Show filters
5 Total Results
Displaying 1-5 of 5
Sort by:
Attacker Value
Unknown

CVE-2024-9576

Disclosure Date: October 07, 2024 (last updated February 26, 2025)
Vulnerability in Distro Linux Workbooth v2.5 that allows to escalate privileges to the root user by manipulating the network configuration script.
Attacker Value
Unknown

CVE-2024-3049

Disclosure Date: June 06, 2024 (last updated February 26, 2025)
A flaw was found in Booth, a cluster ticket manager. If a specially-crafted hash is passed to gcry_md_get_algo_dlen(), it may allow an invalid HMAC to be accepted by the Booth server.
Attacker Value
Unknown

CVE-2022-2553

Disclosure Date: July 28, 2022 (last updated February 24, 2025)
The authfile directive in the booth config file is ignored, preventing use of authentication in communications from node to node. As a result, nodes that do not have the correct authentication key are not prevented from communicating with other nodes in the cluster.
Attacker Value
Unknown

CVE-2010-4921

Disclosure Date: October 08, 2011 (last updated October 04, 2023)
SQL injection vulnerability in inc_pollingboothmanager.asp in DMXReady Polling Booth Manager allows remote attackers to execute arbitrary SQL commands via the QuestionID parameter in a results action.
0
Attacker Value
Unknown

CVE-2008-4765

Disclosure Date: October 28, 2008 (last updated October 04, 2023)
SQL injection vulnerability in pollBooth.php in osCommerce Poll Booth Add-On 2.0 allows remote attackers to execute arbitrary SQL commands via the pollID parameter in a results operation. NOTE: this issue was disclosed by an unreliable researcher, so it might be incorrect.
0