Home arrow Vendor Advisories
Saturday, 06 September 2008
 
spacer.png, 0 kB
spacer.png, 0 kB
spacer.png, 0 kB
Vendor Advisories
MyAlbum language.inc.php langs_dir Variable Remote File Inclusion
Open Source Vulnerability Database
Thursday, 09 November 2006
MyAlbum contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to language.inc.php not properly sanitizing user input supplied to the 'langs_dir' variable. This may allow an attacker to include a file from a remote host that...
Read more...
 
LetterIt inc/session.php lang Variable Remote File Inclusion
Open Source Vulnerability Database
Thursday, 09 November 2006
LetterIt contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to inc/session.php not properly sanitizing user input supplied to the 'lang' variable. This may allow an attacker to include a file from a remote host that...
Read more...
 
ELOG global Logbook URL Handling DoS
Open Source Vulnerability Database
Thursday, 09 November 2006
ELOG Logbook contains a flaw that may allow a remote denial of service. The issue is triggered when a request for "/global" occurs, and will result in loss of availability for the service.
Read more...
 
Mac OS X fpathconf() Function Local DoS
Open Source Vulnerability Database
Thursday, 09 November 2006
Mac OS X contains a flaw that may allow a local denial of service. The issue is triggered when a call to fpathcong() occurs with an unsupported file type, and will result in a system panic causing a loss of availability.
Read more...
 
Multiple Vulnerabilities in Cisco Secure Desktop
Cisco Advisories and Notices
Wednesday, 08 November 2006
Cisco Secure Desktop (CSD) software is affected by three vulnerabilities that may: - Cause information produced and accessed during an Internet browsing session to be left behind on a computer after an SSL VPN session terminates. - Allow users to evade the system policy that...
Read more...
 
DodosMail dodosmail.php Multiple Variable Remote File Inclusion
Open Source Vulnerability Database
Wednesday, 08 November 2006
DodosMail contains multiple flaws that may allow a remote attacker to execute arbitrary commands. The issue is due to dodosmail.php not properly sanitizing user input supplied to the 'dodosmail_footer_file' and 'dodosmail_header_file' variables. This may...
Read more...
 
iodine Client handshake() Function Overflow
Open Source Vulnerability Database
Wednesday, 08 November 2006
A remote overflow exists in Iodine client. The product fails to handle the 'handshake()' function during the handshakes from Iodine servers resulting in a stack-based buffer overflow. With a specially crafted request, an attacker can execute arbitrary code resulting...
Read more...
 
Soholaunch Pro shared_functions.php _SESSION[docroot_path] Variable Remote File Inclusion
Open Source Vulnerability Database
Tuesday, 07 November 2006
Soholaunch contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to shared_functions.php not properly sanitizing user input supplied to the '_SESSION[docroot_path]' variable. This may allow an attacker to include a file from a...
Read more...
 
Soholaunch Pro pgm-shopping_css.inc.php _SESSION[docroot_path] Variable Remote File Inclusion
Open Source Vulnerability Database
Tuesday, 07 November 2006
Soholaunch contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to pgm-shopping_css.inc.php not properly sanitizing user input supplied to the '_SESSION[docroot_path]' variable. This may allow an attacker to include a file...
Read more...
 
Cyberfolio view.php av Variable Remote File Inclusion
Open Source Vulnerability Database
Monday, 06 November 2006
Cyberfolio contains a flaw that may allow a remote attacker to execute arbitrary commands. The issue is due to view.php not properly sanitizing user input supplied to the 'av' variable. This may allow an attacker to include a file from a remote host that contains...
Read more...
 
<< Start < Prev 1 2 3 4 5 6 7 8 9 10 Next > End >>

Results 91 - 100 of 4451
spacer.png, 0 kB
     

© 2008 Intellect Information Technology Pty Ltd, Melbourne, Australia.

This page was loaded in 0.048 seconds.