|
Open Source Vulnerability Database
|
Thursday, 09 November 2006 MyAlbum contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to language.inc.php not properly sanitizing user input supplied to the 'langs_dir' variable. This may allow an attacker to include a file from a remote host that... |
|
Read more...
|
|
|
Open Source Vulnerability Database
|
Thursday, 09 November 2006 LetterIt contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to inc/session.php not properly sanitizing user input supplied to the 'lang' variable. This may allow an attacker to include a file from a remote host that... |
|
Read more...
|
|
|
Open Source Vulnerability Database
|
Thursday, 09 November 2006 ELOG Logbook contains a flaw that may allow a remote denial of service. The issue is triggered when a request for "/global" occurs, and will result in loss of availability for the service. |
|
Read more...
|
|
|
Open Source Vulnerability Database
|
Thursday, 09 November 2006 Mac OS X contains a flaw that may allow a local denial of service. The issue is triggered when a call to fpathcong() occurs with an unsupported file type, and will result in a system panic causing a loss of availability. |
|
Read more...
|
|
|
Cisco Advisories and Notices
|
Wednesday, 08 November 2006 Cisco Secure Desktop (CSD) software is affected by three vulnerabilities that may: - Cause information produced and accessed during an Internet browsing session to be left behind on a computer after an SSL VPN session terminates. - Allow users to evade the system policy that... |
|
Read more...
|
|
|
Open Source Vulnerability Database
|
Wednesday, 08 November 2006 DodosMail contains multiple flaws that may allow a remote attacker to execute arbitrary commands. The issue is due to dodosmail.php not properly sanitizing user input supplied to the 'dodosmail_footer_file' and 'dodosmail_header_file' variables. This may... |
|
Read more...
|
|
|
Open Source Vulnerability Database
|
Wednesday, 08 November 2006 A remote overflow exists in Iodine client. The product fails to handle the 'handshake()' function during the handshakes from Iodine servers resulting in a stack-based buffer overflow. With a specially crafted request, an attacker can execute arbitrary code resulting... |
|
Read more...
|
|
|
Open Source Vulnerability Database
|
Tuesday, 07 November 2006 Soholaunch contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to shared_functions.php not properly sanitizing user input supplied to the '_SESSION[docroot_path]' variable. This may allow an attacker to include a file from a... |
|
Read more...
|
|
|
Open Source Vulnerability Database
|
Tuesday, 07 November 2006 Soholaunch contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to pgm-shopping_css.inc.php not properly sanitizing user input supplied to the '_SESSION[docroot_path]' variable. This may allow an attacker to include a file... |
|
Read more...
|
|
|
Open Source Vulnerability Database
|
Monday, 06 November 2006 Cyberfolio contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to view.php not properly sanitizing user input supplied to the 'av' variable. This may allow an attacker to include a file from a remote host that contains... |
|
Read more...
|
|
|
<< Start < Prev 1 2 3 4 5 6 7 8 9 10 Next > End >>
|
| Results 91 - 100 of 4451 |