Show filters
97 Total Results
Displaying 81-90 of 97
Sort by:
Attacker Value
Unknown

CVE-2009-2582

Disclosure Date: July 23, 2009 (last updated October 04, 2023)
Stack-based buffer overflow in manager.exe in Akamai Download Manager (aka DLM or dlmanager) before 2.2.4.8 allows remote web servers to execute arbitrary code via a malformed HTTP response during a Redswoosh download, a different vulnerability than CVE-2007-1891 and CVE-2007-1892.
0
Attacker Value
Unknown

CVE-2009-2564

Disclosure Date: July 21, 2009 (last updated October 04, 2023)
NOS Microsystems getPlus Download Manager, as used in Adobe Reader 1.6.2.36 and possibly other versions, Corel getPlus Download Manager before 1.5.0.48, and possibly other products, installs NOS\bin\getPlus_HelperSvc.exe with insecure permissions (Everyone:Full Control), which allows local users to gain SYSTEM privileges by replacing getPlus_HelperSvc.exe with a Trojan horse program, as demonstrated by use of getPlus Download Manager within Adobe Reader. NOTE: within Adobe Reader, the scope of this issue is limited because the program is deleted and the associated service is not automatically launched after a successful installation and reboot.
0
Attacker Value
Unknown

CVE-2009-0184

Disclosure Date: February 03, 2009 (last updated October 04, 2023)
Multiple buffer overflows in the torrent parsing implementation in Free Download Manager (FDM) 2.5 Build 758 and 3.0 Build 844 allow remote attackers to execute arbitrary code via (1) a long file name within a torrent file, (2) a long tracker URL in a torrent file, or (3) a long comment in a torrent file.
0
Attacker Value
Unknown

CVE-2009-0183

Disclosure Date: February 03, 2009 (last updated October 04, 2023)
Stack-based buffer overflow in Remote Control Server in Free Download Manager (FDM) 2.5 Build 758 and 3.0 Build 844 allows remote attackers to execute arbitrary code via a long Authorization header in an HTTP request.
0
Attacker Value
Unknown

CVE-2008-5364

Disclosure Date: December 08, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in the getPlus ActiveX control in gp.ocx 1.2.2.50 in NOS Microsystems getPlus Download Manager, as used for the Adobe Reader 8.1 installation process and other downloads, allows remote attackers to execute arbitrary code via unspecified vectors, a different issue than CVE-2008-4817.
0
Attacker Value
Unknown

CVE-2008-4508

Disclosure Date: October 09, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in the file parsing function in Tonec Internet Download Manager, possibly 5.14 and earlier, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted AppleDouble file containing a long string. NOTE: this is probably a different vulnerability than CVE-2005-2210.
0
Attacker Value
Unknown

CVE-2008-1770

Disclosure Date: June 04, 2008 (last updated October 04, 2023)
CRLF injection vulnerability in Akamai Download Manager ActiveX control before 2.2.3.6 allows remote attackers to force the download and execution of arbitrary files via a URL parameter containing an encoded LF followed by a malicious target line.
0
Attacker Value
Unknown

CVE-2007-6339

Disclosure Date: May 01, 2008 (last updated October 04, 2023)
The Akamai Download Manager (aka DLM or dlmanager) ActiveX control (DownloadManagerV2.ocx) before 2.2.3.5 allows remote attackers to force the download and execution of arbitrary code via unspecified "undocumented object parameters."
0
Attacker Value
Unknown

CVE-2008-1042

Disclosure Date: February 27, 2008 (last updated October 04, 2023)
Directory traversal vulnerability in include/body.inc.php in Linux Web Shop (LWS) php Download Manager 1.0 and 1.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the content parameter.
0
Attacker Value
Unknown

CVE-2007-5217

Disclosure Date: October 05, 2007 (last updated October 04, 2023)
Stack-based buffer overflow in the ADM4 ActiveX control in adm4.dll in Altnet Download Manager 4.0.0.6, as used in (1) Kazaa 3.2.7 and (2) Grokster, allows remote attackers to execute arbitrary code via a long argument to the Install method. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0