Show filters
836 Total Results
Displaying 801-810 of 836
Sort by:
Attacker Value
Unknown

CVE-2010-4506

Disclosure Date: February 07, 2011 (last updated October 04, 2023)
Passlogix v-GO Self-Service Password Reset (SSPR) and OEM before 7.0A allows physically proximate attackers to execute arbitrary programs without authentication by triggering use of an invalid SSL certificate and using the Internet Explorer interface to navigate through the filesystem via a "Save As" dialog that is reachable from the "Certificate Export" wizard.
0
Attacker Value
Unknown

CVE-2009-4985

Disclosure Date: August 25, 2010 (last updated October 04, 2023)
SQL injection vulnerability in browse.php in Accessories Me PHP Affiliate Script 1.4 allows remote attackers to execute arbitrary SQL commands via the Go parameter.
0
Attacker Value
Unknown

CVE-2009-4859

Disclosure Date: May 11, 2010 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Online Work Order Suite (OWOS) Lite Edition 3.10 allow remote attackers to inject arbitrary web script or HTML via the show parameter to (1) default.asp and (2) report.asp, and the (3) go parameter to login.asp.
0
Attacker Value
Unknown

CVE-2009-4752

Disclosure Date: March 26, 2010 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in anzeiger/start.php in Swinger Club Portal allows remote attackers to execute arbitrary PHP code via a URL in the go parameter.
0
Attacker Value
Unknown

CVE-2010-0951

Disclosure Date: March 10, 2010 (last updated October 04, 2023)
SQL injection vulnerability in go_target.php in dev4u CMS allows remote attackers to execute arbitrary SQL commands via the kontent_id parameter.
0
Attacker Value
Unknown

CVE-2009-2140

Disclosure Date: September 21, 2009 (last updated October 04, 2023)
Multiple heap-based buffer overflows in cppcanvas/source/mtfrenderer/emfplus.cxx in Go-oo 2.x and 3.x before 3.0.1, previously named ooo-build and related to OpenOffice.org (OOo), allow remote attackers to execute arbitrary code via a crafted EMF+ file, a similar issue to CVE-2008-2238.
0
Attacker Value
Unknown

CVE-2009-2139

Disclosure Date: September 08, 2009 (last updated October 04, 2023)
Heap-based buffer overflow in svtools/source/filter.vcl/wmf/enhwmf.cxx in Go-oo 2.x and 3.x before 3.0.1, previously named ooo-build and related to OpenOffice.org (OOo), allows remote attackers to execute arbitrary code via a crafted EMF file, a similar issue to CVE-2008-2238.
0
Attacker Value
Unknown

CVE-2008-4084

Disclosure Date: September 15, 2008 (last updated October 04, 2023)
SQL injection vulnerability in staticpages/easyclassifields/index.php in MyioSoft EasyClassifields 3.0 allows remote attackers to execute arbitrary SQL commands via the go parameter in a browse action.
0
Attacker Value
Unknown

CVE-2008-2989

Disclosure Date: July 02, 2008 (last updated October 04, 2023)
SQL injection vulnerability in index.php in HoMaP-CMS 0.1 allows remote attackers to execute arbitrary SQL commands via the go parameter.
0
Attacker Value
Unknown

CVE-2008-2482

Disclosure Date: May 28, 2008 (last updated October 04, 2023)
Directory traversal vulnerability in install_mod.php in insanevisions OneCMS 2.5 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the load parameter in a go action.
0