL injection vulnerability in tourview.php in ToursManager allows remote attackers to execute arbitrary SQL commands via the tourid parameter.
0
Attacker Value
Unknown
CVE-2008-6289
Disclosure Date: February 26, 2009 (last updated October 04, 2023)
SQL injection vulnerability in cityview.php in Tours Manager 1.0 allows remote attackers to execute arbitrary SQL commands via the cityid parameter.
0
Attacker Value
Unknown
CVE-2008-6071
Disclosure Date: February 10, 2009 (last updated October 04, 2023)
Heap-based buffer overflow in the DecodeImage function in coders/pict.c in GraphicsMagick before 1.1.14, and 1.2.x before 1.2.3, allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted PICT image. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2008-6072
Disclosure Date: February 10, 2009 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in GraphicsMagick before 1.1.14, and 1.2.x before 1.2.3, allow remote attackers to cause a denial of service (crash) via unspecified vectors in (1) XCF and (2) CINEON images.
0
Attacker Value
Unknown
CVE-2008-6070
Disclosure Date: February 10, 2009 (last updated October 04, 2023)
Multiple heap-based buffer underflows in the ReadPALMImage function in coders/palm.c in GraphicsMagick before 1.2.3 allow remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted PALM image, a different vulnerability than CVE-2007-0770. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2009-0405
Disclosure Date: February 03, 2009 (last updated October 04, 2023)
SQL injection vulnerability in articles.php in smartSite CMS 1.0 allows remote attackers to execute arbitrary SQL commands via the var parameter.
0