Show filters
95 Total Results
Displaying 81-90 of 95
Sort by:
Attacker Value
Unknown

CVE-2010-1693

Disclosure Date: October 26, 2010 (last updated October 04, 2023)
openibd in OpenFabrics Enterprise Distribution (OFED) 1.5.2 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/ib_set_node_desc.sh temporary file.
0
Attacker Value
Unknown

CVE-2010-1221

Disclosure Date: April 07, 2010 (last updated October 04, 2023)
CA XOsoft r12.0 and r12.5 does not properly perform authentication, which allows remote attackers to enumerate usernames via a SOAP request.
0
Attacker Value
Unknown

CVE-2010-1223

Disclosure Date: April 07, 2010 (last updated October 04, 2023)
Multiple buffer overflows in CA XOsoft r12.0 and r12.5 allow remote attackers to execute arbitrary code via (1) a malformed request to the ws_man/xosoapapi.asmx SOAP endpoint or (2) a long string to the entry_point.aspx service.
0
Attacker Value
Unknown

CVE-2010-1222

Disclosure Date: April 07, 2010 (last updated October 04, 2023)
CA XOsoft r12.5 does not properly perform authentication, which allows remote attackers to obtain potentially sensitive information via a SOAP request.
0
Attacker Value
Unknown

CVE-2008-1542

Disclosure Date: March 28, 2008 (last updated October 04, 2023)
Airspan Base Station Distribution Unit (BSDU) has "topsecret" as its password for the root account, which allows remote attackers to obtain administrative access via a telnet login, a different vulnerability than CVE-2008-1262.
0
Attacker Value
Unknown

CVE-2007-2271

Disclosure Date: April 25, 2007 (last updated October 04, 2023)
Directory traversal vulnerability in Rajneel Lal TotaRam USP FOSS Distribution 1.01 allows remote attackers to read arbitrary files via a .. (dot dot) in the dnld parameter.
0
Attacker Value
Unknown

CVE-2007-2079

Disclosure Date: April 18, 2007 (last updated October 04, 2023)
The ADONewConnection Connect function in adodb.php in XAMPP 1.6.0a and earlier for Windows uses untrusted input for the database server hostname, which allows remote attackers to trigger a library buffer overflow and execute arbitrary code via a long host parameter, or have other unspecified impact. NOTE: it could be argued that this is an issue in mssql_connect (CVE-2007-1411.1) in PHP, or an issue in the ADOdb Library, and the proper fix should be in one of these products; if so, then this should not be treated as a vulnerability in XAMPP.
0
Attacker Value
Unknown

CVE-2007-2080

Disclosure Date: April 18, 2007 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in XAMPP 1.6.0a for Windows allow remote attackers to execute arbitrary SQL commands via unspecified vectors in certain test scripts.
0
Attacker Value
Unknown

CVE-2005-2043

Disclosure Date: June 17, 2005 (last updated February 22, 2025)
Directory traversal vulnerability in XAMPP before 1.4.14 allows remote attackers to inject arbitrary HTML and PHP code via lang.php.
0
Attacker Value
Unknown

CVE-2005-1077

Disclosure Date: April 12, 2005 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in XAMPP 1.4.x allow remote attackers to inject arbitrary web script or HTML via (1) cds.php, (2) Guestbook-EN.pl, or (3) phonebook.php.
0