5044 Network Security Advisories for 2008-11 |
| MySpace Uploader 'MySpaceUploader.ocx' ActiveX Control Buffer Overflow Vulnerability | 2008-11-31 |
| Gnumeric XLS HLINK Opcode Handling Remote Arbitrary Code Execution Vulnerability | 2008-11-31 |
| Aurigma Image Uploader 'ImageUploader4.ocx' ActiveX Control Buffer Overflow Vulnerability | 2008-11-31 |
| Sun Java RunTime Environment XML Parsing Unspecified Vulnerability | 2008-11-31 |
| Linux Kernel PowerPC 'chrp/setup.c' NULL Pointer Dereference Denial of Serviced Vulnerability | 2008-11-31 |
| Linux Kernel Page Faults Using NUMA Local Denial of Service Vulnerability | 2008-11-31 |
| Joomla! and Mambo AkoGallery Component 'id' Parameter SQL Injection Vulnerability | 2008-11-31 |
| SLMail Pro Multiple Remote Denial Of Service and Memory Corruption Vulnerabilities | 2008-11-31 |
| InspIRCd Prior to 1.1.18 'namesx' 'uhnames' Modules Multiple Denial Of Service Vulnerabilities | 2008-11-31 |
| JV2 Folder Gallery 'index.php' Cross-Site Scripting Vulnerability | 2008-11-31 |
| PHPkrm Unspecified Cross Site Scripting Vulnerability | 2008-11-31 |
| JV2 Quick Gallery 'index.php' Cross-Site Scripting Vulnerability | 2008-11-31 |
| Multiple X11 Terminals Missing DISPLAY Variable Local Arbitrary Command Execution Vulnerability | 2008-11-31 |
| KISGB 'view_private.php' Local File Include Vulnerability | 2008-11-31 |
| CDS Software Consortium Invenio Email Notification Alerts Deletion Vulnerability | 2008-11-31 |
| mx_blogs Weblogs Module for mxBB 'mx_root_path' Parameter Remote File Include Vulnerability | 2008-11-31 |
| WordPress 'wp-download' Plugin 'dl_id' Parameter SQL Injection Vulnerability | 2008-11-31 |
| PowerDNS Remote Cache Poisoning Vulnerability | 2008-11-31 |
| Jack (tR) Jax LinkLists 'jax_linklists.php' Cross-Site Scripting Vulnerability | 2008-11-31 |
| @lex Guestbook Multiple Cross-Site Scripting Vulnerabilities | 2008-11-31 |
| @lex Poll 'setup.php' Cross-Site Scripting Vulnerability | 2008-11-31 |
| PHP Classifieds Multiple Cross Site Scripting and Authentication Bypass Vulnerabilities | 2008-11-31 |
| Mondo Rescue Prior to 2.2.5 Unspecified Vulnerability | 2008-11-31 |
| Jax Guestbook 'jax_guestbook.php' Cross-Site Scripting Vulnerability | 2008-11-31 |
| Linux Audit Daemon 'audit_log_user_command()' Local Buffer Overflow Vulnerability | 2008-11-31 |
| SudBox Boutique Multiple Administrative Scripts Authentication Bypass Vulnerabilities | 2008-11-31 |
| PhpGKit 'connexion.php' Remote File Include Vulnerability | 2008-11-31 |
| Nuked-Klan 'nuked_nude' Parameter Cross-Site Scripting Vulnerability | 2008-11-31 |
| PHP Spam Manager 'body.php' Local File Include Vulnerability | 2008-11-31 |
| JGS-Treffen 'jgs_treffen.php' SQL Injection Vulnerability | 2008-11-31 |
| OpenSSH ForceCommand Command Execution Weakness | 2008-11-31 |
| EfesTECH Video 'catID' Parameter SQL Injection Vulnerability | 2008-11-31 |
| Macrovision InstallShield InstallScript OCI Untrusted Library Remote Code Execution Vulnerability | 2008-11-31 |
| Neat weblog 'articleId' Parameter SQL Injection Vulnerability | 2008-11-31 |
| LANDesk Management Suite TFTP service Directory Traversal Vulnerability | 2008-11-31 |
| OTRS SOAP Interface Security Bypass Vulnerability | 2008-11-31 |
| Ourgame 'GLIEDown2.dll' ServerList Method ActiveX Control Remote Code Execution Vulnerability | 2008-11-31 |
| Opencosmo VisualSentinel User Agent HTML Injection Vulnerability | 2008-11-31 |
| LokiCMS 'admin.php' Security Bypass Vulnerability | 2008-11-31 |
| PsychoStats Multiple SQL Injection Vulnerabilities | 2008-11-31 |
| CMSimple Multiple Input Validation Vulnerabilities | 2008-11-31 |
| TorrentTrader Classic 'scrape.php' SQL Injection Vulnerability | 2008-11-31 |
| Social Site Generator Multiple SQL Injection Vulnerabilities | 2008-11-31 |
| freeSSHd SFTP 'opendir' Buffer Overflow Vulnerability | 2008-11-31 |
| PassWiki 'site_id' Parameter Local File Include Vulnerability | 2008-11-31 |
| FFFTP 'LIST' Command Directory Traversal Vulnerability | 2008-11-31 |
| BP Blog Multiple SQL Injection Vulnerabilities | 2008-11-31 |
| CMS Easyway 'mid' Parameter SQL Injection Vulnerability | 2008-11-31 |
| Social Site Generator 'social_game_play.php' Remote File Include Vulnerability | 2008-11-31 |
| Acronis True Image Echo Server Information Disclosure Weakness | 2008-11-31 |
| Panasonic Network Cameras Error Page Multiple Cross Site Scripting Vulnerabilities | 2008-11-31 |
| F-PROT Antivirus Archive Parsing Denial of Service Vulnerability | 2008-11-31 |
| phpFreeChat 'nickid' Parameter Session Hijacking Vulnerability | 2008-11-31 |
| Blue Coat K9 Web Protection 'Referer' Header Stack Based Buffer Overflow Vulnerability | 2008-11-31 |
| Blue Coat K9 Web Protection Centralized Server HTTP Responses Buffer Overflow Vulnerability | 2008-11-31 |
| 'nfs-utils' Package for Red Hat Enterprise Linux 5 TCP Wrappers Security Bypass Vulnerability | 2008-11-31 |
| libxslt RC4 Encryption and Decryption Functions Buffer Overflow Vulnerability | 2008-11-31 |
| H0tturk Panel 'gizli.php' Remote File Include Vulnerability | 2008-11-31 |
| Concrete5 Contact Form Cross-Site Scripting Vulnerability | 2008-11-31 |
| Mono Multiple Cross-Site Scripting Vulnerabilities | 2008-11-31 |
| Computer Associates ARCserve Backup for Laptops and Desktops Remote Buffer Overflow Vulnerability | 2008-11-31 |
| OpenSC CardOS M4 Smart Cards Insecure Permissions Vulnerability | 2008-11-31 |
| SAP MaxDB 'dbmsrv' Process 'PATH' Environment Variable Local Privilege Escalation Vulnerability | 2008-11-31 |
| Symphony 'class.admin.php' SQL Injection Vulnerability | 2008-11-31 |
| PHPX 'PXL' Cookie Parameter SQL Injection Vulnerability | 2008-11-31 |
| Coppermine Photo Gallery 'lang' Cookie Parameter Local File Include Vulnerability | 2008-11-31 |
| LetterIt 'wysiwyg.php' Local File Include Vulnerability | 2008-11-31 |
| RETIRED: Apple Mac OS X 2008-005 Multiple Security Vulnerabilities | 2008-11-31 |
| common solutions csphonebook 'index.php' Cross Site Scripting Vulnerability | 2008-11-31 |
| Apple Mac OS X CarbonCore Stack Based Buffer Overflow Vulnerability | 2008-11-31 |
| Apple Mac OS X CoreGraphics Multiple Memory Corruption Vulnerabilities | 2008-11-31 |
| Apple Mac OS X CoreGraphics Heap Based Buffer Overflow Vulnerability | 2008-11-31 |
| Apple Mac OS X Data Detectors Engine Denial Of Service Vulnerability | 2008-11-31 |
| Python Multiple Buffer Overflow Vulnerabilities | 2008-11-31 |
| Apple Mac OS X Disk Utility Privilege Escalation Vulnerability | 2008-11-31 |
| Apple Mac OS X QuickLook Multiple Memory Corruption Vulnerabilities | 2008-11-31 |
| SourceWorkshop Web directory script 'index.php' SQL Injection Vulnerability | 2008-11-31 |
| myPHPNuke 'print.php' SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-31 |
| WeBid Multiple Input Validation Vulnerabilities | 2008-11-31 |
| RETIRED: Tribiq CMS Cookie Authentication Bypass Vulnerability | 2008-11-31 |
| e107 Lyrics Plugin 'lyrics_song.php' SQL Injection Vulnerability | 2008-11-31 |
| CompactCMS 'admin/index.php' Multiple Cross Site Scripting Vulnerabilities | 2008-11-31 |
| A-Link WL54AP3 and WL54AP2 Cross Site Request Forgery and HTML Injection Vulnerabilities | 2008-11-31 |
| Absolute Form Processor .Net Cookie Authentication Bypass Vulnerability | 2008-11-31 |
| Absolute Live Support .Net Cookie Authentication Bypass Vulnerability | 2008-11-31 |
| phpWebSite 'links.php' SQL Injection Vulnerability | 2008-11-31 |
| SpitFire Photo Pro 'pages.php' SQL Injection Vulnerability | 2008-11-31 |
| ComingChina.com U-Mail 'edit.php' Arbitrary File Upload Vulnerability | 2008-11-31 |
| Interact 'email_user_key' Parameter SQL Injection Vulnerability | 2008-11-31 |
| Opera Web Browser 9.62 History Search Input Validation Vulnerability | 2008-11-31 |
| Fantastico Cross-Site Scripting Vulnerabilities and Local File Include Vulnerability | 2008-11-31 |
| Fortinet FortiGate Unspecified Cross Site Scripting Vulnerability | 2008-11-31 |
| Tribiq CMS 'template_path' Parameter Local File Include Vulnerability | 2008-11-31 |
| Camera Life Multiple Cross Site Scripting Vulnerabilities | 2008-11-31 |
| Multiple Scripts For Sites Products 'directory.php' SQL Injection Vulnerability | 2008-11-31 |
| Logz podcast CMS 'add_url.php' SQL Injection Vulnerability | 2008-11-31 |
| Absolute Banner Manager .NET Cookie Authentication Bypass Vulnerability | 2008-11-31 |
| Absolute News Manager .Net Cookie Authentication Bypass Vulnerability | 2008-11-31 |
| Absolute Control Panel XE Cookie Authentication Bypass Vulnerability | 2008-11-31 |
| Absolute Content Rotator Cookie Authentication Bypass Vulnerability | 2008-11-31 |
| Absolute News Feed Cookie Authentication Bypass Vulnerability | 2008-11-31 |
| Absolute FAQ Manager .NET Cookie Authentication Bypass Vulnerability | 2008-11-31 |
| Absolute Newsletter Cookie Authentication Bypass Vulnerability | 2008-11-31 |
| Article Publisher Pro 'admin.php' SQL Injection Vulnerability | 2008-11-31 |
| Scripts For Sites EZ Hotscripts SQL Injection Vulnerability | 2008-11-31 |
| Scripts For Sites EZ Webring/EZ Top Sites 'category.php' SQL Injection Vulnerability | 2008-11-31 |
| EZ BIZ PRO 'track.php' SQL Injection Vulnerability | 2008-11-31 |
| Scripts For Sites EZ Link Directory 'links.php' SQL Injection Vulnerability | 2008-11-31 |
| Scripts For Sites EZ Auction 'viewfaqs.php' SQL Injection Vulnerability | 2008-11-31 |
| Scripts For Sites EZ Career 'content.php' SQL Injection Vulnerability | 2008-11-31 |
| Scripts For Sites EZ Top Sites 'topsite.php' SQL Injection Vulnerability | 2008-11-31 |
| suPHP 'suPHP_ConfigPath' Safe Mode Restriction-Bypass Vulnerability | 2008-11-31 |
| Scripts For Sites EZ Hotscripts 'software-description.php' SQL Injection Vulnerability | 2008-11-31 |
| SFS EZ Affiliate 'cat_id' Parameter SQL Injection Vulnerability | 2008-11-31 |
| IBM AIX 'piox25.c/piox25remote.sh' Local Buffer Overflow Vulnerability | 2008-11-30 |
| GFL SDK Library Buffer Overflow Vulnerability | 2008-11-30 |
| xdg-utils 'xdg-open' and 'xdg-email' Multiple Remote Command Execution Vulnerabilities | 2008-11-30 |
| JShop Server 'page.php' Local File Include Vulnerability | 2008-11-30 |
| Avast! Home/Professional Local Privilege Escalation Vulnerability | 2008-11-30 |
| Smoothflash 'admin_view_image.php' SQL Injection Vulnerability | 2008-11-30 |
| Interchange Unspecified Denial Of Service Vulnerability | 2008-11-30 |
| C-News 'install.php' Cross Site Scripting Vulnerability | 2008-11-30 |
| Castle Rock Computing SNMPc Community String Stack Based Buffer Overflow Vulnerability | 2008-11-30 |
| PBCS Multiple Input Validation Vulnerabilities | 2008-11-30 |
| OxYProject Edit Chat History Remote Code Execution Vulnerability | 2008-11-30 |
| Akamai Download Manager ActiveX Control Remote Code Execution Vulnerability | 2008-11-30 |
| Nortel Multimedia PC Client Remote Packet Flood Denial of Service Vulnerability | 2008-11-30 |
| Harris Wap Chat 'sysFileDir' Parameter Multiple Remote File Include Vulnerabilities | 2008-11-30 |
| Interact Multiple Remote File Include Vulnerabilities | 2008-11-30 |
| Kent WEB MART Unspecified Cross Site Scripting Vulnerability | 2008-11-30 |
| DotNetNuke 'Default.aspx' Cross-Site Scripting Vulnerability | 2008-11-30 |
| VMware VMCI Arbitrary Code Execution Vulnerability | 2008-11-30 |
| Apple Safari and Microsoft Windows Client-side Code Execution Vulnerability | 2008-11-30 |
| SurgeMail IMAP Service 'APPEND' Command Remote Buffer Overflow Vulnerability | 2008-11-30 |
| Talking Birds eSHOP100 'index.php' SQL Injection Vulnerability | 2008-11-30 |
| Joomla! and Mambo 'com_beamospetition' Component 'pet' Parameter SQL Injection Vulnerability | 2008-11-30 |
| Acmlmboard 'memberlist.php' SQL Injection Vulnerability | 2008-11-30 |
| IBM Tivoli Directory Server Adding 'ibm-globalAdminGroup' Entry Denial of Service Vulnerability | 2008-11-30 |
| BareNuked CMS 'admin/users.php' SQL Injection Vulnerability | 2008-11-30 |
| Pivot 't' Parameter Directory Traversal Vulnerability | 2008-11-30 |
| OpenLDAP BER Decoding Remote Denial of Service Vulnerability | 2008-11-30 |
| Catviz 'index.php' Multiple SQL Injection Vulnerabilities | 2008-11-30 |
| RSS-aggregator Multiple SQL Injection And Authentication Bypass Vulnerabilities | 2008-11-30 |
| myBloggie Cross-Site Scripting and SQL Injection Vulnerabilities | 2008-11-30 |
| Apple Mac OS X 2008-004 Multiple Security Vulnerabilities | 2008-11-30 |
| FaName Multiple Cross-Site Scripting Vulnerabilities | 2008-11-30 |
| Wireshark 1.0.0 Multiple Vulnerabilities | 2008-11-30 |
| HIOX Banner Rotator 'hioxBannerRotate.php' Remote File Include Vulnerability | 2008-11-30 |
| AShop Deluxe 'catalogue.php' SQL Injection Vulnerability | 2008-11-30 |
| pSys 'chatbox.php' SQL Injection Vulnerability | 2008-11-30 |
| Simple Machines Forum Multiple Unspecified 'html-tag' and Random Generator Seeding Vulnerabilities | 2008-11-30 |
| Unreal Tournament 2004 NULL Pointer Remote Denial of Service Vulnerability | 2008-11-30 |
| Unreal Tournament 3 Denial Of Service And Memory Corruption Vulnerabilities | 2008-11-30 |
| InfoMining BookMine SQL Injection and Cross Site Scripting Vulnerabilities | 2008-11-30 |
| Unica Affinium Campaign Multiple Remote Vulnerabilities | 2008-11-30 |
| @Mail Multiple Local Information Disclosure Vulnerabilities | 2008-11-30 |
| HIOX Random Ad 'hioxRandomAd.php ' Remote File Include Vulnerability | 2008-11-30 |
| HIOX Browser Statistics 'hm' Parameter Multiple Remote File Include Vulnerabilities | 2008-11-30 |
| MJGUEST 'guestbook.js.php' Cross Site Scripting Vulnerability | 2008-11-30 |
| nzFotolog 'action_file' Parameter Local File Include Vulnerability | 2008-11-30 |
| Condor Wild Card Authorization Policy Security Bypass Vulnerability | 2008-11-30 |
| IBM AIX 'scsidiskdd' Uninitialized 'DRVR_PVT' Structure Local Denial Of Service Vulnerability | 2008-11-30 |
| BlazeVideo HDTV Player PLF File Stack Buffer Overflow Vulnerability | 2008-11-30 |
| PHP Hosting Directory Cookie Authentication Bypass Vulnerability | 2008-11-30 |
| Zee Reviews Opinions Rating Posting Engine PHP Script 'comments.php' SQL Injection Vulnerability | 2008-11-30 |
| Citrix Presentation Server 'icabar.exe' Local Privilege Escalation Vulnerability | 2008-11-30 |
| DEV Web Management System Multiple Input Validation Vulnerabilities | 2008-11-30 |
| Multiple HIOX Products 'admin/passwo.php' Authentication Bypass Vulnerability | 2008-11-30 |
| HP-UX System Administration Manager NFS Configuration Security Bypass Vulnerability | 2008-11-30 |
| Sun Solaris Platform Information and Control Library picld(1M) Local Denial of Service Vulnerability | 2008-11-30 |
| Sun Java System Web Server 7.0 Plugin for Sun N1SPS Remote Authentication Bypass Vulnerability | 2008-11-30 |
| Article Friendly Pro 'authordetail.php' SQL Injection Vulnerability | 2008-11-30 |
| Article Friendly Standard 'categorydetail.php' SQL Injection Vulnerability | 2008-11-30 |
| PozScripts Classified Ads 'browsecats.php' SQL Injection Vulnerability | 2008-11-30 |
| PozScripts TubeGuru Video Sharing Script 'ugroups.php' SQL Injection Vulnerability | 2008-11-30 |
| eNdonesia Calendar Module SQL Injection Vulnerability | 2008-11-30 |
| Pligg Multiple Remote Vulnerabilities | 2008-11-30 |
| Mozilla Firefox Unspecified Denial of Service Vulnerability | 2008-11-30 |
| GnuTLS 'gnutls_handshake()' Function Remote Denial Of Service Vulnerability | 2008-11-30 |
| RhinoSoft Serv-U SFTP Remote Denial of Service Vulnerability | 2008-11-30 |
| VMware Multiple ActiveX Controls Multiple Unspecified Security Vulnerabilities | 2008-11-30 |
| VMware ISAPI Extension Remote Denial Of Service Vulnerability | 2008-11-30 |
| VMware OpenProcess Local Privilege Escalation Vulnerability | 2008-11-30 |
| VMware Consolidated Backup (VCB) User Password Information Disclosure Vulnerability | 2008-11-30 |
| Acoustica Beatcraft '.bcproj' Instrument Title Buffer Overflow Vulnerability | 2008-11-30 |
| Friendly Technologies 'fwRemoteCfg.dll' ActiveX Control Information Disclosure Vulnerability | 2008-11-30 |
| Friendly Technologies 'fwRemoteCfg.dll' ActiveX Control Registry Key Manipulation Vulnerability | 2008-11-30 |
| Brim SQL Injection and HTML Injection Vulnerabilities | 2008-11-30 |
| Linux Kernel 'iov_iter_advance()' Page Fault Local Denial of Service Vulnerability | 2008-11-30 |
| MySQL Command Line Client HTML Special Characters HTML Injection Vulnerability | 2008-11-30 |
| Autodesk DWF Viewer Control 'AdView.dll' Arbitrary File Download Vulnerability | 2008-11-30 |
| SG Real Estate Portal Local File Include and SQL Injection Vulnerabilities | 2008-11-30 |
| Autodesk 'LiveUpdate16.DLL' ActiveX Control Arbitrary Program Execution Vulnerability | 2008-11-30 |
| eFront Multiple Arbitrary File Upload Vulnerabilities | 2008-11-30 |
| MiNBank 'minsoft_path' Parameter Multiple Remote File Include Vulnerabilities | 2008-11-30 |
| moziloWiki Prior to 1.0.2 Multiple Vulnerabilities | 2008-11-30 |
| moziloCMS Prior to 1.10.3 Multiple Vulnerabilities | 2008-11-30 |
| Xen XenStore Domain Configuration Data Unsafe Storage Vulnerability | 2008-11-30 |
| SG Real Estate Portal Cookie Authentication Bypass Vulnerability | 2008-11-30 |
| Rianxosencabos CMS 'id' Parameter SQL Injection Vulnerability | 2008-11-30 |
| Hardkap Pritlog 'filename' Parameter File Disclosure Vulnerability | 2008-11-30 |
| GdPicture Pro 'gdpicture4s.ocx' ActiveX Control Arbitrary File Overwrite Vulnerability | 2008-11-30 |
| QuidaScript BookMarks Favourites Script 'id' Parameter SQL Injection Vulnerability | 2008-11-30 |
| A4Desk Event Calendar 'v' Parameter Remote File Include Vulnerability | 2008-11-30 |
| Trend Micro OfficeScan and Worry-Free Business Security Multiple Vulnerabilities | 2008-11-30 |
| DjVu 'DjVu_ActiveX_MSOffice.dll' ActiveX Component Heap Buffer Overflow Vulnerability | 2008-11-30 |
| Opera Web Browser History Search and Links Panel Cross Site Scripting Vulnerabilities | 2008-11-30 |
| Typo SQL Injection and HTML Injection Vulnerabilities | 2008-11-30 |
| Harlandscripts Pro Traffic One 'id' Parameter SQL Injection Vulnerability | 2008-11-30 |
| MyPHP Forum 'post.php' and 'member.php' Multiple SQL Injection Vulnerabilities | 2008-11-30 |
| Microsoft DebugDiag 'CrashHangExt.dll' ActiveX Control Remote Denial of Service Vulnerability | 2008-11-30 |
| Dovecot Invalid Message Address Parsing Denial of Service Vulnerability | 2008-11-30 |
| SonicWALL Content Filtering Blocked Site Error Page Cross-Site Scripting Vulnerability | 2008-11-30 |
| Adobe PageMaker 'AldFs32.dll' Key Strings Stack-Based Buffer Overflow Vulnerability | 2008-11-30 |
| Agora 'MysqlfinderAdmin.php' Remote File Include Vulnerability | 2008-11-30 |
| RETIRED: Absolute File Send .Net Cookie Authentication Bypass Vulnerability | 2008-11-30 |
| Absolute Podcast .NET Cookie Authentication Bypass Vulnerability | 2008-11-30 |
| Absolute Poll Manager XE Cookie Authentication Bypass Vulnerability | 2008-11-30 |
| Minimal ABlog SQL Injection and Arbitrary File Upload Vulnerabilities | 2008-11-30 |
| KTP Computer Customer Database 'tid' Parameter SQL Injection Vulnerability | 2008-11-30 |
| Apple iTunes/QuickTime Malformed '.mov' File Buffer Overflow Vulnerability | 2008-11-30 |
| National Instruments Electronics Workbench '.ewb' File Buffer Overflow Vulnerability | 2008-11-30 |
| Massimiliano Montoro Cain & Abel Malformed '.rdp' File Buffer Overflow Vulnerability | 2008-11-30 |
| VLC Media Player Real demuxer Heap Buffer Overflow Vulnerability | 2008-11-30 |
| ActiveWebSoftwares Active Web Helpdesk 'default.asp' SQL Injection Vulnerability | 2008-11-30 |
| cpCommerce Security Bypass and SQL Injection Vulnerabilities | 2008-11-30 |
| ActiveWebSoftwares Active Price Comparison 'links.asp' SQL Injection Vulnerability | 2008-11-30 |
| ActiveWebSoftwares Active Business Directory 'default.asp' SQL Injection Vulnerability | 2008-11-30 |
| SPIP Versions Prior to 2.0.2 Multiple Unspecified Vulnerabilities | 2008-11-30 |
| Megacubo 'mega://' URI Handler Remote Command Execution Vulnerability | 2008-11-30 |
| OpenEdit 'data/views/index.html' Cross Site Scripting Vulnerability | 2008-11-30 |
| OpenEdit Digital Asset Management (DAM) 'name' Parameter HTML Injection Vulnerability | 2008-11-30 |
| IETF RFC 3279 X.509 Certificate MD5 Signature Collision Vulnerability | 2008-11-30 |
| Audio File Library (libaudiofile) 'msadpcm.c' WAV File Processing Buffer Overflow Vulnerability | 2008-11-30 |
| CMScout Local File Include and SQL Injection Vulnerabilities | 2008-11-30 |
| Pixel8 Web Photo Album 'Photo.asp' SQL Injection Vulnerability | 2008-11-30 |
| Mole Group Vacation Script 'properties_view.php' SQL Injection Vulnerability | 2008-11-30 |
| Symbian S60 Malformed SMS/MMS Remote Denial Of Service Vulnerability | 2008-11-30 |
| Microsoft MSN Messenger IP Address Information Disclosure Vulnerability | 2008-11-30 |
| KTP Computer Customer Database 'p' Parameter Local File Include Vulnerability | 2008-11-30 |
| IBM Hardware Management Console Pegasus CIM Server Denial Of Service Vulnerability | 2008-11-29 |
| Smart Publisher '/admin/op/disp.php' Remote Code Execution Vulnerability | 2008-11-29 |
| Chilkat Email 'ChilkatCert.dll' ActiveX Control Insecure Method Vulnerability | 2008-11-29 |
| Linux Kernel 'isdn_common.c' Local Buffer Overflow Vulnerability | 2008-11-29 |
| Coppermine Photo Gallery Multiple Remote Command Execution Vulnerabilities | 2008-11-29 |
| IBM WebSphere MQ Security Bypass Vulnerability | 2008-11-29 |
| netOffice Dwins Authentication Bypass Vulnerability and Arbitrary File Upload Vulnerability | 2008-11-29 |
| Centreon 'index.php' Local File Include Vulnerability | 2008-11-29 |
| Koobi Comment Form Authentication Bypass Vulnerability | 2008-11-29 |
| Simple PHP Scripts blog 'complete.php' Cross-Site Scripting Vulnerability | 2008-11-29 |
| ViewVC Multiple Remote Information Disclosure Vulnerabilities | 2008-11-29 |
| Simple PHP Scripts gallery 'index.php' Cross-Site Scripting Vulnerability | 2008-11-29 |
| phpMyTourney 'tourney/index.php' Remote File Include Vulnerability | 2008-11-29 |
| Learn2 STRunner 'iestm32.dll' ActiveX Control Multiple Buffer Overflow Vulnerabilities | 2008-11-29 |
| Koobi 'categ' Parameter SQL Injection Vulnerability | 2008-11-29 |
| Beehive/SendFile.NET 'SendFile.jar' Insecure Default Account Unauthorized Access Vulnerability | 2008-11-29 |
| CuteFlow Bin SQL Injection Vulnerability and Multiple Cross Site Scripting Vulnerabilities | 2008-11-29 |
| 2X ThinClientServer TFTP service Directory Traversal Vulnerability | 2008-11-29 |
| phpMyAdmin Local Information Disclosure Vulnerability | 2008-11-29 |
| e107 CMS 'submitnews.php' Multiple HTML Injection Vulnerabilities | 2008-11-29 |
| util-linux-ng 'login' Remote Log Injection Weakness | 2008-11-29 |
| SiteXS CMS 'adm/index.php' Cross Site Scripting Vulnerability | 2008-11-29 |
| LokiCMS 'admin.php' Arbitrary File Deletion Vulnerability | 2008-11-29 |
| PeerCast 'getAuthUserPass' Multiple Buffer Overflow Vulnerabilities | 2008-11-29 |
| WebGUI Data Form Unspecified Security Vulnerability | 2008-11-29 |
| 'imlib2' Library Multiple Buffer Overflow Vulnerabilities | 2008-11-29 |
| FlashBlog 'imgupload.php' Arbitrary File Upload Vulnerability | 2008-11-29 |
| Adobe Reader Unspecified Remote Denial Of Service Vulnerability | 2008-11-29 |
| Pan '.nzb' File Parsing Heap Overflow Vulnerability | 2008-11-29 |
| SyntaxCMS 'upload.php' Arbitrary File Upload Vulnerability | 2008-11-29 |
| AirvaeCommerce 'index.php' SQL Injection Vulnerability | 2008-11-29 |
| PicoFlat CMS 'pagina' Parameter Local File Include and Directory Traversal Vulnerabilities | 2008-11-29 |
| AhsayOBM and AhsayACB SSL Certificate Validation Security Bypass Vulnerability | 2008-11-29 |
| JustPORTAL 'site' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-29 |
| Proje ASP Portal 'id' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-29 |
| dvbbs 'login.asp' Multiple SQL Injection Vulnerabilities | 2008-11-29 |
| Xerox DocuShare Multiple Cross-Site Scripting Vulnerabilities | 2008-11-29 |
| CMS from Scratch 'upload.php' Arbitrary File Upload Vulnerability | 2008-11-29 |
| Joomla! and Mambo MambAds Component 'ma_cat' Parameter SQL Injection Vulnerability | 2008-11-29 |
| CMS from Scratch 'image.php' Directory Traversal and Arbitrary File Upload Vulnerabilities | 2008-11-29 |
| PHP Booking Calendar 'details_view.php' SQL Injection Vulnerability | 2008-11-29 |
| GraphicsMagick Multiple Denial Of Service Vulnerabilities | 2008-11-29 |
| CoolPlayer M3U File Buffer Overflow Vulnerability | 2008-11-29 |
| phpMyAdmin Multiple Cross-Site Scripting Vulnerabilities | 2008-11-29 |
| miniBB RSS Plugin Multiple Remote File Include Vulnerabilities | 2008-11-29 |
| Links 'only proxies' Unspecified Security Vulnerability | 2008-11-29 |
| Gregarius 'ajax.php' SQL Injection Vulnerability | 2008-11-29 |
| Eyeball MessengerSDK 'CoVideoWindow.ocx' ActiveX Control Remote Buffer Overflow Vulnerability | 2008-11-29 |
| JnSHosts PHP Hosting Directory 'admin.php' Remote File Include Vulnerability | 2008-11-29 |
| TIBCO Hawk Multiple Remote Buffer Overflow Vulnerabilities | 2008-11-29 |
| Dreambox Web Interface URI Remote Denial of Service Vulnerability | 2008-11-29 |
| Blogn Multiple Unspecified Cross-Site Scripting Vulnerabilities | 2008-11-29 |
| Invision Power Board Multiple Remote Security Vulnerabilities | 2008-11-29 |
| Najdi.si Toolbar 'najdisitoolbar.dll' ActiveX Control Remote Buffer Overflow Vulnerability | 2008-11-29 |
| LogMeIn 'RACtrl.dll' ActiveX Control Multiple Remote Denial of Service Vulnerabilities | 2008-11-29 |
| dotProject Multiple SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-29 |
| OpenOffice 'senddoc' Insecure Temporary File Creation Vulnerability | 2008-11-29 |
| Ogle DVD Player Insecure Temporary File Creation Vulnerabilities | 2008-11-29 |
| Mgetty 'faxspool' Insecure Temporary File Creation Vulnerability | 2008-11-29 |
| Plait Insecure Temporary File Creation Vulnerability | 2008-11-29 |
| MySpell Insecure Temporary File Creation Vulnerability | 2008-11-29 |
| Retired: Microsoft Windows GDI 'CreateDIBPatternBrushPt' Function Heap Overflow Vulnerability | 2008-11-29 |
| Novell IDM Cross Site Scripting and HTML Injection Vulnerabilities | 2008-11-29 |
| Full PHP Emlak Script 'landsee.php' SQL Injection Vulnerability | 2008-11-29 |
| PHPJabbers Post Comments Cookie Authentication Bypass Vulnerability | 2008-11-29 |
| Wireshark Packet Capture File Denial of Service Vulnerability | 2008-11-29 |
| PHP-Fusion Freshlinks Module 'linkid' Parameter SQL Injection Vulnerability | 2008-11-29 |
| JasPer 1.900.1 Multiple Vulnerabilities | 2008-11-29 |
| Events Calendar 'header_setup.php' Multiple Remote File Include Vulnerabilities | 2008-11-29 |
| XAMPP for Windows 'adodb.php' Multiple Cross-Site Scripting Vulnerabilities | 2008-11-29 |
| MPlayer 'stream_read' Function Remote Heap Based Buffer Overflow Vulnerability | 2008-11-29 |
| FileAlyzer Version Information Remote Stack Buffer Overflow Vulnerability | 2008-11-29 |
| Nokia PC Suite Remote Buffer Overflow Vulnerability | 2008-11-29 |
| Mozilla Firefox User Interface Dispatcher Null Pointer Dereference Denial of Service Vulnerability | 2008-11-29 |
| PG Matchmaking 'id' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-29 |
| Easy PHP Calendar Add New Event HTML Injection Vulnerability | 2008-11-29 |
| Hewlett-Packard Insight Diagnostics Unspecified Unauthorized Access Vulnerability | 2008-11-29 |
| ArabCMS 'rss.php' Local File Include Vulnerability | 2008-11-29 |
| CAcert 'analyse.php' Cross Site Scripting Vulnerability | 2008-11-29 |
| WordPress MU 'wp-admin/wpmu-blogs.php' Multiple Cross Site Scripting Vulnerabilities | 2008-11-29 |
| Citrix Presentation Server Unspecified Local Privilege Escalation Vulnerability | 2008-11-29 |
| IBM Quickr Denial of Service and Security Bypass Vulnerabilities | 2008-11-29 |
| OpenOffice WMF and EMF File Handling Multiple Heap Based Buffer Overflow Vulnerabilities | 2008-11-29 |
| KKE Info Media Kmita Gallery Multiple Cross-Site Scripting Vulnerabilities | 2008-11-29 |
| Extrakt Framework 'index.php' Cross Site Scripting Vulnerability | 2008-11-29 |
| Sepal SPBOARD 'board.cgi' Remote Command Execution Vulnerability | 2008-11-29 |
| Quassel Core CTCP Ping Input Validation Vulnerability | 2008-11-29 |
| Aztec ActiveX 'Aztec.dll' ActiveX Control Multiple Arbitrary File Overwrite Vulnerabilities | 2008-11-29 |
| Adobe PageMaker Font Structure Multiple Buffer Overflow Vulnerabilities | 2008-11-29 |
| RETIRED: Python Imageop Module 'imageop.crop()' Buffer Overflow Vulnerability | 2008-11-29 |
| WebCards 'admin.php' Login Page SQL Injection Vulnerability | 2008-11-29 |
| 7-Shop 'imageupload.php' Arbitrary File Upload Vulnerability | 2008-11-29 |
| MW6 Technologies Barcode ActiveX 'Barcode.dll' Multiple Arbitrary File Overwrite Vulnerabilities | 2008-11-29 |
| MW6 DataMatrix 'DataMatrix.dll' ActiveX Control Multiple Arbitrary File Overwrite Vulnerabilities | 2008-11-29 |
| Mambo and Joomla! SimpleBoard 'image_upload.php' Arbitrary File Upload Vulnerability | 2008-11-29 |
| Instinct WP e-Commerce 'image_processing.php' Arbitrary File Upload Vulnerability | 2008-11-29 |
| MW6 PDF417 'MW6PDF417.dll' ActiveX Control Multiple Arbitrary File Overwrite Vulnerabilities | 2008-11-29 |
| Visagesoft eXPert PDF Viewer ActiveX Control Arbitrary File Overwrite Vulnerability | 2008-11-29 |
| Harlandscripts Pro Traffic One 'trg' Parameter SQL Injection Vulnerability | 2008-11-29 |
| IBM Tivoli Storage Manager Client Remote Heap Buffer Overflow Vulnerability | 2008-11-29 |
| IBM Lotus Connections Multiple Remote Vulnerabilities | 2008-11-29 |
| Venalsur Booking Centre SQL Injection and Cross Site Scripting Vulnerabilities | 2008-11-29 |
| Dorsa CMS 'Default_.aspx' Cross Site Scripting Vulnerability | 2008-11-29 |
| Ocean12 FAQ Manager Pro 'Keyword' Parameter Cross Site Scripting Vulnerability | 2008-11-29 |
| Multiple Ocean12 Products 'Admin_ID' Parameter SQL Injection Vulnerability | 2008-11-29 |
| Ocean12 Mailing List Manager Gold 'Email' Parameter SQL Injection Vulnerability | 2008-11-29 |
| ParsBlogger 'blog.asp' Cross Site Scripting Vulnerability | 2008-11-29 |
| Venalsur Booking Centre Multiple Cross-Site Scripting Vulnerabilities | 2008-11-29 |
| Basic CMS 'q' Parameter Cross Site Scripting Vulnerability | 2008-11-29 |
| BusinessVein PHP TV Portal 'index.php' SQL Injection Vulnerability | 2008-11-29 |
| Multiple ActiveWebSoftwares Products Login Parameters SQL Injection Vulnerabilities | 2008-11-29 |
| ActiveWebSoftwares ASPReferral 'Merchantsadd.asp' SQL Injection Vulnerability | 2008-11-29 |
| CMS Made Simple 'cms_language' Cookie Parameter Directory Traversal Vulnerability | 2008-11-29 |
| OpenForum 'profile.php' Authentication Bypass Vulnerability | 2008-11-29 |
| Lito Lite 'cate.php' SQL Injection Vulnerability | 2008-11-29 |
| ActiveWebSoftwares ActiveVotes 'VoteHistory.asp' SQL Injection Vulnerability | 2008-11-29 |
| ActiveWebSoftwares Active Bids 'bidhistory.asp' SQL Injection Vulnerability | 2008-11-29 |
| ActiveWebSoftwares Active Web Mail Multiple SQL Injection Vulnerabilities | 2008-11-29 |
| ActiveWebSoftwares Active Test Multiple SQL Injection Vulnerabilities | 2008-11-29 |
| Ultimate PHP Board Request Logging HTML Injection Vulnerability | 2008-11-29 |
| TaskDriver Cookie Authentication Bypass Vulnerability | 2008-11-29 |
| Silentum LoginSys Cookie Authentication Bypass Vulnerability | 2008-11-29 |
| IntelliTamper 'CFG' File Buffer Overflow Vulnerability | 2008-11-29 |
| SepCity Shopping Mall 'shpdetails.asp' SQL Injection Vulnerability | 2008-11-29 |
| SepCity Lawyer Portal 'deptdisplay.asp' SQL Injection Vulnerability | 2008-11-29 |
| Mavi Emlak 'newDetail.asp' SQL Injection Vulnerability | 2008-11-29 |
| Microsoft Windows Media Player WAV File Parsing Code Execution Vulnerability | 2008-11-29 |
| ViArt Shop 3.5 Multiple Remote Vulnerabilities | 2008-11-29 |
| MagpieRSS CDATA HTML Injection Vulnerability | 2008-11-29 |
| Madrese-Portal 'haber.asp' SQL Injection Vulnerability | 2008-11-29 |
| AIST NetCat 'PollID' Parameter SQL Injection Vulnerability | 2008-11-29 |
| Winace Malformed Filename Remote Denial of Service Vulnerability | 2008-11-29 |
| SepCity Classified Ads 'classdis.asp' SQL Injection Vulnerability | 2008-11-29 |
| NPDS Versions Prior to 08.06 Multiple Input Validation Vulnerabilities | 2008-11-29 |
| SaschArt SasCam Webcam Server ActiveX Control 'Get' Method Buffer Overflow Vulnerability | 2008-11-29 |
| eDare eDNews 'eDNews_view.php' SQL Injection Vulnerability | 2008-11-29 |
| phpAlumni 'Acomment.php' SQL Injection Vulnerability | 2008-11-29 |
| ThePortal '/admin/galeria.php' Arbitrary File Upload Vulnerability | 2008-11-29 |
| PHP-Fusion 'messages.php' Cross Site Scripting Vulnerability | 2008-11-29 |
| Symantec Backup Exec Scheduler ActiveX Control Multiple Stack Based Buffer Overflow Vulnerabilities | 2008-11-28 |
| Firebird Relational Database 'protocol.cpp' XDR Protocol Remote Memory Corruption Vulnerability | 2008-11-28 |
| Mambo MOStlyCE Module 'connector.php' Cross-Site Scripting Vulnerability | 2008-11-28 |
| Mambo MOStlyCE Module Image Manager Utility Arbitrary File Upload Vulnerability | 2008-11-28 |
| Hero Super Player 3000 M3U Buffer Overflow Vulnerability | 2008-11-28 |
| PCRE Character Class Buffer Overflow Vulnerability | 2008-11-28 |
| Symantec Backup Exec Scheduler ActiveX Control Multiple Arbitrary File Overwrite Vulnerabilities | 2008-11-28 |
| Maian Script World Maian Cart Cross-Site Scripting Vulnerability | 2008-11-28 |
| Interspire Shopping Cart Cross-Site Scripting Vulnerability | 2008-11-28 |
| PHP-Nuke My_eGallery Module 'gid' Parameter SQL Injection Vulnerability | 2008-11-28 |
| Koobi Pro 'categ' Parameter SQL Injection Vulnerability | 2008-11-28 |
| Urulu 'connectionId' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-28 |
| Juniper Networks Secure Access 2000 'rdremediate.cgi' Cross Site Scripting Vulnerability | 2008-11-28 |
| Barryvan Compo Manager 'main.php' Remote File Include Vulnerability | 2008-11-28 |
| SiteBuilder Elite 'CarpPath' Parameter Multiple Remote File Include Vulnerabilities | 2008-11-28 |
| Juniper Networks Secure Access 2000 Web Root Path Disclosure Vulnerability | 2008-11-28 |
| Podcast Generator Multiple Remote And Local File Include Vulnerabilities | 2008-11-28 |
| Crysis Username Format String Vulnerability | 2008-11-28 |
| Flicks Software AuthentiX 'username' Parameter Multiple Cross-Site Scripting Vulnerabilities | 2008-11-28 |
| XRMS CRM 'msg' Parameter Cross Site Scripting Vulnerability | 2008-11-28 |
| Multiple Canon Multifunction Printers FTP Bounce Vulnerability | 2008-11-28 |
| Centreon 'color_picker.php' Multiple Cross-Site Scripting Vulnerabilities | 2008-11-28 |
| am-utils 'expn' Insecure Temporary File Creation Vulnerability | 2008-11-28 |
| NetBSD IPSec Policy Bypass Vulnerability | 2008-11-28 |
| NetWin SMSGate 'Content-Length' Parameter Denial Of Service Vulnerability | 2008-11-28 |
| Sun Solaris 10 'ipsecah(7P)' Kernel Module Local Denial of Service Vulnerability | 2008-11-28 |
| Wireshark 0.99.8 Multiple Denial of Service Vulnerabilities | 2008-11-28 |
| ManageEngine Applications Manager 'Search.do' Cross-Site Scripting Vulnerability | 2008-11-28 |
| Siemens SpeedStream 6520 HTTP Request Remote Denial Of Service Vulnerability | 2008-11-28 |
| Apple Safari WebKit 'calculateCompiledPatternLength()' Remote Code Execution Vulnerability | 2008-11-28 |
| Simple Machines Forum Multiple Remote File Include Vulnerabilities | 2008-11-28 |
| HP Compaq Business Notebook PC BIOS Local Denial of Service Vulnerability | 2008-11-28 |
| HP Compaq Notebook PC BIOS Local Unauthorized Access Vulnerability | 2008-11-28 |
| Joomla! and Mambo MyAlbum Component 'album' Parameter SQL Injection Vulnerability | 2008-11-28 |
| eggBlog Unspecifed Cookie SQL Injection Vulnerability | 2008-11-28 |
| Microsoft Internet Explorer 7 Popup Window Address Bar URI Spoofing Vulnerability | 2008-11-28 |
| auraCMS 'user.php' Access Validation Vulnerability | 2008-11-28 |
| BitDefender Antivirus 2008 Hooked SSDT Denial of Service Vulnerability | 2008-11-28 |
| Comodo Firewall Pro SSDT Hooks Multiple Local Vulnerabilities | 2008-11-28 |
| Sophos Anti-Virus SSDT Hooks Local Denial of Service Vulnerability | 2008-11-28 |
| Rising Antivirus SSDT 'NtOpenProcess()' Hook Local Denial of Service Vulnerability | 2008-11-28 |
| Lhaplus ZOO Archive Processing Remote Buffer Overflow Vulnerability | 2008-11-28 |
| PHPG Upload 'form_upload.php' Arbitrary File Upload Vulnerability | 2008-11-28 |
| miniBB 'bb_admin.php' Cross-Site Scripting Vulnerability | 2008-11-28 |
| Content Management System for Phprojekt 'graphie.php' Local File Include Vulnerability | 2008-11-28 |
| Apple QuickTime Unspecified Remote Code Execution Vulnerability | 2008-11-28 |
| Linux Terminal Server Project 'ldm' Information Disclosure Vulnerability | 2008-11-28 |
| MegaBBS Multiple SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-28 |
| ODFaq 'index.php' SQL Injection Vulnerability | 2008-11-28 |
| YourFreeWorld Jokes Site Script 'categorie' Parameter SQL Injection Vulnerability | 2008-11-28 |
| RETIRED: Joomla! and Mambo 'com_alphacontent' Component 'id' Parameter SQL Injection Vulnerability | 2008-11-28 |
| FluentCMS 'view.php' SQL Injection Vulnerability | 2008-11-28 |
| Multiple Bluemoon inc. Modules for XOOPS Unspecified Cross Site Scripting Vulnerabilities | 2008-11-28 |
| VicFTPS 'LIST' Command Remote Denial of Service Vulnerability | 2008-11-28 |
| ZoneMinder Multiple Unspecified Remote Code Execution Vulnerabilities | 2008-11-28 |
| Novell GroupWise 'mailto' URI Handler Buffer Overflow Vulnerability | 2008-11-28 |
| Prozilla Hosting Index 'directory.php' SQL Injection Vulnerability | 2008-11-28 |
| Softbiz Web Host Directory Script 'search_result.php' SQL Injection Vulnerability | 2008-11-28 |
| Acritum Femitter Server 'RETR' Command Remote Denial of Service Vulnerability | 2008-11-28 |
| WordPress Download Monitor Plugin 'id' Parameter SQL Injection Vulnerability | 2008-11-28 |
| Joovili 'category' Parameter SQL Injection Vulnerability | 2008-11-28 |
| IBM WebSphere Application Server Java Plugin Security Bypass Vulnerability | 2008-11-28 |
| QEMU 'vl.c' Security Bypass Vulnerability | 2008-11-28 |
| Symantec Backup Exec System Recovery Manager Directory Traversal Vulnerability | 2008-11-28 |
| DT Centrepiece SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-28 |
| Samba 'receive_smb_raw()' Buffer Overflow Vulnerability | 2008-11-28 |
| OpenSSL Multiple Denial of Service Vulnerabilities | 2008-11-28 |
| CA Internet Security Suite 'UmxEventCli.dll' ActiveX Control Arbitrary File Overwrite Vulnerability | 2008-11-28 |
| Joomla! and Mambo Artists Component 'idgalery' Parameter SQL Injection Vulnerability | 2008-11-28 |
| CiscoWorks Common Services Unspecified Remote Code Execution Vulnerability | 2008-11-28 |
| Calcium 'Calcium40.pl' Cross Site Scripting Vulnerability | 2008-11-28 |
| RETIRED: Apple Mac OS X 2008-003 Multiple Security Vulnerabilities | 2008-11-28 |
| Apple Mac OS X CoreTypes Unsafe Content Warning Weakness | 2008-11-28 |
| Apple Mac OS X Help Viewer 'help:topic' URI Buffer Overflow Vulnerability | 2008-11-28 |
| Apple Mac OS X CUPS Debug Logging Information Disclosure Vulnerability | 2008-11-28 |
| Apple Mac OS X iCal '.ics' File Handling Remote Code Execution Vulnerability | 2008-11-28 |
| Apple Mac OS X AppKit Malformed File Remote Code Execution Vulnerability | 2008-11-28 |
| International Components for Unicode Invalid ISO Character Handling Vulnerability | 2008-11-28 |
| Apple Mac OS X Pixlet Video Multiple Unspecified Memory Corruption Vulnerabilities | 2008-11-28 |
| Apple Mac OS X AFP Server File Sharing Unauthorized File Access Vulnerability | 2008-11-28 |
| Apple Mac OS X CoreFoundation CFData Object Handling Code Execution Vulnerability | 2008-11-28 |
| Apple Mac OS X Apple Type Services PDF Handling Code Execution Vulnerability | 2008-11-28 |
| Apple Mac OS X CFNetwork SSL Client Certificate Handling Information Disclosure Vulnerability | 2008-11-28 |
| Apple Mac OS X Mail Memory Corruption Vulnerability | 2008-11-28 |
| Apple Mac OS X Image Capture Webserver Directory Traversal Vulnerability | 2008-11-28 |
| Apple Mac OS X Wiki Server User Name Enumeration Weakness | 2008-11-28 |
| Apple Mac OS X ImageIO BMP/GIF Image Information Disclosure Vulnerability | 2008-11-28 |
| Apple Mac OS X ImageIO JPEG2000 Handling Remote Code Execution Vulnerability | 2008-11-28 |
| Apple Mac OS X Single Sign-On 'sso_util' Local Information Disclosure Vulnerability | 2008-11-28 |
| Apple Mac OS X Image Capture Local Arbitrary File Overwrite Vulnerability | 2008-11-28 |
| BlognPlus Unspecified SQL Injection Vulnerability | 2008-11-28 |
| PowerAward Multiple Local File Include and Cross-Site Scripting Vulnerabilities | 2008-11-28 |
| Joomla! and Mambo jabode 'id' Parameter SQL Injection Vulnerability | 2008-11-28 |
| PHP-Fusion Classifieds Module 'classifieds.php' SQL Injection Vulnerability | 2008-11-28 |
| SePortal 'poll.php' SQL Injection Vulnerability | 2008-11-28 |
| S.T.A.L.K.E.R Shadow of Chernobyl Multiple Remote Vulnerabilities | 2008-11-28 |
| W1L3D4 Philboard Cross-Site Scripting and SQL Injection Vulnerabilities | 2008-11-28 |
| OTManager Cookie Authentication Bypass Vulnerability | 2008-11-28 |
| SebracCMS Multiple SQL Injection Vulnerabilities | 2008-11-28 |
| Online Booking Manager 'checkavail.php' SQL Injection Vulnerability | 2008-11-28 |
| Joomla! and Mambo 'com_xewebtv' Component 'id' Parameter SQL Injection Vulnerability | 2008-11-28 |
| Greatclone Youtuber Clone 'ugroups.php' SQL Injection Vulnerability | 2008-11-28 |
| TalkBack 'help.php' Local File Include Vulnerability | 2008-11-28 |
| PunBB Unspecified Arbitrary SMTP Command Injection Vulnerability | 2008-11-28 |
| PunBB Multiple Cross-Site Scripting Vulnerabilities | 2008-11-28 |
| Pixelpost 'index.php' Local File Include Vulnerability | 2008-11-28 |
| Web Wiz Forums 'mode' Parameter Multiple Cross-Site Scripting Vulnerabilities | 2008-11-28 |
| reSIProcate Multiple Unspecified Memory Corruption Vulnerabilities | 2008-11-28 |
| Trac Unspecified Wiki Engine Cross-Site Scripting Vulnerability | 2008-11-28 |
| MyBB 'search.php' Cross-Site Scripting Vulnerability | 2008-11-28 |
| Trac Quickjump Function URI Redirection Vulnerability | 2008-11-28 |
| European Performance Systems Probe Builder Denial of Service Vulnerability | 2008-11-28 |
| Axesstel AXW-D800 Multiple Remote Authentication Bypass Vulnerabilities | 2008-11-28 |
| Jamroom Cookie Authentication Bypass Vulnerability and Multiple Unspecified Security Vulnerabilities | 2008-11-28 |
| Trend Micro OfficeScan 'OfficeScanRemoveCtrl.dll' ActiveX Multiple Buffer Overflow Vulnerabilities | 2008-11-28 |
| Web Wiz Rich Text Editor 'RTE_popup_link.asp' Cross Site Scripting Vulnerability | 2008-11-28 |
| ViArt Shop 'products_rss.php' SQL Injection Vulnerability | 2008-11-28 |
| Owl Intranet Engine 'register.php' Cross Site Scripting Vulnerability | 2008-11-28 |
| ATutor 'import.php' Remote File Include Vulnerability | 2008-11-28 |
| AVG Anti-Virus UPX File Parsing Denial of Service Vulnerability | 2008-11-28 |
| HTTrack URI Parsing Remote Buffer Overflow Vulnerability | 2008-11-28 |
| ImpressCMS Unspecified Remote Vulnerabilities | 2008-11-28 |
| Acoustica Mixcraft '.mx4' Image File Name Buffer Overflow Vulnerability | 2008-11-28 |
| Sun Solaris Kernel Covert Channel Creation Security Bypass Vulnerability | 2008-11-28 |
| PureMessage for Microsoft Exchange RTF Multiple Denial Of Service Vulnerabilities | 2008-11-28 |
| APTonCD Insecure Temporary File Creation Vulnerability | 2008-11-28 |
| Aegis 'aegis.cgi' Insecure Temporary File Creation Vulnerability | 2008-11-28 |
| Carmosa PHPCart 'phpcart.php' Multiple Cross-Site Scripting Vulnerabilities | 2008-11-28 |
| aview 'asciiview' Insecure Temporary File Creation Vulnerability | 2008-11-28 |
| AudioLink Insecure Temporary File Creation Vulnerability | 2008-11-28 |
| Carmosa PHPCart Order Modification Data Integrity Vulnerability | 2008-11-28 |
| gdrae Insecure Temporary File Creation Vulnerability | 2008-11-28 |
| Friendly Technologies 'fwRemoteCfg.dll' ActiveX Control Arbitrary Command Execution Vulnerability | 2008-11-28 |
| Amanda CDRW-Taper Insecure Temporary File Creation Vulnerability | 2008-11-28 |
| Friendly Technologies 'fwRemoteCfg.dll' ActiveX Control Remote Buffer Overflow Vulnerability | 2008-11-28 |
| CDcontrol Insecure Temporary File Creation Vulnerability | 2008-11-28 |
| Crossfire crossfire-maps Insecure Temporary File Creation Vulnerability | 2008-11-28 |
| Advanced Electron Forum 'username' Parameter Cross Site Scripting Vulnerability | 2008-11-28 |
| ARB Multiple Insecure Temporary File Creation Vulnerabilities | 2008-11-28 |
| Apertium Multiple Insecure Temporary File Creation Vulnerabilities | 2008-11-28 |
| Caudium Insecure Temporary File Creation Vulnerability | 2008-11-28 |
| cman 'fence_egenera' Insecure Temporary File Creation Vulnerability | 2008-11-28 |
| Novell eDirectory Multiple Buffer Overflow And Cross-Site Scripting Vulnerabilities | 2008-11-28 |
| Open Media Collectors Database Multiple Cross Site Scripting Vulnerabilities | 2008-11-28 |
| MySQL Empty Binary String Literal Remote Denial Of Service Vulnerability | 2008-11-28 |
| ZEEWAYS ZEELYRICS 'bannerclick.php' SQL Injection Vulnerability | 2008-11-28 |
| ParsaGostar ParsaWeb Multiple SQL Injection Vulnerabilities | 2008-11-28 |
| PHPcounter 'index.php' SQL Injection Vulnerability | 2008-11-28 |
| Pilot Group eTraining 'news_read.php' SQL Injection Vulnerability | 2008-11-28 |
| Joomla Image Browser Component 'index.php' Directory Traversal Vulnerability | 2008-11-28 |
| BbZL.PhP Cookie Authentication Bypass Vulnerability | 2008-11-28 |
| Pro Chat Rooms Multiple SQL Injection Vulnerabilities | 2008-11-28 |
| BbZL.PhP 'lien_2' Parameter Directory Traversal Vulnerability | 2008-11-28 |
| eZoneScripts Adult Banner Exchange Website 'click.php' SQL Injection Vulnerability | 2008-11-28 |
| libgadu Contact Description Remote Buffer Overflow Vulnerability | 2008-11-28 |
| PHP-Nuke Nuke League Module 'tid' Parameter Cross-Site Scripting Vulnerability | 2008-11-28 |
| PersianBB 'iranian_music.php' SQL Injection Vulnerability | 2008-11-28 |
| Graphiks MyForum Cookie Authentication Bypass Vulnerability | 2008-11-28 |
| Novell eDirectory NCP Get Extension Information Request Remote Heap Memory Corruption Vulnerability | 2008-11-28 |
| Multiple products Unspecified Library MP4 File Remote Denial of Service Vulnerability | 2008-11-28 |
| tlGuestBook Cookie Authentication Bypass Vulnerability | 2008-11-28 |
| Agares Media ThemeSiteScript 'frontpage_right.php' Remote File Include Vulnerability | 2008-11-28 |
| H2O-CMS PHP Code Injection and Cookie Authentication Bypass Vulnerabilities | 2008-11-28 |
| H&H Solutions WebSoccer 'id' SQL Injection Vulnerability | 2008-11-28 |
| Elkagroup Image Gallery 'view.php' SQL Injection Vulnerability | 2008-11-28 |
| Atlassian JIRA Cross Site Scripting and HTML Injection Vulnerabilities | 2008-11-28 |
| KKE Info Media Kmita Catalogue 'search.php' Cross Site Scripting Vulnerability | 2008-11-28 |
| Linux Kernel 'sendmsg()' Local Denial of Service Vulnerability | 2008-11-28 |
| CUPS PNG Filter '_cupsImageReadPNG()' Integer Overflow Vulnerability | 2008-11-28 |
| Basic PHP CMS 'id' Parameter SQL Injection Vulnerability | 2008-11-28 |
| Web Calendar System SQL Injection and Cross Site Scripting Vulnerabilities | 2008-11-28 |
| SailPlanner Login SQL Injection Vulnerability | 2008-11-28 |
| Bluo 'index.php' SQL Injection Vulnerability | 2008-11-28 |
| CMS Little 'term' Parameter SQL Injection Vulnerability | 2008-11-28 |
| Ocean12 FAQ Manager Pro 'id' Parameter SQL Injection Vulnerability | 2008-11-28 |
| ReVou Login SQL Injection Vulnerability | 2008-11-28 |
| RakhiSoftware Shopping Cart Multiple Remote Vulnerabilities | 2008-11-28 |
| Little CMS Buffer Overflow and Integer Signedness Vulnerabilities | 2008-11-28 |
| BreakPoint Software Hex Workshop CMAP File Handling Buffer Overflow Vulnerability | 2008-11-28 |
| BulletProof FTP Client '.bps' File Stack Buffer Overflow Vulnerability | 2008-11-28 |
| W3C Amaya Multiple HTML Tags Buffer Overflow Vulnerabilities | 2008-11-28 |
| eDreamers eDContainer 'lg' Parameter Local File Include Vulnerability | 2008-11-28 |
| eDreamers eDNews 'lg' Parameter Local File Include Vulnerability | 2008-11-28 |
| Web Scribble Solutions webClassifieds Multiple SQL Injection Vulnerabilities | 2008-11-28 |
| Owen Technologies OwenPoll Cookie Authentication Bypass Vulnerability | 2008-11-28 |
| AlstraSoft Web Email Script Enterprise 'id' Parameter SQL Injection Vulnerability | 2008-11-28 |
| Flexphplink Pro 'submitlink.php' Arbitrary File Upload Vulnerability | 2008-11-28 |
| Joomla! Pax Gallery 'gid' Parameter SQL Injection Vulnerability | 2008-11-28 |
| DeluxeBB 'pm.php' SQL Injection Vulnerability | 2008-11-28 |
| xterm DECRQSS Remote Command Execution Vulnerability | 2008-11-28 |
| Linux Kernel '/drivers/net/r8169.c' Out-of-IOMMU Error Local Denial of Service Vulnerability | 2008-11-28 |
| activePDF Server Packet Processing Remote Heap Overflow Vulnerability | 2008-11-27 |
| InterVideo WinDVD Media Center Remote Denial of Service Vulnerabilities | 2008-11-27 |
| Ghostscript zseticcspace() Function Buffer Overflow Vulnerability | 2008-11-27 |
| Joomla! and Mambo 'com_simpleboard' Component 'catid' Parameter SQL Injection Vulnerability | 2008-11-27 |
| eazyPortal 'upwd' and 'uname' Multiple SQL Injection Vulnerabilities | 2008-11-27 |
| Trend Micro OfficeScan Buffer Overflow Vulnerability and Denial of Service Vulnerability | 2008-11-27 |
| Centreon 'get_image.php' Local File Include Vulnerability | 2008-11-27 |
| D-Bus 'send_interface' Attribute Security Policy Bypass Vulnerability | 2008-11-27 |
| GROUP-E 'head_auth.php' Remote File Include Vulnerability | 2008-11-27 |
| Wireshark 0.99.7 Multiple Denial of Service Vulnerabilities | 2008-11-27 |
| Drupal Multiple HTML Injection Vulnerabilities | 2008-11-27 |
| Citrix Presentation And Desktop Servers Information Disclosure Vulnerability | 2008-11-27 |
| Sun Java System Access Manager Administration Console Multiple Cross-Site Scripting Vulnerabilities | 2008-11-27 |
| Sun Java Server Faces Cross-Site Scripting Vulnerability | 2008-11-27 |
| SCO UnixWare 'pkgadd' Local Privilege Escalation Vulnerability | 2008-11-27 |
| GNB DesignForm Cross-Site Scripting Vulnerability | 2008-11-27 |
| PerlMailer Cross-Site Scripting Vulnerability | 2008-11-27 |
| DigiDomain Multiple Cross-Site Scripting Vulnerabilities | 2008-11-27 |
| JAF CMS 'website' and 'main_dir' Parameters Multiple Remote File Include Vulnerabilities | 2008-11-27 |
| Multiple BSD Platforms 'strfmon()' Function Integer Overflow Weakness | 2008-11-27 |
| policyd-weight Insecure Temporary File Creation Vulnerability | 2008-11-27 |
| HP TCP/IP Services for OpenVMS SSH Unspecified Remote Unauthorized Access Vulnerability | 2008-11-27 |
| GnuPG Duplicated Key Import Memory Corruption Vulnerability | 2008-11-27 |
| Lighttpd SSL Error Denial of Service Vulnerability | 2008-11-27 |
| Sympa 'Content-Type' Header Remote Denial Of Service Vulnerability | 2008-11-27 |
| HP Software Update 'Hpufunction.dll' ActiveX Control Insecure Method Vulnerabilities | 2008-11-27 |
| E-Post MailServer Remote Information Disclosure Vulnerability | 2008-11-27 |
| PhpGedView Unspecified Remote Vulnerability | 2008-11-27 |
| TYPO3 'KJ: Image Lightbox v2' Extension Unspecified Cross Site Scripting Vulnerability | 2008-11-27 |
| TYPO3 'sg_zfelib' Extension Multiple SQL Injection Vulnerabilities | 2008-11-27 |
| Retired: Adobe Flash Player SWF File Remote Code Execution Vulnerability | 2008-11-27 |
| BT Home Hub Administrator Password Information Disclosure Vulnerability | 2008-11-27 |
| Tr Script News 'news.php' Cross-Site Scripting Vulnerability | 2008-11-27 |
| trombyn 'demoupload.php' Arbitrary File Upload Vulnerability | 2008-11-27 |
| Creative Labs AutoUpdate Eng 'CTSUEng.ocx' ActiveX Control Remote Buffer Overflow Vulnerability | 2008-11-27 |
| RevokeBB 'search' Parameter SQL Injection Vulnerability | 2008-11-27 |
| CKGold Shopping Cart 'item.php' SQL Injection Vulnerability | 2008-11-27 |
| Linux Kernel SPARC 'mmap()' Denial Of Service Vulnerability | 2008-11-27 |
| EMC AlphaStor Library Manager 'CreateProcess()' Function Remote Code Execution Vulnerability | 2008-11-27 |
| EMC AlphaStor Server Agent Multiple Stack Based Buffer Overflow Vulnerabilities | 2008-11-27 |
| Fedora 'system-config-network' Security Bypass Vulnerability | 2008-11-27 |
| Yasna Yazd Discussion Forum Multiple Cross-Site Scripting Vulnerabilities | 2008-11-27 |
| Cybozu Garoon Session Fixation and Cross Site Scripting Vulnerabilities | 2008-11-27 |
| Mozilla Firefox Malformed JPEG File Denial of Service Vulnerability | 2008-11-27 |
| Microsoft Internet Explorer Frame Location Cross Domain Security Bypass Vulnerability | 2008-11-27 |
| Mask PHP File Manager Configuration Security Bypass Vulnerability | 2008-11-27 |
| Sun Java System Access Manager XSLT Stylesheets XML Signature Remote Code Execution Vulnerability | 2008-11-27 |
| AceFTP 'LIST' Command Directory Traversal Vulnerability | 2008-11-27 |
| Linux kernel 'sctp_getsockopt_local_addrs_old() ' function Local Buffer Overflow Vulnerability | 2008-11-27 |
| Microsoft Dynamics GP Denial of Service and Multiple Remote Buffer Overflow Vulnerabilities | 2008-11-27 |
| OTManager 'conteudo' Parameter Local File Include and Cross-Site Scripting Vulnerabilities | 2008-11-27 |
| Greatclone Getacoder Clone 'search_form.php' SQL Injection Vulnerability | 2008-11-27 |
| Greatclone GC Auction Platinum 'category.php' SQL Injection Vulnerability | 2008-11-27 |
| SiteAdmin CMS 'art' Parameter 'line2.php' SQL Injection Vulnerability | 2008-11-27 |
| TamperData Firefox Plugin HTML Injection Vulnerability | 2008-11-27 |
| Sharity Unspecified Security Vulnerability | 2008-11-27 |
| Ultra Office Control 'HttpUpload()' Method Buffer Overflow Vulnerability | 2008-11-27 |
| phpMyRealty Multiple SQL Injection Vulnerabilities | 2008-11-27 |
| Ultra Office Control 'Save()' Method Arbitrary File Overwrite Vulnerability | 2008-11-27 |
| AbleSpace 'adv_cat.php' Cross-Site Scripting Vulnerability | 2008-11-27 |
| HP Enterprise Discovery Unspecified Remote Privilege Escalation Vulnerability | 2008-11-27 |
| OpenOffice 'rtl_allocateMemory()' Remote Code Execution Vulnerability | 2008-11-27 |
| YourOwnBux 'memberstats.php' SQL Injection Vulnerability | 2008-11-27 |
| Red Hat Directory Server Accept Language HTTP Headers Buffer Overflow Vulnerability | 2008-11-27 |
| Red Hat Directory Server Multiple Cross Site Scripting Vulnerabilities | 2008-11-27 |
| Red Hat Directory Server Crafted Search Pattern Denial of Service Vulnerability | 2008-11-27 |
| Red Hat Directory Server LDAP Memory Leak Multiple Remote Denial Of Service Vulnerabilities | 2008-11-27 |
| Linux Kernel 'shmem_delete_inode()' Local Denial of Service Vulnerability | 2008-11-27 |
| Novell ZENworks Desktop Management ActiveX Control 'CanUninstall()' Buffer Overflow Vulnerability | 2008-11-27 |
| WhoDomLite 'wholite.cgi' Cross Site Scripting Vulnerability | 2008-11-27 |
| Lyrics Script 'search_results.php' Cross Site Scripting Vulnerability | 2008-11-27 |
| Clickbank Portal 'search.php' Cross Site Scripting Vulnerability | 2008-11-27 |
| Siteman 'search.php' Cross-Site Scripting Vulnerability | 2008-11-27 |
| Siteman 'members.txt' Information Disclosure Vulnerability | 2008-11-27 |
| Membership Script Multiple Cross Site Scripting Vulnerabilities | 2008-11-27 |
| Recipe Script 'search.php' Cross Site Scripting Vulnerability | 2008-11-27 |
| Conkurent Real Estate Manager 'cat_id' Parameter SQL Injection Vulnerability | 2008-11-27 |
| Joovili 'id' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-27 |
| E-Uploader PRO 'id' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-27 |
| BitmixSoft PHP-Lance 'show.php' SQL Injection Vulnerability | 2008-11-27 |
| MyCard 'gallery.php' SQL Injection Vulnerability | 2008-11-27 |
| Yoxel 'itpm_estimate.php' Multiple PHP Code Injection Vulnerabilities | 2008-11-27 |
| VBGooglemap Hotspot Edition Multiple SQL Injection Vulnerabilities | 2008-11-27 |
| PowerPortal 2 'path' Parameter Directory Traversal Vulnerability | 2008-11-27 |
| Camera Life Arbitrary File Upload Vulnerability | 2008-11-27 |
| PlugSpace 'index.php' Local File Include Vulnerability | 2008-11-27 |
| LnBlog 'showblog.php' Local File Include Vulnerability | 2008-11-27 |
| X7 Chat 'mini.php' Local File Include Vulnerability | 2008-11-27 |
| Concord Consortium CoAST 'header.php' Remote File Include Vulnerability | 2008-11-27 |
| RPG.Board Cookie Authentication Bypass Vulnerability | 2008-11-27 |
| Mozilla Firefox '.url' Shortcut Processing Information Disclosure Vulnerability | 2008-11-27 |
| Persia BME E-Catalogue 'search.asp' SQL Injection Vulnerability | 2008-11-27 |
| Netpbm 'pamperspective' Utility Buffer Overflow Vulnerability | 2008-11-27 |
| phpMyAdmin 'pmd_pdf.php' Cross Site Scripting Vulnerability | 2008-11-27 |
| bcoos 'include/common.php' Remote File Include Vulnerability | 2008-11-27 |
| Tandis CMS 'index.php' Multiple SQL Injection Vulnerabilities | 2008-11-27 |
| Blender 'BPY_interface.c' Remote Command Execution Vulnerability | 2008-11-27 |
| Python 'Imageop' Module Argument Validation Buffer Overflow Vulnerability | 2008-11-27 |
| Eaton Network Shutdown Module Authentication Bypass Vulnerability | 2008-11-27 |
| Graphiks MyForum 'centre.php' Local File Include Vulnerability | 2008-11-27 |
| MyBB 'moderation.php' Cross-Site Scripting Vulnerability | 2008-11-27 |
| MyBB Message Attachment Predictable Filename Information Disclosure Vulnerability | 2008-11-27 |
| Linux Kernel 'proc_do_xprt()' Local Buffer Overflow Vulnerability | 2008-11-27 |
| Perl File::Find::Object Module Format String Vulnerability | 2008-11-27 |
| tlAds Cookie Authentication Bypass Vulnerability | 2008-11-27 |
| e107 CMS 'alternate_profiles' Plugin 'newuser.php' SQL Injection Vulnerability | 2008-11-27 |
| bcoos 'modules/banners/click.php' SQL Injection Vulnerability | 2008-11-27 |
| MyKtools 'update.php' Local File Include Vulnerability | 2008-11-27 |
| Questwork QuestCMS Multiple Remote Vulnerabilities | 2008-11-27 |
| WebGUI 'Asset.pm' Perl Module Handling Code Execution Vulnerability | 2008-11-27 |
| e107 CMS EasyShop Plugin 'easyshop.php' SQL Injection Vulnerability | 2008-11-27 |
| All In One Control Panel 'cp_polls_results.php' SQL Injection Vulnerability | 2008-11-27 |
| MyKtools Database Disclosure Vulnerability | 2008-11-27 |
| Microsoft Internet Explorer ' ' Address Bar URI Spoofing Vulnerability | 2008-11-27 |
| Samba Arbitrary Memory Contents Information Disclosure Vulnerability | 2008-11-27 |
| ImpressCMS 'PHPSESSID' Session Fixation Vulnerability | 2008-11-27 |
| Linksys WRT160N 'apply.cgi' Cross-Site Scripting Vulnerability | 2008-11-27 |
| MemeCode Software i.Scribe Remote Format String Vulnerability | 2008-11-27 |
| TxtBlog 'm' Parameter Local File Include Vulnerability | 2008-11-27 |
| AssoCIateD 'menu' Parameter Cross Site Scripting Vulnerability | 2008-11-27 |
| RaidSonic ICY BOX NAS 'userHandler.cgi' Authentication Bypass Vulnerability | 2008-11-27 |
| Family Project Login Page SQL Injection Vulnerability | 2008-11-27 |
| Ocean12 Contact Manager Pro 'default.asp' SQL Injection Vulnerability | 2008-11-27 |
| Ocean12 Contact Manager Pro 'DisplayFormat' Parameter Cross Site Scripting Vulnerability | 2008-11-27 |
| RETIRED: Rakhi Software Price Comparison Script 'product.php' SQL Injection Vulnerability | 2008-11-27 |
| Web Calendar Pro 'admin.php' SQL Injection Vulnerability | 2008-11-27 |
| Ocean12 Membership Manager Pro 'login.asp' SQL Injection Vulnerability | 2008-11-27 |
| Star Articles 'user.modify.profile.php' Arbitrary File Upload Vulnerability | 2008-11-27 |
| PageTree CMS 'main.php' Remote File Include Vulnerability | 2008-11-27 |
| Turnkey Arcade Script 'id' Parameter SQL Injection Vulnerability | 2008-11-27 |
| Venalsur Booking Centre 'HotelID' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-27 |
| Subtext Anchor Tags HTML Injection Vulnerability | 2008-11-27 |
| MailScanner Infinite Loop Denial of Service Vulnerability | 2008-11-27 |
| Livio.net WEB Calendar Cross Site Scripting and Multiple SQL Injection Vulnerabilities | 2008-11-27 |
| SPIP 'rubriques.php' SQL Injection Vulnerability | 2008-11-27 |
| IntelliTamper 'MAP' File Buffer Overflow Vulnerability | 2008-11-27 |
| F5 BIG-IP Application Security Manager 'report_type' Cross-Site Scripting Vulnerability | 2008-11-26 |
| Gerd Tentler Simple Forum Multiple Input Validation Vulnerabilities | 2008-11-26 |
| Symantec Decomposer Resource Consumption Denial of Service Vulnerability | 2008-11-26 |
| Symantec Decomposer RAR File Remote Buffer Overflow Vulnerability | 2008-11-26 |
| Move Media Player Quantum Streaming 'qsp2ie07074039.dl ActiveX Control Buffer Overflow Vulnerability | 2008-11-26 |
| MiniNuke 'members.asp' SQL Injection Vulnerability | 2008-11-26 |
| KVM Block Device Backend Local Security Bypass Vulnerability | 2008-11-26 |
| H-Sphere SiteStudio Unspecified Vulnerability | 2008-11-26 |
| S9Y Serendipity 'Real Name' Field HTML Injection Vulnerability | 2008-11-26 |
| Nortel UNIStim IP Phone Remote Ping Denial of Service Vulnerability | 2008-11-26 |
| VideoLAN VLC Media Player MP4 Demuxer Remote Code Execution Vulnerability | 2008-11-26 |
| Nukedit 'email' Parameter SQL Injection Vulnerability | 2008-11-26 |
| Various IP Security Camera ActiveX Controls 'url' Attribute Buffer Overflow Vulnerability | 2008-11-26 |
| RETIRED: Microsoft Word Unspecified Remote Code Execution Vulnerability | 2008-11-26 |
| Mozilla Thunderbird External-Body MIME Remote Heap Buffer Overflow Vulnerability | 2008-11-26 |
| Symark PowerBroker Client Multiple Local Buffer Overflow Vulnerabilities | 2008-11-26 |
| XWine Printing Insecure Temporary File Creation Vulnerability | 2008-11-26 |
| Mozilla Thunderbird/Seamonkey/Firefox 2.0.0.12 Multiple Remote Vulnerabilities | 2008-11-26 |
| CubeCart Cross-Site Scripting Vulnerabilities | 2008-11-26 |
| Blackboard Academic Suite Multiple Cross-Site Scripting Vulnerabilities | 2008-11-26 |
| phpAddressBook 'index.php' SQL Injection Vulnerability | 2008-11-26 |
| PECL Alternative PHP Cache Extension 'apc_search_paths()' Buffer Overflow Vulnerability | 2008-11-26 |
| Aztech ADSL2/2+ 4 Port Router Remote Command Injection Vulnerability | 2008-11-26 |
| Quick Tftp Server Pro 'mode' Remote Buffer Overflow Vulnerability | 2008-11-26 |
| Cisco IOS Virtual Private Dial-up Network Multiple Denial of Service Vulnerabilities | 2008-11-26 |
| Cisco IOS Dual-stack Router IPv6 Denial Of Service Vulnerability | 2008-11-26 |
| TFTP Server Packet Handling Remote Buffer Overflow Vulnerability | 2008-11-26 |
| Cisco IOS With OSPF, MPLS VPN, Sup32, Sup720 or RSP720 Denial of Service Vulnerability | 2008-11-26 |
| Cisco IOS Multicast Virtual Private Network MDT Data Join Handling Vulnerability | 2008-11-26 |
| Cisco IOS Multiple DLSw Denial of Service Vulnerablities | 2008-11-26 |
| Invision Power Board 'Signature' iFrame Security Vulnerability | 2008-11-26 |
| IBM AIX Kernel Security Advisory 2008.03.26 Multiple Vulnerabilities | 2008-11-26 |
| IBM solidDB Format String Vulnerability and Multiple Denial of Service Vulnerabilities | 2008-11-26 |
| Sun SPARC Enterprise T5120 and T5220 Servers Insecure Default Configuration Vulnerability | 2008-11-26 |
| GeeCarts Multiple Input Validation Vulnerabilities | 2008-11-26 |
| KDE KHTML PNGLoader Heap Buffer Overflow Vulnerability | 2008-11-26 |
| KDE 'start_kdeinit' Multiple Local Privilege Escalation Vulnerabilities | 2008-11-26 |
| Kantaris SSA Subtitle File Remote Buffer Overflow Vulnerability | 2008-11-26 |
| RETIRED: Watchfire AppScan ActiveX Control Multiple Arbitrary File Overwrite Vulnerabilities | 2008-11-26 |
| Sun Java System Directory Proxy Server Remote Unauthorized Access Vulnerability | 2008-11-26 |
| Joomla Visites Component mosConfig_absolute_path Remote File Include Vulnerability | 2008-11-26 |
| Siteman 'module' Parameter Cross-Site Scripting and Local File Include Vulnerability | 2008-11-26 |
| Novell GroupWise HTML Injection and Denial of Service Vulnerabilities | 2008-11-26 |
| Microsoft Excel JavaScript Code Remote Denial Of Service Vulnerability | 2008-11-26 |
| pnFlashGames PostNuke module 'id' Parameter SQL Injection Vulnerability | 2008-11-26 |
| Angelo-Emlak Multiple SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-26 |
| PHP Forge 'id' Parameter SQL Injection Vulnerability | 2008-11-26 |
| RunCMS MyArticles module 'topic_id' Parameter SQL Injection Vulnerability | 2008-11-26 |
| PHPizabi 'template.class.php' Remote Information Disclosure Vulnerability | 2008-11-26 |
| Zina 'index.php' Multiple Input Validation Vulnerabilities | 2008-11-26 |
| miniCWB 'connector.php' Multiple Cross-Site Scripting Vulnerabilities | 2008-11-26 |
| AbleSpace 'adv_cat.php' SQL Injection Vulnerability | 2008-11-26 |
| Excuse Online 'pwd.asp' SQL Injection Vulnerability | 2008-11-26 |
| phpFix Multiple SQL Injection Vulnerabilities | 2008-11-26 |
| ClassSystem Multiple SQL Injection Vulnerabilities and Arbitrary File Upload Vulnerability | 2008-11-26 |
| Mambo Prior to 4.6.4 Multiple Input Validation Vulnerabilities | 2008-11-26 |
| OneCMS 'load' Parameter Local File Include Vulnerability | 2008-11-26 |
| Campus Bulletin Board SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-26 |
| The Campus Request Repairs System 'sentout.asp' Unauthorized Access Vulnerability | 2008-11-26 |
| RoomPHPlanning 'userform.php' Unauthorized Access Vulnerability | 2008-11-26 |
| Anubis Plugin for encrypt Original File Size Information Disclosure Weakness | 2008-11-26 |
| RoomPHPlanning 'weekview.php' SQL Injection Vulnerability | 2008-11-26 |
| MAXSITE 'index.php' SQL Injection Vulnerability | 2008-11-26 |
| CuteFTP 'LIST' Command Directory Traversal Vulnerability | 2008-11-26 |
| NASM Multiple Buffer Overflow Vulnerabilities | 2008-11-26 |
| Pidgin 'msn_slplink_process_msg()' Multiple Integer Overflow Vulnerabilities | 2008-11-26 |
| Commtouch Anti-Spam Enterprise Gateway 'PARAMS' Parameter Cross-Site Scripting Vulnerability | 2008-11-26 |
| GNOME Rhythmbox Malformed Playlist File Denial Of Service Vulnerability | 2008-11-26 |
| The Rat CMS Multiple SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-26 |
| Microsoft Internet Explorer 'location' & 'location.href' Cross Domain Security Bypass Vulnerability | 2008-11-26 |
| GNOME Evolution 'html_engine_get_view_width()' Denial Of Service Vulnerability | 2008-11-26 |
| Galmeta Post 'test_adodb_lite.php' Multiple Local File Include Vulnerabilities | 2008-11-26 |
| UUSee UUUpgrade ActiveX Control 'Update' Method Arbitrary File Download Vulnerability | 2008-11-26 |
| Nextime Solutions Procapita Multiple Remote Vulnerabilities | 2008-11-26 |
| Sun Solaris Unspecified 'snmpXdmid(1M)' Remote Denial of Service Vulnerability | 2008-11-26 |
| EasySiteNetwork Riddles Complete Website 'riddle.php' SQL Injection Vulnerability | 2008-11-26 |
| EasySiteNetwork Tips Complete Website 'tip.php' SQL Injection Vulnerability | 2008-11-26 |
| EasySiteNetwork Jokes Complete Website 'joke.php' SQL Injection Vulnerability | 2008-11-26 |
| EasySiteNetwork Drinks Complete Website 'drink.php' SQL Injection Vulnerability | 2008-11-26 |
| EasySiteNetwork Cheats Complete Website 'item.php' SQL Injection Vulnerability | 2008-11-26 |
| Keller Web Admin 'action' Parameter Local File Include Vulnerability | 2008-11-26 |
| PolyPager 'nr' Parameter SQL Injection Vulnerability | 2008-11-26 |
| eTicket 'pri' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-26 |
| Orca 'params.php' Remote File Include Vulnerability | 2008-11-26 |
| PolyPager 'nr' Parameter Cross Site Scripting Vulnerability | 2008-11-26 |
| PHP-Fusion Kroax Module 'category' Parameter SQL Injection Vulnerability | 2008-11-26 |
| A+ PHP Scripts News Management System Cookie Authentication Bypass Vulnerability | 2008-11-26 |
| testMaker Remote Unspecified PHP Script Code Execution Vulnerability | 2008-11-26 |
| Seagull Arbitrary File Upload Vulnerability | 2008-11-26 |
| phpBLASTER CMS Multiple Local File Include Vulnerabilities | 2008-11-26 |
| Novell Client 'NWFS.SYS' IOCTL Request Local Privilege Escalation Vulnerability | 2008-11-26 |
| fipsCMS 'r' Parameter 'index.asp' SQL Injection Vulnerability | 2008-11-26 |
| IceBB SQL Injection Vulnerability | 2008-11-26 |
| Mobius Web Publishing Software Multiple SQL Injection Vulnerabilities | 2008-11-26 |
| phpwebnews-mysql Multiple SQL Injection Vulnerabilities | 2008-11-26 |
| Willoughby TriO SQL Injection Vulnerability | 2008-11-26 |
| CMScout 'common.php' Local File Include Vulnerability | 2008-11-26 |
| phpLinkat SQL Injection and Cookie Authentication Bypass Vulnerabilities | 2008-11-26 |
| EPShop 'pid' Parameter 'index.php' SQL Injection Vulnerability | 2008-11-26 |
| PhpWebGallery Information Disclosure Vulnerability | 2008-11-26 |
| JustSystems Ichitaro Document Handling Unspecified Code Execution Vulnerability | 2008-11-26 |
| Z-Breaknews 'single.php' SQL Injection Vulnerability | 2008-11-26 |
| LibTIFF 'tif_lzw.c' Remote Buffer Underflow Vulnerability | 2008-11-26 |
| mysql-lists Unspecified Cross Site Scripting Vulnerability | 2008-11-26 |
| NetBSD PPPoE Discovery Packet Remote Denial of Service Vulnerability | 2008-11-26 |
| Kolifa.net Download Script 'indir.php' SQL Injection Vulnerability | 2008-11-26 |
| Smart Survey 'surveyresults.asp' Cross Site Scripting Vulnerability | 2008-11-26 |
| K-Rate Multiple Input Validation Vulnerabilities | 2008-11-26 |
| ZoneMinder Multiple Input Validation Security Vulnerabilities | 2008-11-26 |
| Thickbox Gallery 'conf/admins.php' Information Disclosure Vulnerability | 2008-11-26 |
| HP System Management Homepage (SMH) 'message.php' Cross Site Scripting Vulnerability | 2008-11-26 |
| Linux Kernel 'sctp_setsockopt_auth_key()' Remote Denial of Service Vulnerability | 2008-11-26 |
| MatterDaddy Market 'admin/login.php' Cross Site Scripting Vulnerability | 2008-11-26 |
| Educe ASP Search Engine 'search.asp' Cross-Site Scripting Vulnerability | 2008-11-26 |
| iFdate 'members_search.php' SQL Injection Vulnerability | 2008-11-26 |
| Sun Solaris NFS RPC Local Denial of Service Vulnerability | 2008-11-26 |
| CMME Multiple Remote Security Vulnerabilities | 2008-11-26 |
| Kyocera Mita Scanner File Utility File Transfer Directory Traversal Vulnerability | 2008-11-26 |
| AWStats Totals 'sort' Parameter Remote Command Execution Vulnerabilities | 2008-11-26 |
| Simple PHP Blog 0.5.0 Multiple Remote Vulnerabilities | 2008-11-26 |
| BitlBee Unspecified Security Bypass Vulnerability | 2008-11-26 |
| IBM DB2 CLR Stored Procedures Deployment Unspecified Vulnerability | 2008-11-26 |
| IBM Lotus Quickr Multiple Unspecified Cross-Site Scripting Vulnerabilities | 2008-11-26 |
| Tiger 'genmsgidx' Insecure Temporary File Creation Vulnerability | 2008-11-26 |
| RPG.Board 'index.php' SQL Injection Vulnerability | 2008-11-26 |
| DATAC RealWin SCADA Server Remote Stack Buffer Overflow Vulnerability | 2008-11-26 |
| Barcode Generator 'LSTable.php' Remote File Include Vulnerability | 2008-11-26 |
| Microsoft Windows Mobile Overly Long Bluetooth Device Name Denial of Service Vulnerability | 2008-11-26 |
| Win FTP Server 'LSTR' Command Remote Denial Of Service Vulnerability | 2008-11-26 |
| Libra File Manager Cookie Authentication Bypass Vulnerability | 2008-11-26 |
| openEngine 'filepool.php' Remote File Include Vulnerability | 2008-11-26 |
| Ultimate Webboard 'webboard.php' SQL Injection Vulnerability | 2008-11-26 |
| PromoteWeb MySQL 'go.php' SQL Injection Vulnerability | 2008-11-26 |
| 212cafe Board 'view.php' SQL Injection Vulnerability | 2008-11-26 |
| Atomic Photo Album Cookie Authentication Bypass Vulnerability | 2008-11-26 |
| Esqlanelapse Cookie Authentication Bypass Vulnerability | 2008-11-26 |
| The Gemini Portal Cookie Authentication Bypass Vulnerability | 2008-11-26 |
| Crux Gallery 'index.php' Cookie Authentication Bypass Vulnerability | 2008-11-26 |
| ZoneAlarm HTTP Proxy Remote Denial of Service Vulnerability | 2008-11-26 |
| Microsoft GDI+ 'GDIPLUS.dll' ICO File Divide-By-Zero Denial of Service Vulnerability | 2008-11-26 |
| The Gemini Portal 'lang' Parameter Multiple Local File Include Vulnerabilities | 2008-11-26 |
| Lighttpd Duplicate Request Header Denial of Service Vulnerability | 2008-11-26 |
| Ads Pro 'dhtml.pl' Remote Command Execution Vulnerability | 2008-11-26 |
| SFS Ez Forum 'forum.php' SQL Injection Vulnerability | 2008-11-26 |
| PozScripts Classified Ads 'gotourl.php' SQL Injection Vulnerability | 2008-11-26 |
| Graphiks MyForum 'lecture.php' SQL Injection Vulnerability | 2008-11-26 |
| CMS Ortus Edit User Profile SQL Injection Vulnerability | 2008-11-26 |
| Post Affiliate Pro 'umprof_status' Parameter SQL Injection Vulnerability | 2008-11-26 |
| ParsBlogger 'blog.asp' SQL Injection Vulnerability | 2008-11-26 |
| Star Articles Multiple SQL Injection Vulnerabilities | 2008-11-26 |
| RETIRED: WHMCS 'status/index.php' Information Disclosure Vulnerability | 2008-11-26 |
| Drupal User Karma Module Cross Site Scripting and Multiple SQL Injection Vulnerabilities | 2008-11-26 |
| IBM AIX Multiple Local Privilege Escalation Vulnerabilities | 2008-11-26 |
| PunBB 'moderate.php' Cross-Site Scripting Vulnerability | 2008-11-26 |
| Perl Nopaste 'language' Parameter HTML Injection Vulnerability | 2008-11-26 |
| Pidgin 'msn_slplink_process_msg()' Denial of Service Vulnerability | 2008-11-26 |
| International Components for Unicode Library (libicu) Multiple Memory Corruption Vulnerabilities | 2008-11-25 |
| Persits Software XUpload 'AddFile()' Method ActiveX Control Remote Buffer Overflow Vulnerability | 2008-11-25 |
| UltraVNC VNCViewer 'ClientConnection.cpp' Remote Buffer Overflow Vulnerability | 2008-11-25 |
| OpenBSD IPv6 Routing Headers Remote Denial of Service Vulnerability | 2008-11-25 |
| Fujitsu Interstage Application Server Single Sign-On Buffer Overflow Vulnerability | 2008-11-25 |
| Joomla! and Mambo 'com_publication' Component 'pid' Parameter SQL Injection Vulnerability | 2008-11-25 |
| Joomla! and Mambo 'com_blog' Component 'pid' Parameter SQL Injection Vulnerability | 2008-11-25 |
| Gary's Cookbook 'id' Parameter SQL Injection Vulnerability | 2008-11-25 |
| Softbiz Jokes and Funny Pictures Script 'sbcat_id' Parameter SQL Injection Vulnerability | 2008-11-25 |
| Matt's Whois 'mwhois.php' Cross-Site Scripting Vulnerability | 2008-11-25 |
| Joomla! and Mambo 'com_wines' Component 'id' Parameter SQL Injection Vulnerability | 2008-11-25 |
| phpRaider Resistance Field HTML Injection Vulnerability | 2008-11-25 |
| Galore Simple Shop 'section' Parameter SQL Injection Vulnerability | 2008-11-25 |
| XOOPS XM-Memberstats Module 'letter' and 'sortby' Parameters Multiple SQL Injection Vulnerabilities | 2008-11-25 |
| PHP-Nuke Sell Module 'cid' Parameter SQL Injection Vulnerability | 2008-11-25 |
| MyServer Mutltiple HTTP Methods '204 Not Content' Error Remote Denial of Service Vulnerabilities | 2008-11-25 |
| Packeteer PacketShaper and PolicyCenter 'FILELIST' Parameter Cross-Site Scripting Vulnerability | 2008-11-25 |
| WordPress Sniplets Plugin Multiple Input Validation Vulnerabilities | 2008-11-25 |
| Alkacon OpenCms 'tree_files.jsp' Cross-Site Scripting Vulnerability | 2008-11-25 |
| The SWORD Project Diatheke Unspecified Remote Command Execution Vulnerability | 2008-11-25 |
| CUPS Multiple Remote Denial of Service Vulnerabilities | 2008-11-25 |
| PORAR Webboard 'question.asp' SQL Injection Vulnerability | 2008-11-25 |
| SurgeMail and WebMail 'Page' Command Remote Format String Vulnerability | 2008-11-25 |
| PHP-Nuke Kose_Yazilari Module 'artid' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-25 |
| SurgeMail Real CGI executables Remote Buffer Overflow Vulnerability | 2008-11-25 |
| SurgeFTP 'Content-Length' Parameter NULL Pointer Denial Of Service Vulnerability | 2008-11-25 |
| Joomla! and Mambo 'com_inter' Component 'id' Parameter SQL Injection Vulnerability | 2008-11-25 |
| DrBenHur.com DBHcms 'mod.extmanager.php' Remote File Include Vulnerability | 2008-11-25 |
| Rising Web Scan Object 'OL2005.dll' ActiveX Control Remote Code Execution Vulnerability | 2008-11-25 |
| pfSense Unspecified Cross-Site Scripting Vulnerabilities | 2008-11-25 |
| SILC Client and Server Key Negotiation Protocol Remote Buffer Overflow Vulnerability | 2008-11-25 |
| Orb Networks Orb RPC Request Remote Integer Overflow Vulnerability | 2008-11-25 |
| Bomba Haber 'haberoku.php' SQL Injection Vulnerability | 2008-11-25 |
| Aeries Browser Interface Multiple SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-25 |
| Clever Copy 'postview.php' SQL Injection Vulnerability | 2008-11-25 |
| DotNetNuke Prior to 4.8.2 Multiple Remote Vulnerabilities | 2008-11-25 |
| Multiple D-Link Products Multiple Cross-Site Scripting and Denial of Service Vulnerabilities | 2008-11-25 |
| e107 My_Gallery Plugin 'dload.php' Arbitrary File Download Vulnerability | 2008-11-25 |
| Novell eDirectory eMBox Utility 'edirutil' Command Unspecified Vulnerability | 2008-11-25 |
| LEADTOOLS Multimedia 'LTMM15.DLL' ActiveX Control Arbitrary File Overwrite Vulnerabilities | 2008-11-25 |
| Joomla! and Mambo Alphacontent Component 'id' Parameter SQL Injection Vulnerability | 2008-11-25 |
| OpenSSH X Connections Session Hijacking Vulnerability | 2008-11-25 |
| BolinOS Local File Include Vulnerability and Multiple Cross-Site Scripting Vulnerabilities | 2008-11-25 |
| phpBB PJIRC Module 'irc.php' Local File Include Vulnerability | 2008-11-25 |
| TopperMod 'localita' Parameter SQL Injection Vulnerability | 2008-11-25 |
| TopperMod 'mod.php' Local File Include Vulnerability | 2008-11-25 |
| MPlayer 'sdpplin_parse()' RTSP Integer Overflow Vulnerability | 2008-11-25 |
| miniBB Multiple SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-25 |
| PostNuke PostSchedule Component 'eid' Parameter SQL Injection Vulnerability | 2008-11-25 |
| National Rail Enquiries Live Departure Boards Gadget Remote Script Code Execution Vulnerability | 2008-11-25 |
| WordPress Cookie Integrity Protection Unauthorized Access Vulnerability | 2008-11-25 |
| Blender Unspecified Insecure Temporary File Creation Vulnerability | 2008-11-25 |
| Mozilla Firefox/Thunderbird/SeaMonkey Character Encoding Cross-Site Scripting Vulnerabilities | 2008-11-25 |
| plusPHP Short URL Multi-User Script Remote File Include Vulnerability | 2008-11-25 |
| Xomol CMS 'index.php' SQL Injection Vulnerability | 2008-11-25 |
| Xomol CMS 'index.php' Local File Include Vulnerability | 2008-11-25 |
| Lenovo System Update SSL Certificate Validation Security Bypass Vulnerability | 2008-11-25 |
| 5th street 'dx8render.dll' Format String Vulnerability | 2008-11-25 |
| Page Manager 'upload.php' Arbitrary File Upload Vulnerability | 2008-11-25 |
| Webdevindo-CMS 'hal' Parameter SQL Injection Vulnerability | 2008-11-25 |
| Softbiz Jokes and Funny Pictures Script 'sbjoke_id' Parameter SQL Injection Vulnerability | 2008-11-25 |
| IBM AFP Viewer Plugin 'SRC' Property Heap Based Buffer Overflow Vulnerability | 2008-11-25 |
| Cisco Unified Communications Manager CTI Service Denial of Service Vulnerability | 2008-11-25 |
| mUnky 'zone' Parameter Local File Include Vulnerability | 2008-11-25 |
| Cisco Unified Communications Manager RIS Data Collector Service Authentication Bypass Vulnerability | 2008-11-25 |
| Mambo Articles Component 'artid' Parameter SQL Injection Vulnerability | 2008-11-25 |
| Avaya Communication Manager Multiple Remote Command Execution Vulnerabilities | 2008-11-25 |
| Avaya Communication Manager Multiple Security Vulnerabilities | 2008-11-25 |
| MyPHP CMS 'pages.php' SQL Injection Vulnerability | 2008-11-25 |
| Linux Kernel 32-bit/64bit Emulation Local Information Disclosure Vulnerability | 2008-11-25 |
| Linux Kernel Memory Copy Exception Local Information Disclosure Vulnerability | 2008-11-25 |
| IdeaBox 'include.php' Remote File Include Vulnerability | 2008-11-25 |
| Linux Kernel utrace and ptrace Local Denial of Service Vulnerability | 2008-11-25 |
| Google Talk 'http' and 'mailto' Remote Script Code Injection Vulnerability | 2008-11-25 |
| Caucho Technology Resin Viewfile 'file' Parameter Cross Site Scripting Vulnerability | 2008-11-25 |
| RETIRED: PHPmotion SQL Injection and Arbitrary File Upload Vulnerabilities | 2008-11-25 |
| Jonascms Multiple Local File Include Vulnerabilities | 2008-11-25 |
| nBill Joomla! and Mambo Component SQL Injection Vulnerability | 2008-11-25 |
| MosXML 'mod_mainmenu.php' Remote File Include Vulnerability | 2008-11-25 |
| Drupal Suggested Terms Module Multiple HTML Injection Vulnerabilities | 2008-11-25 |
| EVA cms 'index.php' Remote File Include Vulnerability | 2008-11-25 |
| FormEncode 'chained_validators' Class Security Bypass Vulnerability | 2008-11-25 |
| Camera Life 'sitemap.xml.php' SQL Injection Vulnerability | 2008-11-25 |
| XRMS 1.99.2 Multiple Remote Vulnerabilities | 2008-11-25 |
| RealNetworks RealPlayer SWF File Heap Based Buffer Overflow Vulnerability | 2008-11-25 |
| FizzMedia 'comment.php' SQL Injection Vulnerability | 2008-11-25 |
| Cygwin 'setup.exe' Installation and Update Process Mirror Authenticity Verification Vulnerability | 2008-11-25 |
| RealNetworks RealPlayer 'rmoc3260.dll' ActiveX Control Multiple Memory Corruption Vulnerabilities | 2008-11-25 |
| PhpTest 'picture.php' SQL Injection Vulnerability | 2008-11-25 |
| RealPlayer Unspecified Local Resource Reference Vulnerability | 2008-11-25 |
| RealPlayer 'rjbdll.dll' ActiveX Control 'Import' Method Stack Buffer Overflow Vulnerability | 2008-11-25 |
| Hitachi XMAP3 Printing Service Unspecified Denial Of Service Vulnerability | 2008-11-25 |
| GE Fanuc Proficy Information Portal HTTP Basic Authentication Information Disclosure Vulnerability | 2008-11-25 |
| libmodplug 's3m' Remote Buffer Overflow Vulnerability | 2008-11-25 |
| Web Directory Script 'listing_view.php' SQL Injection Vulnerability | 2008-11-25 |
| Matterdaddy Market Multiple SQL Injection Vulnerabilities | 2008-11-25 |
| BtiTracker and xbtit 'scrape.php' SQL Injection Vulnerability | 2008-11-25 |
| Novell iPrint Client ActiveX Control Multiple Remote Vulnerabilities | 2008-11-25 |
| Calendarix Multiple SQL Injection Vulnerabilities | 2008-11-25 |
| Retired: DriveCrypt Incorrect BIOS API Usage Security Vulnerability | 2008-11-25 |
| GPicView Multiple Local Security Vulnerabilities | 2008-11-25 |
| Pluck 'index.php' Multiple Local File Include Vulnerabilities | 2008-11-25 |
| ezContents CMS Multiple Local File Include Vulnerabilities | 2008-11-25 |
| PHP-Ultimate Webboard 'admindel.php' Multiple Input Validation Vulnerabilities | 2008-11-25 |
| Intel System Management Mode Local Privilege Escalation Vulnerability | 2008-11-25 |
| Crafty Syntax Live Help Multiple SQL Injection Vulnerabilities | 2008-11-25 |
| SoftArtisans XFile FileManager ActiveX Control Multiple Buffer Overflow Vulnerabilities | 2008-11-25 |
| Bluemoon inc. PopnupBlog 'index.php' Multiple Cross-Site Scripting Vulnerabilities | 2008-11-25 |
| AN Guestbook Unspecified Cross-Site Scripting Vulnerabilities | 2008-11-25 |
| Civic Website Manager Multiple Cross-Site Scripting Vulnerabilities | 2008-11-25 |
| QEMU 'qemu-make-debian-root' Insecure Temporary File Creation Vulnerability | 2008-11-25 |
| Apple Mac OS X Java Applet HMAC Provider Handling Remote Code Execution Vulnerability | 2008-11-25 |
| Apple Mac OS X Java Plug-in 'file://' URL Handling Remote Code Execution Vulnerability | 2008-11-25 |
| Barcode Generator 'image.php' Local File Include Vulnerability | 2008-11-25 |
| Drupal Stock 'stock quote' Page Authentication Bypass Vulnerability | 2008-11-25 |
| AJ Auction Pro SQL Injection and Cross Site Scripting Vulnerabilities | 2008-11-25 |
| ABB PCU400 'x87' Remote Buffer Overflow Vulnerability | 2008-11-25 |
| phpOCS 'index.php' Local File Include Vulnerability | 2008-11-25 |
| Vikingboard 'upload/index.php' Local File Include Vulnerability | 2008-11-25 |
| Bitweaver Multiple Cross-Site Scripting Vulnerabilities | 2008-11-25 |
| Mozilla Firefox/SeaMonkey UTF-8 Stack-Based Buffer Overflow Vulnerability | 2008-11-25 |
| PHP 'create_function()' Code Injection Weakness | 2008-11-25 |
| Microsoft WordPad '.doc' File Remote Denial of Service Vulnerability | 2008-11-25 |
| K-Lite Mega Codec Pack 'vsfilter.dll' Denial Of Service Vulnerability | 2008-11-25 |
| EasyRealtorPRO 'site_search.php' Multiple SQL Injection Vulnerabilities | 2008-11-25 |
| Lansuite 'design' Parameter Local File Include Vulnerability | 2008-11-25 |
| Libra File Manager 'fileadmin.php' Local File Include Vulnerability | 2008-11-25 |
| PHP infoBoard Cookie Authentication Bypass Vulnerability | 2008-11-25 |
| PHP infoBoard 'idcat' Parameter SQL Injection and HTML Injection Vulnerabilities | 2008-11-25 |
| Mass Downloader Malformed Executable Denial Of Service Vulnerability | 2008-11-25 |
| FlatPress Multiple Cross-Site Scripting Vulnerabilities | 2008-11-25 |
| Vikingboard 'register.php' SQL Column Truncation Unauthorized Access Vulnerability | 2008-11-25 |
| Atomic Photo Album 'album.php' SQL Injection and Cross Site Scripting Vulnerabilities | 2008-11-25 |
| OpenNMS Multiple Cross-Site Scripting Vulnerabilities | 2008-11-25 |
| Mozilla SeaMonkey/Thunderbird Newsgroup Cancel Message Handling Buffer Overflow Vulnerability | 2008-11-25 |
| Computer Associates Service Desk Web Forms Multiple Cross-Site Scripting Vulnerabilities | 2008-11-25 |
| openEngine 'cms/system/openengine.php' Remote File Include Vulnerability | 2008-11-25 |
| IBM Tivoli Netcool/Webtop Privilege Escalation Vulnerability | 2008-11-25 |
| Libra File Manager Security Bypass Vulnerability | 2008-11-25 |
| Marshal MailMarshal SMTP Spam Quarantine Management Multiple HTML Injection Vulnerabilities | 2008-11-25 |
| WinZip 'gdiplus.dll' Microsoft Module Unspecified Security Vulnerability | 2008-11-25 |
| TUGZip ZIP File Remote Buffer Overflow Vulnerability | 2008-11-25 |
| BuzzScripts BuzzyWall 'download.php' Directory Traversal Vulnerability | 2008-11-25 |
| Php-Daily Multiple Input Validation Vulnerabilities | 2008-11-25 |
| Sun Java Web Start Remote Command Execution Vulnerability | 2008-11-25 |
| KasraCMS 'index.php' Multiple SQL Injection Vulnerabilities | 2008-11-25 |
| tlNews Cookie Authentication Bypass Vulnerability | 2008-11-25 |
| jhead 'DoCommand()' Arbitrary Command Execution Vulnerability | 2008-11-25 |
| PumpKIN Mode Field Remote Denial of Service Vulnerability | 2008-11-25 |
| FFmpeg 'libswscale' Buffer Overflow Vulnerability | 2008-11-25 |
| 'tog-pegasus' Package for Red Hat Enterprise Linux Security Bypass Vulnerability | 2008-11-25 |
| SuSE YaST2 Backup File Name Local Arbitrary Shell Command Injection Vulnerability | 2008-11-25 |
| Pie RSS Module 'lib' Parameter Remote File Include Vulnerability | 2008-11-25 |
| Werner Hilversum FAQ Manager 'catagorie.php' SQL Injection Vulnerability | 2008-11-25 |
| MyBB 'my_post_key' Remote Image Information Disclosure Vulnerability | 2008-11-25 |
| Chipmunk Topsites 'authenticate.php' SQL Injection Vulnerability | 2008-11-25 |
| Chipmunk Topsites 'start' Parameter Cross Site Scripting Vulnerability | 2008-11-25 |
| RaidSonic ICY BOX NAS FTP Log HTML Injection Vulnerability | 2008-11-25 |
| Werner Hilversum FAQ Manager 'include/header.php' Remote File Include Vulnerability | 2008-11-25 |
| RSA enVision Platform Web Console Password Hash Remote Information Disclosure Vulnerability | 2008-11-25 |
| Werner Hilversum Clean CMS 'full_txt.php' SQL Injection and Cross Site Scripting Vulnerabilities | 2008-11-25 |
| fuzzylime (cms) 'code/track.php' Local File Include Vulnerability | 2008-11-25 |
| WordPress 'wp-includes/feed.php' Cross-Site Scripting Vulnerability | 2008-11-25 |
| VideoGirls 'view_snaps.php' SQL Injection Vulnerability | 2008-11-25 |
| Jamit Job Board 'index.php' SQL Injection Vulnerability | 2008-11-25 |
| Digium Zaptel Multiple Local Privilege Escalation and Denial of Service Vulnerabilities | 2008-11-25 |
| Mayaa Default Error Page Cross-Site Scripting Vulnerability | 2008-11-25 |
| SapporoWorks BlackJumboDog Web Server Unspecified Authentication Bypass Vulnerability | 2008-11-25 |
| Personal Sticky Threads vBulletin Addon Unauthorized Access Vulnerability | 2008-11-25 |
| RETIRED: Microsoft Windows Media Player WAV/MID/SND File Parsing Integer Overflow Vulnerability | 2008-11-25 |
| PHP-Fusion TI Blog System Module 'blog.php' SQL Injection Vulnerability | 2008-11-25 |
| RealVNC 4.1.2 'vncviewer.exe' RFB Protocol Remote Code Execution Vulnerability | 2008-11-25 |
| SILC Toolkit Encoded OID Format String Vulnerability | 2008-11-25 |
| Belkin F5D7632-4V6 Wireless G Router Multiple Authentication Bypass Vulnerabilities | 2008-11-25 |
| Tiger Php News System 'catid' Parameter SQL Injection Vulnerability | 2008-11-24 |
| GE Fanuc Proficy Portal Remote Script Code Execution Vulnerability | 2008-11-24 |
| VMware Products Shared Folders 'MultiByteToWideChar()' Variant Directory Traversal Vulnerability | 2008-11-24 |
| LWS php Download Manager 'body.inc.php' Local File Include Vulnerability | 2008-11-24 |
| Portail Web Php Multiple Remote And Local File Include Vulnerabilities | 2008-11-24 |
| LWS php User Base 'header.inc.php' Remote File Include Vulnerability | 2008-11-24 |
| Alkacon OpenCms 'users_list.jsp' Multiple Cross-Site Scripting Vulnerabilities | 2008-11-24 |
| Efestech E-Kontor 'id' Parameter SQL Injection Vulnerability | 2008-11-24 |
| snircd And ircu 'set_user_mode' Remote Denial of Service Vulnerability | 2008-11-24 |
| Linksys SPA-2102 Phone Adapter Packet Handling Denial of Service Vulnerability | 2008-11-24 |
| F5 Big-IP Web Management Audit Log HTML Injection Vulnerability | 2008-11-24 |
| Quick Classifieds 'DOCUMENT_ROOT' Multiple Remote File Include Vulnerabilities | 2008-11-24 |
| PowerBook 'page' Parameter Remote File Include Vulnerability | 2008-11-24 |
| CuteFlow Bin 'login.php' Local File Include Vulnerability | 2008-11-24 |
| Hamachi VPN Local Login Credentials Information Disclosure Vulnerability | 2008-11-24 |
| PowerPHPBoard 'settings[]' Parameter Multiple Local File Include Vulnerabilities | 2008-11-24 |
| Joomla! and Mambo Rekry Component 'op_id' Parameter SQL Injection Vulnerability | 2008-11-24 |
| Le Forum 'Fichier_Acceuil' Parameter Remote File Include Vulnerability | 2008-11-24 |
| RETIRED: eGroupWare '_bad_protocol_once()' HTML Security Bypass Vulnerability | 2008-11-24 |
| HIS WebShop 'his-webshop.pl' Directory Traversal Vulnerability | 2008-11-24 |
| Destar Add User Unauthorized Access Vulnerability | 2008-11-24 |
| PICTURESPRO Photo Cart Cross-Site Scripting Vulnerability | 2008-11-24 |
| phpBB eXtreme Styles Module 'admin_xs.php' Local File Include Vulnerability | 2008-11-24 |
| Novell eDirectory LDAP Extended Request Message Buffer Overflow Vulnerability | 2008-11-24 |
| Flip4Mac WMV File Handling Unspecified Security Vulnerability | 2008-11-24 |
| e107 CMS Multiple Cross-Site Scripting Vulnerabilities | 2008-11-24 |
| Digital Hive 'base.php' Parameter Cross-Site Scripting Vulnerability | 2008-11-24 |
| PHP-Nuke DownloadsPlus Module Arbitrary File Upload Vulnerability | 2008-11-24 |
| Pixel Motion Blog 'list_article.php' Cross-Site Scripting Vulnerability | 2008-11-24 |
| Web Calendar Pro 'one_day.php' SQL Injection Vulnerability | 2008-11-24 |
| PHCDownload Multiple SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-24 |
| Joomla! and Mambo Jpad Component 'cid' Parameter SQL Injection Vulnerability | 2008-11-24 |
| Trillian Overly Long Nickname Remote Denial Of Service Vulnerability | 2008-11-24 |
| IBM Lotus Expeditor URI Handler Command Execution Vulnerability | 2008-11-24 |
| Computer Associates ARCserve Backup Discovery Service Remote Denial Of Service Vulnerability | 2008-11-24 |
| Perl Unicode 'Q...E' Quoting Construct Regular Expression Buffer Overflow Vulnerability | 2008-11-24 |
| HP HPeDiag ActiveX Control Multiple Information Disclosure and Remote Code Execution Vulnerabilities | 2008-11-24 |
| SugarCRM Community Edition RSS Module Information Disclosure Vulnerability | 2008-11-24 |
| WordPress Upload File Plugin 'wp-uploadfile.php' SQL Injection Vulnerability | 2008-11-24 |
| DZOIC Handshakes 'fname' Parameter SQL Injection Vulnerability | 2008-11-24 |
| RoomPHPlanning 'resaopen.php' SQL Injection Vulnerability | 2008-11-24 |
| phpRaider phpbb3 Bridge 'phpbb3.functions.php' Remote File Include Vulnerability | 2008-11-24 |
| PCPIN Chat 'inc/url_redirection.inc.php' Cross-Site Scripting Vulnerability | 2008-11-24 |
| SaraB DAR Encryption Ciphers Local Information Disclosure Vulnerability | 2008-11-24 |
| Horde Kronolith Multiple Cross-Site Scripting Vulnerabilities | 2008-11-24 |
| Red Hat SBLIM Insecure Library Path Local Privilege Escalation Vulnerability | 2008-11-24 |
| Relative Real Estate Systems 'listing_id' Parameter SQL Injection Vulnerability | 2008-11-24 |
| shareCMS Multiple SQL Injection Vulnerabilities | 2008-11-24 |
| Php F1 Max's Image Uploader 'index.php' Arbitrary File Upload Vulnerability | 2008-11-24 |
| DUcalendar 'detail.asp' SQL Injection Vulnerability | 2008-11-24 |
| TOKOKITA Multiple SQL Injection Vulnerabilities | 2008-11-24 |
| E-topbiz Viral DX 1 'adclick.php' SQL Injection Vulnerability | 2008-11-24 |
| E-topbiz Link ADS 1 'out.php' SQL Injection Vulnerability | 2008-11-24 |
| ibase 'download.php' Local File Include Vulnerability | 2008-11-24 |
| GNU Coreutils 'pam_succeed_if' PAM Local Authentication Bypass Vulnerability | 2008-11-24 |
| vsftpd FTP Server Pluggable Authentication Module (PAM) Remote Denial of Service Vulnerability | 2008-11-24 |
| WordPress Wp Downloads Manager Module 'upload.php' Arbitrary File Upload Vulnerability | 2008-11-24 |
| Aurigma Image Uploader Multiple ActiveX Controls Multiple Unspecified Security Vulnerabilities | 2008-11-24 |
| IPsec-Tools Multiple Remote Denial Of Service Vulnerabilities | 2008-11-24 |
| MiaCMS 'mod_socialbits.php' SQL Injection Vulnerability | 2008-11-24 |
| VLC Media Player 'mmstu.c' MMS Protocol Handling Buffer Overflow Vulnerability | 2008-11-24 |
| Five Star Review SQL Injection and Cross Site Scripting Vulnerabilities | 2008-11-24 |
| Samba Group Mappings File Insecure Permissions Local Security Vulnerability | 2008-11-24 |
| Honeyd Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Ampache Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Citadel Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| R 'javareconf' Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Debian feta 'to-upgrade' Plugin Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Debian dhis-server Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| FreeRADIUS Dialup Admin Insecure Temporary File Creation Vulnerabilities | 2008-11-24 |
| Debian FML 'libexec/mead.pl' Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| DigitalDJ Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| GpsDrive Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| impose+ Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| NetCitadel Firewall Builder Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Debian dist Insecure Temporary File Creation Vulnerabilities | 2008-11-24 |
| LinuxTrade Insecure Temporary File Creation Vulnerabilities | 2008-11-24 |
| Debian lustre-tests Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Liquidsoap Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| LMbench Insecure Temporary File Creation Vulnerabilities | 2008-11-24 |
| Debian konwert-filters 'filters/any-UTF8' Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| MAFFT Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Debian lazarus-src 'create_lazarus_export_tgz.sh' Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Debian 'linux-patch-openswan' Insecure Temporary File Creation Vulnerabilities | 2008-11-24 |
| NetMRG 'rrdedit' Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| newsgate 'mkmailpost' Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Radiance Insecure Temporary File Creation Vulnerabilities | 2008-11-24 |
| Debian rancid-util 'getipacctg' Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Debian rccp Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| AlcoveBook sgml2x Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| SNG Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Cadsoft Video Disk Recorder Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Debian realtimebattle-common Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Scilab Insecure Temporary File Creation Vulnerabilities | 2008-11-24 |
| Debian scratchbox2 Insecure Temporary File Creation Vulnerabilities | 2008-11-24 |
| Symantec Veritas NetBackup Java Administration GUI Remote Privilege Escalation Vulnerability | 2008-11-24 |
| Emacspeak 'extract-table.pl' Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Openswan IPsec Livetest Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Greatclone Hotscripts Clone 'showcategory.php' SQL Injection Vulnerability | 2008-11-24 |
| osCMax 'test.html' Arbitrary File Upload Vulnerability | 2008-11-24 |
| Jetik.net ESA 'KayitNo' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-24 |
| WebPortal CMS 'index.php' Remote Code Execution Vulnerability | 2008-11-24 |
| Cisco IOS AIC HTTP Transit Packet Remote Denial of Service Vulnerability | 2008-11-24 |
| Cisco uBR10012 Router Default SNMP Community Vulnerability | 2008-11-24 |
| Cisco IOS Protocol Independent Multicast (PIM) Multiple Denial of Service Vulnerablities | 2008-11-24 |
| Cisco IOS Layer 2 Tunneling Protocol Denial Of Service Vulnerability | 2008-11-24 |
| Cisco IOS NAT Skinny Call Control Protocol Multiple Remote Denial of Service Vulnerabilities | 2008-11-24 |
| Cisco IOS MPLS Forwarding Infrastructure Remote Denial of Service Vulnerability | 2008-11-24 |
| Cisco IOS SIP Multiple Denial of Service Vulnerabilities | 2008-11-24 |
| AJ Auction Pro Platinum Skin #2 'detail.php' SQL Injection Vulnerability | 2008-11-24 |
| Cisco IOS Remote IPC Denial of Service Vulnerability | 2008-11-24 |
| Cisco IOS IPS 'SERVICE.DNS' Remote Denial of Service Vulnerability | 2008-11-24 |
| Cisco IOS SSL Session Termination Remote Denial of Service Vulnerability | 2008-11-24 |
| Cisco IOS MPLS VPN Information Disclosure Vulnerability | 2008-11-24 |
| Cisco Unified Communications Manager SIP Service Multiple Denial of Service Vulnerabilities | 2008-11-24 |
| Connectra NGX 'index.php' Cross-Site Scripting Vulnerability | 2008-11-24 |
| TYPO3 freeCap CAPTCHA Unspecified Cross Site Scripting Vulnerability | 2008-11-24 |
| web-cp 'sendfile.php' Information Disclosure Vulnerability | 2008-11-24 |
| emergecolab 'index.php' Local File Include Vulnerability | 2008-11-24 |
| PHPcounter 'defs.php' Local File Include Vulnerability | 2008-11-24 |
| Google Chrome Carriage Return Remote Denial of Service Vulnerability | 2008-11-24 |
| Jadu CMS for Government 'recruit_details.php' SQL Injection Vulnerability | 2008-11-24 |
| Drupal Simplenews 'Newsletter Categories' HTML Injection Vulnerability | 2008-11-24 |
| MailWatch 'docs.php' Local File Include Vulnerability | 2008-11-24 |
| Observer 'query' Parameter Multiple Remote Command Execution Vulnerabilities | 2008-11-24 |
| ADN Forum Cookie Authentication Bypass Vulnerability | 2008-11-24 |
| Drupal Ajax Checklist Module Multiple SQL Injection Vulnerabilities | 2008-11-24 |
| initscripts Arbitrary File Deletion Vulnerability | 2008-11-24 |
| Drupal Brilliant Gallery Module Multiple SQL Injection Vulnerabilities | 2008-11-24 |
| Drupal Plugin Manager Security Bypass Vulnerability | 2008-11-24 |
| Mon 'alert.d/test.alert' Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| Joomla! Archaic Binary Gallery 'com_ab_gallery' Component Directory Traversal Vulnerability | 2008-11-24 |
| KBase Joomla! Component 'id' Parameter SQL Injection Vulnerability | 2008-11-24 |
| Linux Kernel 'do_splice_from()' Local Security Bypass Vulnerability | 2008-11-24 |
| DB Software Laboratory 'VImpX.ocx' ActiveX Control Multiple File Corruption Vulnerabilities | 2008-11-24 |
| Adam Wright HTMLTidy 'html-tidy-logic.php' Cross Site Scripting Vulnerability | 2008-11-24 |
| New Earth Programming Team Image Upload Script Arbitrary File Upload Vulnerability | 2008-11-24 |
| AJ RSS Reader 'EditUrl.php' SQL Injection Vulnerability | 2008-11-24 |
| iPei Guestbook 'pg' Parameter Cross-Site Scripting Vulnerability | 2008-11-24 |
| KVIrc URI Handler Remote Format String Vulnerability | 2008-11-24 |
| Citrix Web Interface Security Bypass Vulnerability | 2008-11-24 |
| Android Web Browser Unspecified Remote Code Execution Vulnerability | 2008-11-24 |
| WIMS Insecure Temporary File Creation Vulnerabilities | 2008-11-24 |
| Debian xmcd Insecure Temporary File Creation Vulnerabilities | 2008-11-24 |
| ffdshow Long URL Link Remote Buffer Overflow Vulnerability | 2008-11-24 |
| W3C Amaya 'TtaWCToMBstring()' Multiple Stack Based Buffer Overflow Vulnerabilities | 2008-11-24 |
| FlexCell Grid Control (ActiveX) Arbitrary File Overwrite Vulnerability | 2008-11-24 |
| VirtualBox 'ipcdUnix.cpp' Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| NetArt Media Real Estate Portal 'ad_id' Parameter SQL Injection Vulnerability | 2008-11-24 |
| Nero ShowTime '.m3u' File Remote Buffer Overflow Vulnerability | 2008-11-24 |
| FreeBSD 'arc4random (9)' Pseudo-Random Number Generator Insufficient Entropy Weakness | 2008-11-24 |
| Goople CMS '/win/notepad/index.php' Arbitrary Command Execution Vulnerability | 2008-11-24 |
| Multiple BDigital Web Solutions Applications 'pageid' Parameter SQL Injection Vulnerability | 2008-11-24 |
| FTPzik 'c' Parameter Local File Include and Cross-Site Scripting Vulnerabilities | 2008-11-24 |
| Siemens Multiple Gigaset VoIP Phones SIP Remote Denial of Service Vulnerability | 2008-11-24 |
| Quicksilver Forums Local File Include and Arbitrary File Upload Vulnerabilities | 2008-11-24 |
| Bandwebsite 'lyrics.php' SQL Injection Vulnerability | 2008-11-24 |
| Bandwebsite 'info.php' Cross Site Scripting Vulnerability | 2008-11-24 |
| Pie Multiple Remote File Include Vulnerabilities | 2008-11-24 |
| Total Video Player 'TVP type' Tag Handling Remote Buffer Overflow Vulnerability | 2008-11-24 |
| NitroTech 'members.php' SQL Injection Vulnerability | 2008-11-24 |
| COMS 'dynamic.php' Cross Site Scripting Vulnerability | 2008-11-24 |
| VideoScript 'admin/homeset.php' Remote PHP Code Injection Vulnerability | 2008-11-24 |
| PHP 'imageRotate()' Uninitialized Memory Information Disclosure Vulnerability | 2008-11-24 |
| doop Administration Page Arbitrary File Upload Vulnerability | 2008-11-24 |
| ILIAS 'repository.php' SQL Injection Vulnerability | 2008-11-24 |
| BulletProof FTP Client Bookmark File Heap Buffer Overflow Vulnerability | 2008-11-24 |
| Joomla! Ice Gallery Component 'catid' Parameter SQL Injection Vulnerability | 2008-11-24 |
| mDigg Component for Joomla! 'category' Parameter SQL Injection Vulnerability | 2008-11-24 |
| Joomla! LiveTicker 'tid' Parameter SQL Injection Vulnerability | 2008-11-24 |
| SAWStudio '.prf' File Buffer Overflow Vulnerability | 2008-11-24 |
| Acoustica Mixcraft '.mx4' Project File Buffer Overflow Vulnerability | 2008-11-24 |
| bloofoxCMS 'dialog.php' Local File Include Vulnerability | 2008-11-24 |
| Sun SNMP Management Agent Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| DotNetNuke User Account Security Bypass Vulnerability | 2008-11-24 |
| Mozilla Firefox 'designMode' Null Pointer Dereference Denial of Service Vulnerability | 2008-11-24 |
| Goople CMS 'editpass.php' Multiple Remote PHP Code Injection Vulnerabilities | 2008-11-24 |
| Kitware GCC-XML 'find_flags' Script Insecure Temporary File Creation Vulnerability | 2008-11-24 |
| FireStats WordPress Plugin Multiple Cross Site Scripting and Authentication Bypass Vulnerabilities | 2008-11-24 |
| PHP cURL 'safe mode' Security Bypass Vulnerability | 2008-11-23 |
| SDL_image Invalid GIF File LWZ Minimum Code Size Remote Buffer Overflow Vulnerability | 2008-11-23 |
| Firebird Username Remote Buffer Overflow Vulnerability | 2008-11-23 |
| phpProfiles 'body_comm.inc.php' Remote File Include Vulnerability | 2008-11-23 |
| PHP-Nuke Recipe Module 'recipeid' Parameter SQL Injection Vulnerability | 2008-11-23 |
| Joomla! and Mambo 'com_hello_world' Component 'id' Parameter SQL Injection Vulnerability | 2008-11-23 |
| PHP-Nuke Gallery Module 'aid' Parameter SQL Injection Vulnerability | 2008-11-23 |
| PHP-Nuke Sections Module 'artid' Parameter SQL Injection Vulnerability | 2008-11-23 |
| auraCMS 'lihatberita' Module 'id' Parameter SQL Injection Vulnerability | 2008-11-23 |
| PHPEcho CMS 'Smarty.class.php' Remote File Include Vulnerability | 2008-11-23 |
| LWS php User Base 'unverified.inc.php' Local File Include Vulnerability | 2008-11-23 |
| TikiWiki 'tiki-edit_article.php' Cross-Site Scripting Vulnerability | 2008-11-23 |
| Joomla! and Mambo Cinema Component 'id' Parameter SQL Injection Vulnerability | 2008-11-23 |
| Joomla! and Mambo Download3000 Component 'id' Parameter SQL Injection Vulnerability | 2008-11-23 |
| Akiva WebBoard HTML Injection Vulnerability | 2008-11-23 |
| QIP Unspecified Remote Memory Corruption Vulnerability | 2008-11-23 |
| Horde Webmail 'addevent.php' Cross-Site Scripting Vulnerability | 2008-11-23 |
| E RESERV 'ID_loc' Parameter SQL Injection Vulnerability | 2008-11-23 |
| Joomla! and Mambo Filiale Component 'idFiliale' Parameter SQL Injection Vulnerability | 2008-11-23 |
| Asterisk IAX2 Packet Amplification Remote Denial of Service Vulnerability | 2008-11-23 |
| F5 Networks FirePass 4100 SSL VPN 'installControl.php3' Cross-Site Scripting Vulnerability | 2008-11-23 |
| VLC Media Player MP4 Demuxer Buffer Overflow Vulnerability | 2008-11-23 |
| VLC Media Player Cinepak Codec Buffer Overflow Vulnerability | 2008-11-23 |
| Sony mylo COM-2 SSL Certificate Validation Vulnerability | 2008-11-23 |
| phpMyAdmin Shared Host Remote Information Disclosure Vulnerability | 2008-11-23 |
| RSA Authentication Agent for Web URI Redirection Vulnerability | 2008-11-23 |
| xine-lib NES Sound Format Demuxer 'copyright' Buffer Overflow Vulnerability | 2008-11-23 |
| Realtek HD Audio Codec Drivers for Windows Vista Multiple Local Privilege Escalation Vulnerabilities | 2008-11-23 |
| vShare YouTube Clone 'siteadmin/spages.php' Remote Command Execution Vulnerability | 2008-11-23 |
| Joomla! and Mambo Community Builder 'com_profiler' Component SQL Injection Vulnerability | 2008-11-23 |
| Drupal Ubercart Module Multiple HTML Injection Vulnerabilities | 2008-11-23 |
| Drupal Multiple Cross Site Scripting and Request Forgery Vulnerabilities | 2008-11-23 |
| Imager Image-based Fill Heap Buffer Overflow Vulnerability | 2008-11-23 |
| Sava CMS SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-23 |
| Cerberus Helpdesk Controller Authentication Information Disclosure Vulnerability | 2008-11-23 |
| Quate CMS Multiple Input Validation Vulnerabilities | 2008-11-23 |
| Sun Java System Web Server Advanced Search Mechanism Cross-Site Scripting Vulnerability | 2008-11-23 |
| Core FTP 'LIST' Command Directory Traversal Vulnerability | 2008-11-23 |
| PEGames Multiple Cross Site Scripting Vulnerabilities | 2008-11-23 |
| IDMOS 'site_absolute_path' Parameter Multiple Remote File Include Vulnerabilities | 2008-11-23 |
| JSCAPE Secure FTP Applet Host Key Validation Security Bypass Vulnerability | 2008-11-23 |
| Chipmunk Blog 'membername' Parameter Multiple Cross Site Scripting Vulnerabilities | 2008-11-23 |
| benja CMS Multiple Input Validation and Unauthorized Access Vulnerabilities | 2008-11-23 |
| J00lean-CMS 'includes/classes/page.php' Unspecified Remote Vulnerability | 2008-11-23 |
| HTML Purifier CSS Multiple Cross-Site Scripting Vulnerabilities | 2008-11-23 |
| Trabajando Multiple Cross-Site Scripting Vulnerabilities | 2008-11-23 |
| World in Conflict NULL Pointer Remote Denial of Service Vulnerability | 2008-11-23 |
| SunAge Multiple Denial of Service Vulnerabilities | 2008-11-23 |
| CMS Mini 'view/index.php' Multiple Local File Include Vulnerabilities | 2008-11-23 |
| CMReams Cross Site Scripting and Local File Include Vulnerabilities | 2008-11-23 |
| emuCMS 'upload.php' Arbitrary File Upload Vulnerability | 2008-11-23 |
| Hedgehog-CMS 'header.php' Local File Include Vulnerability | 2008-11-23 |
| ResearchGuide 'guide.php' SQL Injection Vulnerability | 2008-11-23 |
| HomePH Design Multiple Administrator Scripts Multiple Input Validation Vulnerabilities | 2008-11-23 |
| HoMaP-CMS 'index.php' SQL Injection Vulnerability | 2008-11-23 |
| BlogPHP 'email' Parameter Privilege Escalation Vulnerability | 2008-11-23 |
| MyBlog Cross-Site Scripting and SQL Injection Vulnerabilities | 2008-11-23 |
| Demo4 CMS 'index.php' SQL Injection Vulnerability | 2008-11-23 |
| Perl 'rmtree()' Function Local Insecure Permissions Vulnerability | 2008-11-23 |
| Ruby Multiple Array and String Handling Functions Multiple Arbitrary Code Execution Vulnerabilities | 2008-11-23 |
| Joomla! and Mambo FacileForms Component 'ff_compath' Parameter Remote File Include Vulnerability | 2008-11-23 |
| Mozilla Firefox Unspecified Arbitrary File Access Weakness | 2008-11-23 |
| Dagger 'skins/default.php' Remote File Include Vulnerability | 2008-11-23 |
| TinX/cms Cross Site Scripting and Local File Include Vulnerabilities | 2008-11-23 |
| Adobe Acrobat and Reader JavaScript Method Remote Code Execution Vulnerability | 2008-11-23 |
| Ourvideo CMS Multiple Input Validation Vulnerabilities | 2008-11-23 |
| MM Chat Local File Include and Multiple Cross Site Scripting Vulnerabilities | 2008-11-23 |
| cmsWorks 'lib.module.php' Remote File Include Vulnerability | 2008-11-23 |
| A+ PHP Scripts News Management System Multiple Input Validation Vulnerabilities | 2008-11-23 |
| cmsWorks 'config.php' Arbitrary File Upload Vulnerability | 2008-11-23 |
| RT 'Devel::StackTrace' Perl Module Remote Denial of Service Vulnerability | 2008-11-23 |
| Mask PHP File Manager Cookie Authentication Bypass Vulnerability | 2008-11-23 |
| Geeklog Forum Plugin Cross-Site Scripting Vulnerability | 2008-11-23 |
| IntelliTamper HTML 'Server' Header Parsing Buffer Overflow Vulnerability | 2008-11-23 |
| Minix Psuedo Terminal Denial of Service Vulnerability | 2008-11-23 |
| EMC Centera Universal Access 'username' Parameter SQL Injection Vulnerability | 2008-11-23 |
| Pure Software Lore Multiple Cross Site Scripting Vulnerabilities | 2008-11-23 |
| Cerberus Content Management System 'cerberus_user' Cookie Parameter HTML Injection Vulnerability | 2008-11-23 |
| Hitachi JP1/Cm2/Network Node Manager Unspecified Denial Of Service Vulnerability | 2008-11-23 |
| Hitachi JP1/HIBUN Advanced Edition Multiple Unspecified Local Information Disclosure Vulnerabilities | 2008-11-23 |
| Hitachi JP1/Cm2/Network Node Manager Multiple Unspecified Remote Vulnerabilities | 2008-11-23 |
| Ruby REXML Remote Denial Of Service Vulnerability | 2008-11-23 |
| Multiple Vendor 'inet_net_pton()' Function Integer Overflow Weakness | 2008-11-23 |
| One-News Multiple Input Validation Vulnerabilities | 2008-11-23 |
| NoName Script Multiple Remote Vulnerabilities | 2008-11-23 |
| DataSpade 'index.asp' Multiple Cross-Site Scripting Vulnerabilities | 2008-11-23 |
| SquirrelMail Insecure Cookie Disclosure Weakness | 2008-11-23 |
| Achievo 'dispatch.php' Cross Site Scripting Vulnerability | 2008-11-23 |
| phpMyAdmin Cross Site Scripting Vulnerability | 2008-11-23 |
| Vignette Content Management Unspecified Security Bypass Vulnerability | 2008-11-23 |
| Chilkat XML ActiveX Control Multiple Vulnerabilities | 2008-11-23 |
| Datalife Engine CMS 'admin.php' Cross Site Scripting Vulnerability | 2008-11-23 |
| RETIRED: Aruba Mobility Controller Shared X.509 Certificate Security Bypass Vulnerability | 2008-11-23 |
| Omnicom Content Platform 'browser.asp' Parameter Directory Traversal Vulnerability | 2008-11-23 |
| OpenRat 'insert.inc.php' Remote File Include Vulnerability | 2008-11-23 |
| iGaming CMS Multiple SQL Injection Vulnerabilities | 2008-11-23 |
| Sofi WebGUI 'modstart.php' Remote File Include Vulnerability | 2008-11-23 |
| JETIK-WEB 'sayfa.php' SQL Injection Vulnerability | 2008-11-23 |
| Mozilla Firefox/SeaMonkey/Thunderbird Multiple Remote Vulnerabilities | 2008-11-23 |
| Ol' Bookmarks Multiple Input Validation Vulnerabilities | 2008-11-23 |
| InterTech WCMS 'etemplate.php' SQL Injection Vulnerability | 2008-11-23 |
| NMS DVD Burning SDK 'NMSDVDX.dll' ActiveX Control Arbitrary File Overwrite Vulnerability | 2008-11-23 |
| Osprey 'ListRecords.php' Multiple Remote File Include Vulnerabilities | 2008-11-23 |
| SilverSHielD 'opendir()' Remote Denial of Service Vulnerability | 2008-11-23 |
| TXTshop 'header.php' Local File Include Vulnerability | 2008-11-23 |
| CS-Partner 'gestion.php' Multiple SQL Injection Vulnerabilities | 2008-11-23 |
| Snoopy '_httpsrequest()' Arbitrary Command Execution Vulnerability | 2008-11-23 |
| UC Gateway Investment SiteEngine 'api.php' URI Redirection Vulnerability | 2008-11-23 |
| UC Gateway Investment SiteEngine 'announcements.php' SQL Injection Vulnerability | 2008-11-23 |
| Jetbox CMS 'liste' Parameter Cross Site Scripting Vulnerability | 2008-11-23 |
| WebSVN Multiple Remote Input Validation Vulnerabilities | 2008-11-23 |
| Joomla! RWCards Component 'captcha_image.php' Local File Include Vulnerability | 2008-11-23 |
| MindDezign Photo Gallery 'id' Parameter SQL Injection Vulnerability | 2008-11-23 |
| aflog Cookie Authentication Bypass Vulnerability | 2008-11-23 |
| MiniPortail 'search.php' Cross-Site Scripting and Local File Include Vulnerabilities | 2008-11-23 |
| MindDezign Photo Gallery 'admin' Module Unauthorized Access Vulnerability | 2008-11-23 |
| ClipShare Pro 'fullscreen.php' Cross Site Scripting Vulnerability | 2008-11-23 |
| Drupal 'bootstrap.inc' Local File Include Vulnerability | 2008-11-23 |
| Sun Java System LDAP JDK Search Feature Information Disclosure Vulnerability | 2008-11-23 |
| eCryptfs Password Information Disclosure Vulnerability | 2008-11-23 |
| NetArt Media Car Portal 'image.php' SQL Injection Vulnerability | 2008-11-23 |
| Prozilla Hosting Index 'directory.php' SQL Injection Vulnerability | 2008-11-23 |
| Goople CMS '/win/content/upload.php' Arbitrary File Upload Vulnerability | 2008-11-23 |
| Pilot Group PG Real Estate SQL Injection Vulnerability | 2008-11-23 |
| Pilot Group PG Roommate SQL Injection Vulnerability | 2008-11-23 |
| Pilot Group PG Job Site Pro 'homepage.php' SQL Injection Vulnerability | 2008-11-23 |
| MODx CMS Cross Site Scripting and Remote File Include Vulnerabilities | 2008-11-23 |
| Goople CMS Cookie Authentication Bypass Vulnerability | 2008-11-23 |
| MauryCMS Unspecified Arbitrary File Upload Vulnerability | 2008-11-23 |
| NetArt Media Blog System 'image.php' SQL Injection Vulnerability | 2008-11-23 |
| HeXHub Buffer Overflow And Cross-Site Scripting Vulnerabilities | 2008-11-23 |
| FreeBSD netgraph and bluetooth Local Privilege Escalation Vulnerabilities | 2008-11-23 |
| TYPO3 Vox populi Unspecified Cross Site Scripting Vulnerability | 2008-11-23 |
| TYPO3 TU-Clausthal Staff Extension Unspecified SQL Injection Vulnerability | 2008-11-23 |
| TYPO3 WEBERkommunal Facilities Extension Unspecified SQL Injection Vulnerability | 2008-11-23 |
| TYPO3 SB Universal Plugin Unspecified Cross Site Scripting Vulnerability | 2008-11-23 |
| TYPO3 Simple File Browser Unspecified Information Disclosure Vulnerability | 2008-11-23 |
| Linux Kernel 'qdisc_run()' Local Denial of Service Vulnerability | 2008-11-23 |
| TYPO3 TU-Clausthal ODIN Extension Unspecified SQL Injection Vulnerability | 2008-11-23 |
| Psi Malformed Packet Remote Denial of Service Vulnerability | 2008-11-23 |
| Mozilla Firefox 'location.hash' Remote Denial of Service Vulnerability | 2008-11-23 |
| PHP Link Directory 'page.php' SQL Injection Vulnerability | 2008-11-23 |
| AIST NetCat 'password_recovery.php' SQL Injection Vulnerability | 2008-11-23 |
| PGP Desktop 'PGPwded.sys' Local Code Execution Vulnerability | 2008-11-23 |
| AIST Netcat 3.1.2 Multiple Input Validation Vulnerabilities | 2008-11-23 |
| stormBoards 'thread.php' SQL Injection Vulnerability | 2008-11-23 |
| Getleft HTML Tags Multiple Buffer Overflow Vulnerabilities | 2008-11-23 |
| W2B phpGreetCards 'index.php' Arbitrary File Upload Vulnerability | 2008-11-23 |
| Google Chrome 'chromeHTML://' Command Line Parameter Injection Vulnerability | 2008-11-23 |
| W2B phpAdBoard 'index.php' Arbitrary File Upload Vulnerability | 2008-11-23 |
| Retired: Internet Explorer 'chromeHTML://' Command Line Parameter Injection Vulnerability | 2008-11-23 |
| W2B phpEmployment 'auth.php' Arbitrary File Upload Vulnerability | 2008-11-23 |
| W2B phpGreetCards 'category' Parameter Cross Site Scripting Vulnerability | 2008-11-23 |
| QEMU VNC 'monitor.c' Insecure Password Vulnerability | 2008-11-23 |
| FFmpeg File Parsing Multiple Buffer Overflow Vulnerabilities | 2008-11-23 |
| HP Virtual Rooms 'hpvirtualrooms14.dll' ActiveX Control Multiple Buffer Overflow Vulnerabilities | 2008-11-22 |
| IBM Tivoli Provisioning Manager for OS Deployment Remote Buffer Overflow Vulnerability | 2008-11-22 |
| ELOG Cross-Site Scripting Vulnerability and Denial of Service Vulnerability | 2008-11-22 |
| IBM WebSphere Prior to 6.0.2.25 Multiple Remote Vulnerabilities | 2008-11-22 |
| MoinMoin MOIN_ID Cookie Remote Input Validation Vulnerability | 2008-11-22 |
| Apache 'mod_negotiation' HTML Injection and HTTP Response Splitting Vulnerability | 2008-11-22 |
| IBM AIX 'pioout' Local Buffer Overflow Vulnerability | 2008-11-22 |
| IBM AIX Logical Volume Manager Multiple Commands Local Buffer Overflow Vulnerabilities | 2008-11-22 |
| IBM AIX 'ps' Local Information Disclosure Vulnerability | 2008-11-22 |
| Quantum Game Library 'CONFIG[gameroot]' Parameter Multiple Remote File Include Vulnerabilities | 2008-11-22 |
| Apple Safari BMP and GIF Files Remote Denial of Service and Information Disclosure Vulnerability | 2008-11-22 |
| Citrix MetaFrame Web Manager 'login.asp' Cross-Site Scripting Vulnerability | 2008-11-22 |
| OpenBSD 'tcp_respond()' Remote Denial of Service Vulnerability | 2008-11-22 |
| Mozilla Firefox Domain Extensions Insecure Cookie Access Vulnerability | 2008-11-22 |
| Double-Take Denial of Service and Information Disclosure Vulnerabilities | 2008-11-22 |
| RETIRED: Microsoft Jet Database Engine MDB File Parsing Remote Code Execution Vulnerability | 2008-11-22 |
| phpMyChat 'setup.php3' Cross-Site Scripting Vulnerability | 2008-11-22 |
| My Web Doc Administration Pages Multiple Authentication Bypass Vulnerabilities | 2008-11-22 |
| ooComments 'PathToComment' Parameter Multiple Remote File Include Vulnerabilities | 2008-11-22 |
| TinyPortal 'index.php' Cross-Site Scripting Vulnerability | 2008-11-22 |
| cPanel 'manpage.html' Cross-Site Scripting Vulnerability | 2008-11-22 |
| Apple Safari File Download Remote Denial of Service Vulnerability | 2008-11-22 |
| Apple Safari Window.setTimeout Variant Content Spoofing Vulnerability | 2008-11-22 |
| Mitsubishi Electric GB-50A Multiple Remote Authentication Bypass Vulnerabilities | 2008-11-22 |
| PostNuke 'pnVarPrepForStore()' SQL Injection Vulnerability | 2008-11-22 |
| XLPortal 'index.php' SQL Injection Vulnerability | 2008-11-22 |
| Joomla! Custompages Component 'cpage' Parameter Remote File Include Vulnerability | 2008-11-22 |
| PHP-Nuke Platinum 'dynamic_titles.php' SQL Injection Vulnerability | 2008-11-22 |
| ContRay 'search' Parameter Cross Site Scripting Vulnerability | 2008-11-22 |
| S9Y Serendipity HTML Injection and Cross-Site Scripting Vulnerabilities | 2008-11-22 |
| Joomla! and Mambo FlippingBook Component 'book_id' Parameter SQL Injection Vulnerability | 2008-11-22 |
| EncapsGallery Cross-Site Scripting Vulnerability and File Upload Vulnerability | 2008-11-22 |
| Computer Associates eTrust Secure Content Manager 'eCSqdmn' Remote Denial of Service Vulnerability | 2008-11-22 |
| grsecurity Multiple RBAC Local Security Bypass Vulnerabilities | 2008-11-22 |
| Foxit Reader Multiple Remote Memory Corruption Vulnerabilities | 2008-11-22 |
| Apple Safari 3.1.1 For Windows Multiple Denial of Service and Spoofing Vulnerabilities | 2008-11-22 |
| Mozilla Firefox 'document.write()' Denial of Service Vulnerability | 2008-11-22 |
| Multiple Wireless Routers Predictable Default WEP/WPA Key Security Bypass Vulnerability | 2008-11-22 |
| WordPress wpSS Spreadsheet Plugin 'ss_id' Parameter SQL Injection Vulnerability | 2008-11-22 |
| phpFreeForum Multiple Cross Site Scripting Vulnerabilities | 2008-11-22 |
| phpSQLiteCMS Multiple Cross-Site Scripting Vulnerabilities | 2008-11-22 |
| BMForum Multiple Cross Site Scripting Vulnerabilities | 2008-11-22 |
| Barracuda Spam Firewall 'ldap_test.cgi' Cross-Site Scripting Vulnerability | 2008-11-22 |
| WWW File Share Pro Unspecified Arbitrary File Upload Vulnerability | 2008-11-22 |
| AbleDating 'search_results.php' Multiple Input Validation Vulnerabilities | 2008-11-22 |
| SAFARI Montage 'forgotPW.php' Multiple Cross-Site Scripting Vulnerabilities | 2008-11-22 |
| e107 BLOG Engine 'macgurublog.php' SQL Injection Vulnerability | 2008-11-22 |
| Xerox WorkCentre Unspecified HTML Injection Vulnerability | 2008-11-22 |
| EXP Shop Joomla! 'com_expshop' Component SQL Injection Vulnerability | 2008-11-22 |
| PageSquid CMS 'index.php' SQL Injection Vulnerability | 2008-11-22 |
| RSS-aggregator 'display.php' Remote File Include Vulnerability | 2008-11-22 |
| MiGCMS Multiple Remote File Include Vulnerabilities | 2008-11-22 |
| sHibby sHop 'default.asp' SQL Injection Vulnerability | 2008-11-22 |
| HoMaP 'plugin_admin.php' Remote File Include Vulnerability | 2008-11-22 |
| IGSuite 'formid' Parameter SQL Injection Vulnerability | 2008-11-22 |
| phpDMCA Multiple Remote File Include Vulnerabilities | 2008-11-22 |
| Open Digital Assets Repository System Remote File Include Vulnerability | 2008-11-22 |
| DC++ NULL Pointer Remote Denial of Service Vulnerability | 2008-11-22 |
| PowerDVD '.m3u' and '.pls' File Multiple Buffer Overflow Vulnerabilities | 2008-11-22 |
| SocialEngine Multiple SQL Injection Vulnerabilities | 2008-11-22 |
| EZWebAlbum Cookie Authentication Bypass Vulnerability | 2008-11-22 |
| Multiple Century System XR Routers Cross-Site Request Forgery Vulnerability | 2008-11-22 |
| YouTube Blog Multiple Input Validation Vulnerabilities | 2008-11-22 |
| Claroline Prior to 1.8.11 Multiple Cross-Site Scripting Vulnerabilities | 2008-11-22 |
| Outpost Security Suite Pro Filename Parsing Security Bypass Vulnerability | 2008-11-22 |
| Moodle 'etitle' Parameter HTML Injection Vulnerability | 2008-11-22 |
| Pre Survey Generator 'default.asp' SQL Injection Vulnerability | 2008-11-22 |
| Asterisk IAX2 Firmware Provisioning Packet Amplification Remote Denial of Service Vulnerability | 2008-11-22 |
| Linux Kernel x86_64 Kernel LDT 'ldt_desc' Buffer Overflow Vulnerability | 2008-11-22 |
| Trend Micro Web Management Authentication Bypass Vulnerability | 2008-11-22 |
| ACG-PTP 'index.php' Multiple HTML Injection Vulnerabilities | 2008-11-22 |
| Red Hat OpenSSH Backdoor Vulnerability | 2008-11-22 |
| Accellion File Transfer Multiple Cross-Site Scripting Vulnerabilities | 2008-11-22 |
| xine-lib 1.1.15 and Prior Multiple Remote Vulnerabilities | 2008-11-22 |
| PicturesPro Photo Cart Search Cross-Site Scripting Vulnerability | 2008-11-22 |
| Sun Solaris NFS Kernel Module Local Denial of Service Vulnerability | 2008-11-22 |
| GMOD GBrowse Unspecified Cross-Site Scripting Vulnerability | 2008-11-22 |
| Microsoft Windows Media Services 'nskey.dll' ActiveX Control Remote Buffer Overflow Vulnerability | 2008-11-22 |
| Xen 'XSM:Flask' Module Multiple Local Buffer Overflow Vulnerabilities | 2008-11-22 |
| PHPKB Multiple SQL Injection Vulnerabilities | 2008-11-22 |
| Rianxosencabos CMS Cookie Authentication Bypass Vulnerability | 2008-11-22 |
| ClanSphere Multiple Information Disclosure Vulnerabilities | 2008-11-22 |
| Foxmail Email Client 'mailto' Buffer Overflow Vulnerability | 2008-11-22 |
| MyBB Prior to 1.4.2 Multiple Security Vulnerabilities | 2008-11-22 |
| Rianxosencabos CMS 'useradmin.php' Access Validation Vulnerability | 2008-11-22 |
| AvailScript Job Portal Script Remote File Upload Vulnerability | 2008-11-22 |
| rgb72 WCMS 'index.php' SQL Injection Vulnerability | 2008-11-22 |
| 6rbScript 'section.php' Local File Include Vulnerability | 2008-11-22 |
| JBoss Enterprise Application Platform Class Files Information Disclosure Vulnerability | 2008-11-22 |
| UNAK-CMS Cookie Authentication Bypass Vulnerability | 2008-11-22 |
| WSN Links 'comments.php' SQL Injection Vulnerability | 2008-11-22 |
| MapCal 'id' Parameter SQL Injection Vulnerability | 2008-11-22 |
| WSN Links 'vote.php' SQL Injection Vulnerability | 2008-11-22 |
| fuzzylime (cms) 'usercheck.php' Cross Site Scripting Vulnerability | 2008-11-22 |
| openElec 'form.php' Local File Include Vulnerability | 2008-11-22 |
| BuzzScripts BuzzyWall 'search.php' SQL Injection Vulnerability | 2008-11-22 |
| MyBlog 'add.php' Cookie Authentication Bypass Vulnerability | 2008-11-22 |
| BLUEPAGE CMS 'index.php' Multiple Cross-Site Scripting Vulnerabilities | 2008-11-22 |
| xt:Commerce Session Fixation and Cross Site Scripting Vulnerabilities | 2008-11-22 |
| rgb72 WCMS 'change_password.asp' Account Creation Access Validation Vulnerability | 2008-11-22 |
| BLUEPAGE CMS 'PHPSESSID' Session Fixation Vulnerability | 2008-11-22 |
| RETIRED: Multiple Vendors IMAP Servers Denial of Service Vulnerability | 2008-11-22 |
| PHP iCalendar Cookie Authentication Bypass Vulnerability | 2008-11-22 |
| University of Queensland Fez 'list.php' SQL Injection Vulnerability | 2008-11-22 |
| 6rbScript 'cat.php' SQL Injection Vulnerability | 2008-11-22 |
| BaseBuilder 'main.inc.php' Remote File Include Vulnerability | 2008-11-22 |
| Multiple SAGEM F@st Routers DHCP Hostname HTML Injection Vulnerability | 2008-11-22 |
| CJ Ultra Plus 'SID' Cookie Parameter SQL Injection Vulnerability | 2008-11-22 |
| pfSense DHCPREQUEST Hostname HTML Injection Vulnerability | 2008-11-22 |
| Mantis Insecure Cookie Disclosure Weakness | 2008-11-22 |
| GNU Enscript 'src/psgen.c' Stack Based Buffer Overflow Vulnerability | 2008-11-22 |
| Trend Micro OfficeScan CGI Parsing Buffer Overflow Vulnerability | 2008-11-22 |
| HP OpenView Products Shared Trace Service RPC Request Handling Denial of Service Vulnerability | 2008-11-22 |
| Cisco PIX and ASA Appliance IPv6 Denial of Service Vulnerability | 2008-11-22 |
| Cisco PIX and ASA Windows NT Domain VPN Authentication Bypass Vulnerability | 2008-11-22 |
| Cisco ASA Appliance Crypto Accelerator Memory Leak Denial of Service Vulnerability | 2008-11-22 |
| Multiple EMC NetWorker Products 'nsrexecd.exe' RPC Request Denial of Service Vulnerability | 2008-11-22 |
| VLC Media Player Multiple Remote Integer Overflow Vulnerabilities | 2008-11-22 |
| Mantis 'string_api.php' Issue Number Information Disclosure Vulnerability | 2008-11-22 |
| Opera Web Browser History Search Input Validation Vulnerability | 2008-11-22 |
| Joomla! and Mambo Daily Message Component 'id' Parameter SQL Injection Vulnerability | 2008-11-22 |
| freeSSHd SFTP 'rename' Remote Buffer Overflow Vulnerability | 2008-11-22 |
| Iamma Nuke Simple Gallery 'upload.php ' Arbitrary File Upload Vulnerability | 2008-11-22 |
| Microsoft Windows Server Service RPC Handling Remote Code Execution Vulnerability | 2008-11-22 |
| Dorsa CMS 'ShowPage.aspx' SQL Injection Vulnerability | 2008-11-22 |
| phpcrs 'frame.php' Local File Include Vulnerability | 2008-11-22 |
| Joomla! ionFiles Component 'download.php' Directory Traversal Vulnerability | 2008-11-22 |
| LoudBlog 'ajax.php' SQL Injection Vulnerability | 2008-11-22 |
| GoodTech SSH Server SFTP Multiple Buffer Overflow Vulnerabilities | 2008-11-22 |
| Drupal Book Page Title HTML Injection Vulnerability | 2008-11-22 |
| Linux Kernel 'tvaudio.c' Operations NULL Pointer Dereference Denial of Service Vulnerability | 2008-11-22 |
| hf Local Privilege Escalation Vulnerability | 2008-11-22 |
| Wireshark 1.0.4 SMTP Denial of Service Vulnerability | 2008-11-22 |
| ZoGo-Shop 'product-details.php' SQL Injection Vulnerability | 2008-11-22 |
| Discuz! Reset Lost Password Security Bypass Vulnerability | 2008-11-22 |
| Vlog System 'blog.php' SQL Injection Vulnerability | 2008-11-22 |
| Ez Ringtone Manager Information Disclosure Vulnerability | 2008-11-22 |
| getaphpsite.com Auto Dealers Arbitrary File Upload Vulnerability | 2008-11-22 |
| getaphpsite.com Real Estate Arbitrary File Upload Vulnerability | 2008-11-22 |
| LoveCMS Simple Forum Password Reset Security Bypass Vulnerability | 2008-11-22 |
| QEMU and KVM VNC Server Remote Denial of Service Vulnerability | 2008-11-22 |
| Userlocator 'y' Parameter SQL Injection Vulnerability | 2008-11-22 |
| RSS Simple News 'news.php' SQL Injection Vulnerability | 2008-11-22 |
| phpCollab Multiple Input Validation Vulnerabilities | 2008-11-22 |
| Trend Micro HouseCall ActiveX Control Library File Remote Code Execution Vulnerability | 2008-11-22 |
| Page Flip Image Gallery 'getConfig.php' Information Disclosure Vulnerability | 2008-11-22 |
| Text Lines Rearrange Script 'download.php' Information Disclosure Vulnerability | 2008-11-22 |
| Merak Mail Server and Webmail Email Message HTML Injection Vulnerability | 2008-11-22 |
| Pligg 'check_url.php' SQL Injection Vulnerability | 2008-11-22 |
| YourPlace 1.0.2 Multiple Remote Vulnerabilities | 2008-11-22 |
| freeSSHd SFTP Commands Multiple Remote Buffer Overflow Vulnerabilities | 2008-11-22 |
| Joomla Apps Volunteer Management Component 'job_id' Parameter SQL Injection Vulnerability | 2008-11-22 |
| SolarCMS 'cat' Parameter SQL Injection Vulnerability | 2008-11-22 |
| COMTREND CT-536 and HG-536 Routers Multiple Remote Vulnerabilities | 2008-11-22 |
| MySQL Calendar 'username' Parameter SQL Injection Vulnerability | 2008-11-22 |
| Linux Kernel 'NFS filename' Local Denial of Service Vulnerability | 2008-11-22 |
| IBM WebSphere Commerce Before 6.0.0.7 Multiple Unspecified Security Vulnerabilities | 2008-11-22 |
| Prototype JavaScript Framework Cross-Site Ajax Request Vulnerability | 2008-11-22 |
| boastMachine 'mail.php' SQL Injection Vulnerability | 2008-11-21 |
| IBM WebSphere Application Server serveServletsByClassnameEnabled Info Disclosure Vulnerability | 2008-11-21 |
| MyBB 'private.php' SQL Injection Vulnerability | 2008-11-21 |
| AlstraSoft Forum Pay Per Post Exchange 'index.php' SQL Injection Vulnerability | 2008-11-21 |
| Tor World CGI Scripts Unspecified Cross-Site Scripting Vulnerabilities | 2008-11-21 |
| Joomla! and Mambo 'com_joomlavvz' Component 'id' Parameter SQL Injection Vulnerability | 2008-11-21 |
| Joomla! and Mambo 'com_most' Component 'secid' Parameter SQL Injection Vulnerability | 2008-11-21 |
| Joomla! and Mambo 'com_asortyment' Component 'katid' Parameter SQL Injection Vulnerability | 2008-11-21 |
| Aeries Student Information System Multiple Input Validation Vulnerabilities | 2008-11-21 |
| IBM Lotus Quickr QuickPlace Server Calendar 'Count' Parameter Cross-Site Scripting Vulnerability | 2008-11-21 |
| Joomla! and Mambo Referenzen Component 'id' Parameter SQL Injection Vulnerability | 2008-11-21 |
| OSSIM Open Source Security Information Management 'modifyportform.php' SQL Injection Vulnerability | 2008-11-21 |
| beContent 'news.php' SQL Injection Vulnerability | 2008-11-21 |
| OSSIM Open Source Security Information Management 'login.php' Cross-Site Scripting Vulnerability | 2008-11-21 |
| PHP-Nuke Classifieds Module 'Details' Parameter SQL Injection Vulnerability | 2008-11-21 |
| XOOPS Tiny Event 'print' Option SQL Injection Vulnerability | 2008-11-21 |
| PHP-Nuke Downloads Module 'sid' Parameter SQL Injection Vulnerability | 2008-11-21 |
| PHP-Nuke Manuales Module 'cid' Parameter SQL Injection Vulnerability | 2008-11-21 |
| XOOPS 'prayerlist' Module 'cid' Parameter SQL Injection Vulnerability | 2008-11-21 |
| Multiple Vendor PEAP Certificate Verification Security Bypass Vulnerability | 2008-11-21 |
| SplitVT 'xprop' Local Privilege Escalation Vulnerability | 2008-11-21 |
| PHP-Nuke NukeC Module 'id_catg' Parameter SQL Injection Vulnerability | 2008-11-21 |
| DSPAM Debian 'libdspam7-drv-mysql' Cron Job MySQL Calls Local Information Disclosure Vulnerability | 2008-11-21 |
| Novell iPrint Client 'ienipp.ocx' ActiveX Control Buffer Overflow Vulnerability | 2008-11-21 |
| Zilab Chat and Instant Messaging (ZIM) Server Multiple Vulnerabilities | 2008-11-21 |
| Plume CMS 'manager/xmedia.php' Cross-Site Scripting Vulnerability | 2008-11-21 |
| IBM ISS Internet Scanner HTML Injection Vulnerability | 2008-11-21 |
| SurgeMail IMAP LSUB Command Remote Stack Buffer Overflow Vulnerability | 2008-11-21 |
| Microsoft Internet Explorer 'setRequestHeader()' Multiple Vulnerabilities | 2008-11-21 |
| Namazu 'namazu.cgi' Cross-Site Scripting Vulnerability | 2008-11-21 |
| Speedport W500 'b_banner.stm' Password Information Disclosure Vulnerability | 2008-11-21 |
| RETIRED: Sun Solaris 'rpc.ypupdated' Arbitrary Command Execution Vulnerability | 2008-11-21 |
| Apple Mac OS X NetCfgTool Local Privilege Escalation Vulnerability | 2008-11-21 |
| Apple Mac OS X Preview PDF Insecure Encryption Weakness | 2008-11-21 |
| Apple Mac OS X Printing to PDF Insecure Encryption Weakness | 2008-11-21 |
| Apple Mac OS X AppKit NSDocument API's Stack Based Buffer Overflow Vulnerability | 2008-11-21 |
| Apple Mac OS X Universal Disc Format Remote Denial of Service Vulnerability | 2008-11-21 |
| DotNetNuke Default 'ValidationKey' and 'DecriptionKey' Weak Encryption Vulnerability | 2008-11-21 |
| PHP 5 'php_sprintf_appendstring()' Remote Integer Overflow Vulnerability | 2008-11-21 |
| Webutil 'webutil.pl' Multiple Remote Command Execution Vulnerabilities | 2008-11-21 |
| ASUS Remote Console DPC Proxy Buffer Overflow Vulnerability | 2008-11-21 |
| RunCMS 'photo' Module 'cid' Parameter SQL Injection Vulnerability | 2008-11-21 |
| D.E. Classifieds 'showCat.php' SQL Injection Vulnerability | 2008-11-21 |
| phpAddressBook 'index.php' Local File Include Vulnerability | 2008-11-21 |
| IBM AIX 'usr/sbin/chnfsmnt' Unspecified Vulnerability | 2008-11-21 |
| Apple iCal 'COUNT' Parameter Integer Overflow Vulnerability | 2008-11-21 |
| Apple iCal 'TRIGGER' Parameter Denial of Service Vulnerability | 2008-11-21 |
| Apple iCal 'ATTACH' Parameter Denial Of Service Vulnerability | 2008-11-21 |
| Advanced Electron Forum 'beg' Parameter Cross Site Scripting Vulnerability | 2008-11-21 |
| SMF Audio CAPTCHA Security Bypass Vulnerability | 2008-11-21 |
| PortailPHP 'mod_search' Remote File Include Vulnerability | 2008-11-21 |
| Acidcat CMS Multiple Input Validation Vulnerabilities | 2008-11-21 |
| MoinMoin Multiple ACL Security Bypass Vulnerabilities | 2008-11-21 |
| Blender 'radiance_hdr.c' Remote Buffer Overflow Vulnerability | 2008-11-21 |
| W1L3D4 Philboard Multiple SQL Injection Vulnerabilities | 2008-11-21 |
| RedDot CMS 'ioRD.asp' SQL Injection Vulnerability | 2008-11-21 |
| Kubelance 'ipn.php' Local File Include Vulnerability | 2008-11-21 |
| Multiple Adobe Products BMP Image Header Buffer Overflow Vulnerability | 2008-11-21 |
| muCommander 'credentials.xml' Local Information Disclosure Vulnerability | 2008-11-21 |
| Tr Script News 'news.php' SQL Injection Vulnerability | 2008-11-21 |
| Multiple Products Forgotten Password Feature CAPTCHA Security Bypass Vulnerability | 2008-11-21 |
| XOOPS Article Module 'article.php' SQL Injection Vulnerability | 2008-11-21 |
| Crazy Goomba 'commentaires.php' SQL Injection Vulnerability | 2008-11-21 |
| Swfdec Untrusted Sandbox Remote Information Disclosure Vulnerability | 2008-11-21 |
| Microsoft 'HeartbeatCtl' ActiveX Control Remote Buffer Overflow Vulnerability | 2008-11-21 |
| SIPp 'call.cpp' Remote Buffer Overflow Vulnerability | 2008-11-21 |
| libxslt XSL File Processing Buffer Overflow Vulnerability | 2008-11-21 |
| Cisco IOS SSH Multiple Denial of Service Vulnerabilities | 2008-11-21 |
| Cisco Unified Customer Voice Portal Unspecified Privilege Escalation Vulnerability | 2008-11-21 |
| Cisco Service Control Engine SSH Server Multiple Denial of Service Vulnerabilities | 2008-11-21 |
| SAP Web Application Server '/sap/bc/gui/sap/its/webgui/' Cross-Site Scripting Vulnerability | 2008-11-21 |
| Mozilla Firefox JSframe Heap Corruption Denial of Service Vulnerability | 2008-11-21 |
| Netious CMS 'index.php' SQL Injection Vulnerability | 2008-11-21 |
| SETroubleShoot sealert Insecure Temporary File Creation Vulnerability | 2008-11-21 |
| vsftpd FTP Server 'deny_file' Option Remote Denial of Service Vulnerability | 2008-11-21 |
| IBM AIX 'errpt' Local Buffer Overflow Vulnerability | 2008-11-21 |
| SETroubleShoot sealert Arbitrary Script Injection Vulnerability | 2008-11-21 |
| IBM AIX 'iostat' Command Local Privilege Escalation Vulnerability | 2008-11-21 |
| Sun Solaris 10 STREAM Administrative Driver Denial of Service Vulnerability | 2008-11-21 |
| Snort Time To Live Fragment Reassembly Security Bypass Weakness | 2008-11-21 |
| IBM Lotus Sametime Multiplexer Buffer Overflow Vulnerability | 2008-11-21 |
| IBM AIX Kernel Local Buffer Overflow Vulnerability | 2008-11-21 |
| Cerulean Studios Trillian Multiple Remote Buffer Overflow Vulnerabilities | 2008-11-21 |
| 6rbScript 'news.php' SQL Injection Vulnerability | 2008-11-21 |
| Simpel Side Weblosninger SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-21 |
| Simpel Side Netbutikker Multiple SQL Injection Vulnerabilities | 2008-11-21 |
| Interchange Unspecified HTTP POST Request Denial Of Service Vulnerability | 2008-11-21 |
| Cerberus Helpdesk Unspecified Security Vulnerability | 2008-11-21 |
| NASM 'ppscan()' Off-By-One Buffer Overflow Vulnerability | 2008-11-21 |
| emuCMS 'index.php' SQL Injection Vulnerability | 2008-11-21 |
| PHPAuction 'profile.php' SQL Injection Vulnerability | 2008-11-21 |
| Ektron CMS400.NET 'ContentRatingGraph.aspx' SQL Injection Vulnerability | 2008-11-21 |
| @CMS Multiple SQL Injection Vulnerabilities | 2008-11-21 |
| KbLance.com 'index.php' SQL Injection Vulnerability | 2008-11-21 |
| Aprox CMS Engine 'index.php' Local File Include Vulnerability | 2008-11-21 |
| Online Fantasy Football League Multiple SQL Injection Vulnerabilities | 2008-11-21 |
| Scientific Image DataBase 'projects.php' SQL Injection Vulnerability | 2008-11-21 |
| AJ HYIP Acme 'news.php' SQL Injection Vulnerability | 2008-11-21 |
| phpAuction 'item.php' SQL Injection Vulnerability | 2008-11-21 |
| le.cms 'admin/upload.php' Arbitrary File Upload Vulnerability | 2008-11-21 |
| CCleague Pro 'type' Cookie Parameter Authentication Bypass Vulnerability | 2008-11-21 |
| le.cms 'submit0' Parameter Authentication Bypass Vulnerability | 2008-11-21 |
| CCleague Pro 'u' Cookie Parameter SQL Injection Vulnerability | 2008-11-21 |
| openSUSE 'libxcrypt' Insecure Password Hash Weakness | 2008-11-21 |
| Jobbex JobSite 'search_result.cfm' Multiple SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-21 |
| EasyBookMarker 'ajaxp_backend.php' Cross-Site Scripting Vulnerability | 2008-11-21 |
| EasyDynamicPages Multiple SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-21 |
| EMC Dantz Retrospect Backup Client 'retroclient.exe' Remote Memory Corruption Vulnerability | 2008-11-21 |
| EasyPublish 'read' Parameter Multiple SQL Injection and Cross-Site Vulnerabilities | 2008-11-21 |
| EMC Retrospect Backup Client Password Hash Information Disclosure Vulnerability | 2008-11-21 |
| Maran PHP Blog 'comments.php' Cross-Site Scripting Vulnerability | 2008-11-21 |
| MyBlog Multiple Remote Information Disclosure Vulnerabilities | 2008-11-21 |
| EZWebAlbum 'download.php' Local File Include Vulnerability | 2008-11-21 |
| Flip 'config.php' Remote File Include Vulnerability | 2008-11-21 |
| EMC Retrospect Backup Client NULL Pointer Remote Denial of Service Vulnerability | 2008-11-21 |
| DigiLeave 'info_book.asp' SQL Injection Vulnerability | 2008-11-21 |
| Interact 'help.php' Multiple Local File Include Vulnerabilities | 2008-11-21 |
| HRS Multi 'picture_pic_bv.asp' SQL Injection Vulnerability | 2008-11-21 |
| IntelliTamper HTML 'href' Parsing Buffer Overflow Vulnerability | 2008-11-21 |
| phpKF 'forum_duzen.php' SQL Injection Vulnerability | 2008-11-21 |
| EMC Retrospect Weak Hash Algorithm Insecure Password Weakness | 2008-11-21 |
| HiFriend 'cgi-bin/hifriend.pl' Open Email Relay Vulnerability | 2008-11-21 |
| Asterisk IAX 'POKE' Requests Remote Denial of Service Vulnerability | 2008-11-21 |
| MojoPersonals 'mojoClassified.cgi' SQL Injection Vulnerability | 2008-11-21 |
| MyReview Remote Information Disclosure Vulnerability | 2008-11-21 |
| EasyE-Cards SQL Injection Vulnerability and Multiple Cross Site Scripting Vulnerabilities | 2008-11-21 |
| XOOPS Local File Include and Cross Site Scripting Vulnerabilities | 2008-11-21 |
| RunCMS Multiple Remote File Include Vulnerabilities | 2008-11-21 |
| eSyndiCat 'admin_lng' Cookie Parameter Authentication Bypass Vulnerability | 2008-11-21 |
| AlphAdmin CMS 'aa_login' Cookie Parameter Authentication Bypass Vulnerability | 2008-11-21 |
| VisualPic Cross-Site Scripting Vulnerability | 2008-11-21 |
| AtomatiCMS 'upload.php' Arbitrary File Upload Vulnerability | 2008-11-21 |
| E-topbiz Shopcart DX 'product_detail.php' SQL Injection Vulnerability | 2008-11-21 |
| Ceica Groupware Multiple Remote File Upload Vulnerabilities | 2008-11-21 |
| OpenSSH 'X11UseLocalhost' X11 Forwarding Session Hijacking Vulnerability | 2008-11-21 |
| ZDaemon NULL Pointer Remote Denial of Service Vulnerability | 2008-11-21 |
| Scripts4Profit DXShopCart 'pid' Parameter SQL Injection Vulnerability | 2008-11-21 |
| Simasy CMS 'id' Parameter SQL Injection Vulnerability | 2008-11-21 |
| QuidaScript FAQ Management Script 'catid' Parameter SQL Injection Vulnerability | 2008-11-21 |
| Fujitsu Web-Based Admin View Directory Traversal Vulnerability | 2008-11-21 |
| FAR-PHP 'index.php' Local File Include Vulnerability | 2008-11-21 |
| libxml2 Recursive Entity Remote Denial of Service Vulnerability | 2008-11-21 |
| EasySite Multiple Local File Include Vulnerabilities | 2008-11-21 |
| tinyCMS 'templater.php' Local File Include Vulnerability | 2008-11-21 |
| PicturesPro Photo Cart Multiple SQL Injection Vulnerabilities | 2008-11-21 |
| CustomCMS CCMS Gaming 'print.php' SQL Injection Vulnerability | 2008-11-21 |
| BandSite CMS Cross Site Scripting and Information Disclosure Vulnerabilities | 2008-11-21 |
| TimeTrex Time and Attendance Module Multiple Cross-Site Scripting Vulnerabilities | 2008-11-21 |
| Scripts4Profit DXShopCart 'search.php' Cross-Site Scripting Vulnerability | 2008-11-21 |
| LacoodaST and La!cooda WIZ Multiple Remote Vulnerabilities | 2008-11-21 |
| GNU ed File Processing 'strip_escapes()' Heap Overflow Vulnerability | 2008-11-21 |
| Epic Games Unreal Tournament 3 UT3 WebAdmin Directory Traversal Vulnerability | 2008-11-21 |
| Mevin Productions Basic PHP Events Lister 'id' Parameter SQL Injection Vulnerability | 2008-11-21 |
| NetArt Media Real Estate Portal 'index.php' SQL Injection Vulnerability | 2008-11-21 |
| NetArt Media Jobs Portal Multiple SQL Injection Vulnerabilities | 2008-11-21 |
| 6rbScript 'singerid' Parameter SQL Injection Vulnerability | 2008-11-21 |
| AvailScript Article Script 'view.php' SQL Injection Vulnerability | 2008-11-21 |
| Diesel Job Site 'job-info.php' SQL Injection Vulnerability | 2008-11-21 |
| Akira Powered Image Gallery 'function.php' SQL Injection Vulnerability | 2008-11-21 |
| eXtrovert software Thyme 'add_calendars.php' Cross Site Scripting Vulnerability | 2008-11-21 |
| Invision Power Board 'name' parameter SQL Injection Vulnerability | 2008-11-21 |
| BlueCUBE CMS 'tienda.php' SQL Injection Vulnerability | 2008-11-21 |
| Limbo CMS 'open.php' SQL Injection Vulnerability | 2008-11-21 |
| Opera Web Browser Multiple Cross Site Scripting Vulnerabilities | 2008-11-21 |
| F-Secure Multiple Products RPM File Integer Overflow Vulnerability | 2008-11-21 |
| TYPO3 Simple survey Extension Unspecified SQL Injection Vulnerability | 2008-11-21 |
| Linux Kernel SCTP Protocol Violation Remote Denial of Service Vulnerability | 2008-11-21 |
| Dizi Portali 'diziler.asp' SQL Injection Vulnerability | 2008-11-21 |
| phPhotoGallery 'index.php' SQL Injection Vulnerability | 2008-11-21 |
| LightBlog Multiple Local File Include Vulnerabilities | 2008-11-21 |
| Bahar Download Script 'aspkat.asp' SQL Injection Vulnerability | 2008-11-21 |
| NXP Semiconductors MIFARE Classic Smartcard Multiple Security Weaknesses | 2008-11-21 |
| ShopMaker 'product.php' SQL Injection Vulnerability | 2008-11-21 |
| Multiple Vendor Web Browser FTP Client Cross Site Scripting Weakness | 2008-11-21 |
| IBM DB2 Universal Database Prior to 9.1 Fixpak 6 Multiple Vulnerabilities | 2008-11-21 |
| Sun Integrated Lights-Out Manager (ILOM) Authentication Bypass Vulnerability | 2008-11-21 |
| 'imlib2' Library Multiple Unspecified Vulnerabilities | 2008-11-21 |
| 'libspf2' DNS TXT Record Handling Remote Buffer Overflow Vulnerability | 2008-11-21 |
| SemanticScuttle Multiple Cross-Site Scripting Vulnerabilities | 2008-11-21 |
| KVIrc URI Handler Remote Command Execution Vulnerability | 2008-11-21 |
| Apple iPhone Configuration Web Utility for Windows Directory Traversal Vulnerability | 2008-11-21 |
| eXtrovert Software Thyme Joomla! Component SQL Injection Vulnerability | 2008-11-21 |
| CUPS 'cupsd' RSS Subscriptions NULL Pointer Dereference Local Denial Of Service Vulnerability | 2008-11-21 |
| Verlihub Trigger Remote Command Execution Vulnerability | 2008-11-21 |
| Gallery Unspecified Security Bypass Vulnerability | 2008-11-21 |
| ImpressCMS 'rank_title' Parameter HTML Injection Vulnerability | 2008-11-21 |
| Verlihub Insecure Temporary File Creation Vulnerability | 2008-11-21 |
| CoolPlayer Skin File Buffer Overflow Vulnerability | 2008-11-21 |
| PHP 'mbstring' Extension Buffer Overflow Vulnerability | 2008-11-21 |
| Linksys Wireless-G ADSL Gateway WAG54GS V2.0 Remote Buffer Overflow Vulnerability | 2008-11-21 |
| Trend Micro HouseCall ActiveX Control Remote Code Execution Vulnerability | 2008-11-21 |
| Joomla HBS 'com_hbssearch' Joomla! Component 'r_type' Parameter SQL Injection Vulnerability | 2008-11-21 |
| Joomla HBS Multiple Components 'showhoteldetails' SQL Injection Vulnerability | 2008-11-21 |
| BLOG 'image_upload.php' Arbitrary File Upload Vulnerability | 2008-11-21 |
| ReVou Arbitrary File Upload Vulnerability | 2008-11-21 |
| phpg Multiple Input Validation Vulnerabilities | 2008-11-21 |
| TYPO3 WEC Discussion Extension SQL Injection and Cross Site Scripting Vulnerabilities | 2008-11-21 |
| MTCMS WYSIWYG Editor 'install.cgi' Cross Site Scripting Vulnerability | 2008-11-21 |
| MoinMoin 'acl_hierarchic' ACL Security Bypass Vulnerability | 2008-11-21 |
| Joomla! 'com_mygallery' Component 'cid' Parameter SQL Injection Vulnerability | 2008-11-21 |
| Symantec Storage Foundation Veritas Enterprise Administrator Heap Buffer Overflow Vulnerability | 2008-11-20 |
| Axigen AXIMilter Filtering Module Remote Format String Vulnerability | 2008-11-20 |
| Apache Tomcat SingleSignOn Remote Information Disclosure Vulnerability | 2008-11-20 |
| Symantec Storage Foundation for Windows Scheduler Service Denial of Service Vulnerability | 2008-11-20 |
| PHP-Nuke Inhalt Module 'cid' Parameter SQL Injection Vulnerability | 2008-11-20 |
| PHP-Nuke EasyContent Module 'page_id' Parameter SQL Injection Vulnerability | 2008-11-20 |
| Hitachi EUR Print Manager Remote Denial of Service Vulnerability | 2008-11-20 |
| Hitachi SEWB/PLATFORM SEWB3 Unspecified Denial Of Service Vulnerability | 2008-11-20 |
| Opera Web Browser 9.25 Multiple Security Vulnerabilities | 2008-11-20 |
| RunCMS MyAnnonces Module 'cid' Parameter SQL Injection Vulnerability | 2008-11-20 |
| Schoolwires Academic Portal SQL Injection Vulnerability and Cross-Site Scripting Vulnerability | 2008-11-20 |
| MoinMoin Multiple Cross Site Scripting Vulnerabilities | 2008-11-20 |
| XOOPS eEmpregos Module 'index.php' SQL Injection Vulnerability | 2008-11-20 |
| CUPS 'process_browse_data()' Remote Double Free Denial of Service Vulnerability | 2008-11-20 |
| Highwood Design hwdVideoShare 'Itemid' Parameter SQL Injection Vulnerability | 2008-11-20 |
| PunBB Password Reset Weak Random Number Security Bypass Vulnerability | 2008-11-20 |
| PHP-Nuke Okul Module 'okulid' Parameter SQL Injection Vulnerability | 2008-11-20 |
| Globsy 'globsy_edit.php' Local File Include Vulnerability | 2008-11-20 |
| PHP-Nuke Docum Module 'artid' Parameter SQL Injection Vulnerability | 2008-11-20 |
| Sybase MobiLink Multiple Heap Buffer Overflow Vulnerabilities | 2008-11-20 |
| EMC RepliStor Multiple Remote Heap Based Buffer Overflow Vulnerabilities | 2008-11-20 |
| iScripts MultiCart 'productdetails.php' SQL Injection Vulnerability | 2008-11-20 |
| Invision Power Board BBCode Handling Unspecified HTML Injection Vulnerability | 2008-11-20 |
| Apple AirPort Extreme Base Station AFP Request Denial of Service Vulnerability | 2008-11-20 |
| Adobe Flash FLA File Processing Remote Code Execution Vulnerabilities | 2008-11-20 |
| Gentoo 'ssl-cert' eclass Information Disclosure Vulnerability | 2008-11-20 |
| Elastic Path Multiple Input Validation Vulnerabilities | 2008-11-20 |
| News-Template 'print.php' Multiple Cross Site Scripting Vulnerabilities | 2008-11-20 |
| Piczo Fast Picture Uploader 'ImageUploader4.ocx' ActiveX Control Buffer Overflow Vulnerability | 2008-11-20 |
| Yehe 'envoyer' Arbitrary File Upload Vulnerability | 2008-11-20 |
| Microsoft Windows NoDriveTypeAutoRun Automatic File Execution Vulnerability | 2008-11-20 |
| Joomla! and Mambo Datsogallery Component 'id' Parameter SQL Injection Vulnerability | 2008-11-20 |
| CenterIM URI Hanlding Remote Arbitrary Command Execution Vulnerability | 2008-11-20 |
| w-Agora 'bn_dir_default' Parameter Multiple Remote File Include Vulnerabilities | 2008-11-20 |
| XWine WINE Configuration File Local Arbitrary Command Execution Vulnerability | 2008-11-20 |
| xine-lib Multiple Heap Based Remote Buffer Overflow Vulnerabilities | 2008-11-20 |
| Iatek Knowledge Base 'content_by_cat.asp' SQL Injection Vulnerability | 2008-11-20 |
| RunCMS 'sections' Module 'artid' Parameter SQL Injection Vulnerability | 2008-11-20 |
| Host Directory PRO Cookie Security Bypass Vulnerability | 2008-11-20 |
| dotCMS 'search-results.dot' Cross Site Scripting Vulnerability | 2008-11-20 |
| Foxit Reader 'util.printf()' Remote Buffer Overflow Vulnerability | 2008-11-20 |
| mtr 'split.c' Remote Stack Buffer Overflow Vulnerability | 2008-11-20 |
| AppServ Open Project 'appservlang' Parameter Cross Site Scripting Vulnerability | 2008-11-20 |
| GnuTLS Prior to 2.2.5 Multiple Remote Vulnerabilities | 2008-11-20 |
| RETIRED: vBulletin 'faq.php' SQL Injection Vulnerability | 2008-11-20 |
| Linux Kernel 'hrtimer_forward()' Local Denial of Service Vulnerability | 2008-11-20 |
| Starsgames Control Panel 'index.php' Cross Site Scripting Vulnerability | 2008-11-20 |
| Web Slider 'slide' Parameter SQL Injection Vulnerability | 2008-11-20 |
| Mantis Multiple Input Validation Vulnerabilities | 2008-11-20 |
| Site Tanitimlari Scripti Multiple SQL Injection Vulnerabilities | 2008-11-20 |
| DizaynPlus Nobetci Eczane Takip 'ayrinti.asp' Parameter SQL Injection Vulnerability | 2008-11-20 |
| ComicShout 'index.php' SQL Injection Vulnerability | 2008-11-20 |
| Borland InterBase Malformed Packet Remote Stack Based Buffer Overflow Vulnerability | 2008-11-20 |
| eCMS Multiple Security Vulnerabilities | 2008-11-20 |
| EntertainmentScript 'page.php' Local File Include Vulnerability | 2008-11-20 |
| MX-System 'index.php' SQL Injection Vulnerability | 2008-11-20 |
| Php-Jokesite 'jokes_category.php' SQL Injection Vulnerability | 2008-11-20 |
| IBM Lotus Domino Web Server 'Accept Language' HTTP Header Buffer Overflow Vulnerability | 2008-11-20 |
| IBM Lotus Domino Web Server Unspecified Cross Site Scripting Vulnerability | 2008-11-20 |
| Diigo Toolbar and Diigolet Comment Feature HTML Injection and Information Disclosure Vulnerabilities | 2008-11-20 |
| Virtual Support Office-XP Multiple Remote Vulnerabilities | 2008-11-20 |
| EZTechhelp Company EZCMS Multiple Unspecified Vulnerabilities | 2008-11-20 |
| FireAnt 'index.php' Local File Include Vulnerability | 2008-11-20 |
| WISE-FTP FTP Client 'LIST' Command Directory Traversal Vulnerability | 2008-11-20 |
| IPTBB 'act' Parameter Local File Include Vulnerability | 2008-11-20 |
| Classic FTP 'LIST' Command Directory Traversal Vulnerability | 2008-11-20 |
| FubarForum 'index.php' Local File Include Vulnerability | 2008-11-20 |
| Lightweight news portal Multiple Input Validation and Authentication Bypass Vulnerabilities | 2008-11-20 |
| GL-SH Deaf Forum Cross-Site Scripting Vulnerability and Arbitrary File Upload Vulnerability | 2008-11-20 |
| TMSNC UBX Message Remote Buffer Overflow Vulnerability | 2008-11-20 |
| Multiple XnView Products TAAC File Buffer Overflow Vulnerability | 2008-11-20 |
| CiBlog 'links-extern.php' SQL Injection Vulnerability | 2008-11-20 |
| JaxUltraBB Cross Site Scripting and Local File Include Vulnerabilities | 2008-11-20 |
| Jamroom 'purchase.php' Remote File Include Vulnerability | 2008-11-20 |
| WebGUI Collaboration RSS Information Disclosure Vulnerability | 2008-11-20 |
| PHPFootball 'show.php' SQL Injection Vulnerability | 2008-11-20 |
| MoinMoin 'AdvancedSearch.py' Multiple Cross-Site Scripting Vulnerabilities | 2008-11-20 |
| Zoph Multiple SQL Injection Vulnerabilities | 2008-11-20 |
| SWAT 4 Multiple Denial Of Service Vulnerabilities | 2008-11-20 |
| Anzio Web Print Object ActiveX Control Remote Buffer Overflow Vulnerability | 2008-11-20 |
| Active PHP Bookmarks 'id' Parameter SQL Injection Vulnerability | 2008-11-20 |
| YourFreeWorld Programs Rating Script 'id' Parameter SQL Injection Vulnerability | 2008-11-20 |
| YourFreeWorld Forced Matrix Script 'id' Parameter SQL Injection Vulnerability | 2008-11-20 |
| YourFreeWorld Classifieds Script 'category' Parameter SQL Injection Vulnerability | 2008-11-20 |
| YourFreeWorld Ad-Exchange Script 'id' Parameter SQL Injection Vulnerability | 2008-11-20 |
| YourFreeWorld Viral Marketing Script 'id' Parameter SQL Injection Vulnerability | 2008-11-20 |
| YourFreeWorld URL Rotator Script 'id' Parameter SQL Injection Vulnerability | 2008-11-20 |
| YourFreeWorld Stylish Text Ads Script 'id' Parameter SQL Injection Vulnerability | 2008-11-20 |
| YourFreeWorld Short Url & Url Tracker Script 'id' Parameter SQL Injection Vulnerability | 2008-11-20 |
| Opera Web Browser 9.51 Multiple Security Vulnerabilities | 2008-11-20 |
| llcon Protocol Message Remote Denial of Service Vulnerability | 2008-11-20 |
| Folder Lock Weak Password Encryption Local Information Disclosure Vulnerability | 2008-11-20 |
| phpBazar 'adid' Parameter SQL Injection Vulnerability | 2008-11-20 |
| vBulletin '$newpm[title]' Parameter Cross-Site Scripting Vulnerability | 2008-11-20 |
| webEdition CMS 'we_objectID' Parameter SQL Injection Vulnerability | 2008-11-20 |
| Pars4U Videosharing SQL Injection and Cross Site Scripting Vulnerabilities | 2008-11-20 |
| HP OpenVMS 'SMGSHR.EXE' Local Buffer Overflow Vulnerability | 2008-11-20 |
| Mono 'System.Web' HTTP Header Injection Vulnerability | 2008-11-20 |
| Dnsmasq DCHP Lease Multiple Remote Denial Of Service Vulnerabilities | 2008-11-20 |
| PunBB 'p' Parameter Multiple Cross-Site Scripting Vulnerabilities | 2008-11-20 |
| Linux Kernel 'SCTP' Module Multiple vulnerabilities | 2008-11-20 |
| Opera Web Browser Unicode Whitespace Cross-Site Scripting Weakness | 2008-11-20 |
| Advanced Electron Forum BBCode 'preg_replace' PHP Code Injection Vulnerabilities | 2008-11-20 |
| MyFWB Page Variable SQL Injection Vulnerability | 2008-11-20 |
| Explay CMS Cookie Authentication Bypass Vulnerability | 2008-11-20 |
| DESlock+ Local Buffer Overflow and Multiple Denial of Service Vulnerabilities | 2008-11-20 |
| jPortal 'humor.php' SQL Injection Vulnerability | 2008-11-20 |
| Plaincart 'index.php' SQL Injection Vulnerability | 2008-11-20 |
| Diesel Pay 'index.php' SQL Injection Vulnerability | 2008-11-20 |
| Oceandir 'show_vote.php' SQL Injection Vulnerability | 2008-11-20 |
| Drupal Insecure Cookie Disclosure Weakness | 2008-11-20 |
| Multiple Vendor FTP Server Long Command Handling Security Vulnerability | 2008-11-20 |
| Achievo 'atknodetype' Parameter Cross Site Scripting Vulnerability | 2008-11-20 |
| Symantec Veritas File System 'qiomkfile' Local Information Disclosure Vulnerability | 2008-11-20 |
| Symantec Veritas File System 'qioadmin' Local Information Disclosure Vulnerability | 2008-11-20 |
| Symantec Altiris Deployment Solution Client User Interface Local Privilege Escalation Vulnerability | 2008-11-20 |
| Symantec Altiris Deployment Solution Clear Text Password Local Information Disclosure Vulnerability | 2008-11-20 |
| Dart Communications PowerTCP FTP for ActiveX 'DartFtp.dll' Control Buffer Overflow Vulnerability | 2008-11-20 |
| HP SiteScope SNMP Trap HTML Injection Vulnerability | 2008-11-20 |
| Nice Talk Joomla! Component 'tagid' Parameter SQL Injection Vulnerability | 2008-11-20 |
| DS-Syndicate Joomla! Component 'feed_id' Parameter SQL Injection Vulnerability | 2008-11-20 |
| Woltlab Burning Board rGallery Plugin 'itemID' Parameter SQL Injection Vulnerability | 2008-11-20 |
| Jetbox CMS Multiple SQL Injection Vulnerabilities | 2008-11-20 |
| cpCommerce Multiple Cross Site Scripting Vulnerabilities | 2008-11-20 |
| Movable Type Prior to Version 4.22 Unspecified Cross-Site Scripting Vulnerability | 2008-11-20 |
| FireGPG Insecure Temporary File Creation Vulnerability | 2008-11-20 |
| yappa-ng 'album' Parameter Local File Include Vulnerability | 2008-11-20 |
| PHP-Nuke Sarkilar Module 'id' Parameter SQL Injection Vulnerability | 2008-11-20 |
| Multiple Vendor USB, PS/2 and Laptop Keyboard Electromagnetic Emanation Capture Vulnerability | 2008-11-20 |
| RealVNC 4.1.2 'CMsgReader::readRect()' Remote Code Execution Vulnerability | 2008-11-20 |
| Makale XOOPS Module 'makale.php' SQL Injection Vulnerability | 2008-11-20 |
| MyNETS Unspecified Cross Site Scripting Vulnerability | 2008-11-20 |
| Wysi Wiki Wyg 'index.php' Cross Site Scripting Vulnerability | 2008-11-20 |
| Wireshark 1.0.3 Multiple Denial Of Service Vulnerabilities | 2008-11-20 |
| IBM WebSphere Application Server Denial of Service And Security Bypass Vulnerabilities | 2008-11-20 |
| TYPO3 JobControl Extension Unspecified SQL Injection Vulnerability | 2008-11-20 |
| TYPO3 Econda Plugin Extnesion Unspecified SQL Injection Vulnerability | 2008-11-20 |
| TYPO3 Frontend Users View Extension Unspecified SQL Injection Vulnerability | 2008-11-20 |
| TYPO3 Mannschaftsliste Extension Unspecified SQL Injection Vulnerability | 2008-11-20 |
| TYPO3 M1 Intern Extension Unspecified SQL Injection Vulnerability | 2008-11-20 |
| Smarty Template Engine 'Smarty_Compiler.class.php' Security Bypass Vulnerability | 2008-11-20 |
| KTorrent PHP Code Injection And Security Bypass Vulnerabilities | 2008-11-20 |
| wPortfolio '/admin/upload_form.php' Arbitrary File Upload Vulnerability | 2008-11-20 |
| Softbiz Classifieds Script Cross Site Scripting Vulnerability | 2008-11-20 |
| GeSHi XML Parsing Remote Denial Of Service Vulnerability | 2008-11-20 |
| RETIRED: boastMachine 'mail.php' SQL Injection Vulnerability | 2008-11-20 |
| PunPortal 'login.php' Local File Include Vulnerability | 2008-11-20 |
| SocialEngine HTTP Response Splitting and SQL-injection Vulnerabilities | 2008-11-20 |
| PHP 'error_log' Safe Mode Restriction-Bypass Vulnerability | 2008-11-20 |
| wPortfolio '/admin/userinfo.php' Authentication Bypass Vulnerability | 2008-11-20 |
| NatterChat 'login.asp' Multiple SQL Injection Vulnerabilities | 2008-11-20 |
| vBulletin Visitor Messages Addon Comment Notification HTML Injection Vulnerability | 2008-11-20 |
| PHP-Fusion 'messages.php' SQL Injection Vulnerability | 2008-11-20 |
| EMC ControlCenter SAN Manager 'msragent.exe' Remote Stack Buffer Overflow Vulnerability | 2008-11-20 |
| EMC ControlCenter Manager for SAN 'msragent.exe' Remote Information Disclosure Vulnerability | 2008-11-20 |
| Oracle Database Vault Privilege Escalation Vulnerability | 2008-11-20 |
| Apple iPhone and iPod touch Prior to Version 2.2 Multiple Vulnerabilities | 2008-11-20 |
| NatterChat 'admin/home.asp' Authentication Bypass Vulnerability | 2008-11-20 |
| BitDefender 'pdf.xmd' Module PDF Parsing Remote Denial Of Service Vulnerability | 2008-11-20 |
| MicroHellas ToursManager 'tourview.php' SQL Injection Vulnerability | 2008-11-20 |
| xt:Commerce Unspecified SQL Injection Vulnerability | 2008-11-20 |
| TYPO3 Commerce Extension Unspecified SQL Injection Vulnerability | 2008-11-20 |
| PowerStrip 'pstrip.sys' Local Privilege Escalation Vulnerability | 2008-11-20 |
| NatterChat Multiple Cross-Site Scripting Vulnerabilities | 2008-11-20 |
| Lyris ListManager Multiple Remote Vulnerabilities | 2008-11-19 |
| WordPress Plugin WP-Forum SQL Injection Vulnerability | 2008-11-19 |
| Mozilla Firefox chrome:// URI JavaScript File Request Information Disclosure Vulnerability | 2008-11-19 |
| Kerio MailServer Multiple Unspecified Vulnerabilities | 2008-11-19 |
| IBM Lotus QuickPlace 'Main.nsf' Cross-Site Scripting Vulnerability | 2008-11-19 |
| SIMM-Comm SCI Photo Chat Directory Traversal Vulnerability | 2008-11-19 |
| webcamXP Multiple Information Disclosure and Denial of Service Vulnerabilities | 2008-11-19 |
| Jinzora Multiple HTML Injection and Cross-Site Scripting Vulnerabilities | 2008-11-19 |
| Google Hack Honeypot File Upload Manager 'delall' Unauthorized File Access Vulnerability | 2008-11-19 |
| SmarterTools SmarterMail Subject Field HTML Injection Vulnerability | 2008-11-19 |
| PHP-Nuke Sections Module 'artid' Parameter SQL Injection Vulnerability | 2008-11-19 |
| Facile Forms 'catid' Parameter SQL Injection Vulnerability | 2008-11-19 |
| Joomla! and Mambo 'com_team' Component SQL Injection Vulnerability | 2008-11-19 |
| Joomla! and Mambo com_iigcatalog Component 'cat' Parameter SQL Injection Vulnerability | 2008-11-19 |
| Joomla! and Mambo com_formtool Component 'catid' Parameter SQL Injection Vulnerability | 2008-11-19 |
| Woltlab Burning Board 'password' SQL Injection Vulnerability | 2008-11-19 |
| Joomla! and Mambo com_genealogy Component 'id' Parameter SQL Injection Vulnerability | 2008-11-19 |
| iJoomla com_magazine Component 'pageid' Parameter SQL Injection Vulnerability | 2008-11-19 |
| BEA Systems Multiple Products BEA08-183.00 to BEA08-200.00 Multiple Vulnerabilities | 2008-11-19 |
| PHP-Nuke Web_Links Module 'cid' Parameter SQL Injection Vulnerability | 2008-11-19 |
| Now SMS/MMS Gateway Multiple Buffer Overflow Vulnerabilities | 2008-11-19 |
| Spyce Sample Scripts Multiple Input Validation Vulnerabilities | 2008-11-19 |
| ZyXEL Gateway Products Multiple Vulnerabilities | 2008-11-19 |
| IBM Rational ClearQuest Multiple Parameters Multiple Cross-Site Scripting Vulnerabilities | 2008-11-19 |
| xine-lib 'sdpplin_parse()' Remote Buffer Overflow Vulnerability | 2008-11-19 |
| MyBlog SQL Injection and Remote File Include Vulnerabilities | 2008-11-19 |
| HP StorageWorks Library and Tape Tools Unspecified Local Security Bypass Vulnerability | 2008-11-19 |
| Iatek PortalApp 'links.asp' SQL Injection Vulnerability | 2008-11-19 |
| Asterisk Predictable HTTP Manager Session ID Security Bypass Vulnerability | 2008-11-19 |
| Belkin F5D7230-4 Wireless G Router IP-Based Authentication State Authentication Bypass Vulnerability | 2008-11-19 |
| Joomla! and Mambo joovideo Component 'id' Parameter SQL Injection Vulnerability | 2008-11-19 |
| Joomla! and Mambo Comp Restaurante Component 'id' Parameter SQL Injection Vulnerability | 2008-11-19 |
| Joomla! and Mambo Accombo Component 'id' Parameter SQL Injection Vulnerability | 2008-11-19 |
| Red Hat 'redhat-idm-console' Insecure Startup Script Local Privilege Escalation Vulnerability | 2008-11-19 |
| Easy-Clanpage User 'id' Parameter SQL Injection Vulnerability | 2008-11-19 |
| Joomla! and Mambo Alberghi Component 'id' Parameter SQL Injection Vulnerability | 2008-11-19 |
| CS-Cart 'index.php' Cross-Site Scripting Vulnerability | 2008-11-19 |
| CUPS Multiple Unspecified Input Validation Vulnerabilities | 2008-11-19 |
| PEEL Multiple SQL Injection Vulnerabilities and Arbitrary File Upload Vulnerability | 2008-11-19 |
| Voice of Web AllMyGuests 'AMG_id' SQL Injection Vulnerability | 2008-11-19 |
| YourFreeWorld Apartment Search Script 'listtest.php' SQL Injection Vulnerability | 2008-11-19 |
| PHP-Fusion 'submit.php' SQL Injection Vulnerability | 2008-11-19 |
| SubEdit Player Subtitle File Remote Buffer Overflow Vulnerability | 2008-11-19 |
| XOOPS Recette 'detail.php' SQL Injection Vulnerability | 2008-11-19 |
| Firefly Media Server 'Content-Length' Buffer Overflow Vulnerability | 2008-11-19 |
| Chimaera Project Aterr Multiple Local File Include Vulnerabilities | 2008-11-19 |
| AlkalinePHP 'adduser.php' Security Bypass Vulnerability | 2008-11-19 |
| testMaker Data Export Remote Information Disclosure Vulnerability | 2008-11-19 |
| bcoos 'file' Parameter Local File Include Vulnerability | 2008-11-19 |
| RETIRED: WordPress 'Blog' Module 'Write Tab' Arbitrary File Upload Vulnerability | 2008-11-19 |
| cPanel 'wwwact' Remote Privilege Escalation Vulnerability | 2008-11-19 |
| microSSys CMS 'PAGES[$P]' Remote File Include Vulnerability | 2008-11-19 |
| PhotoStockPlus Uploader Tool ActiveX Control Multiple Stack Based Buffer Overflow Vulnerabilities | 2008-11-19 |
| MercuryBoard 'login.php' SQL Injection Vulnerability | 2008-11-19 |
| AlkalinePHP 'thread.php' SQL Injection Vulnerability | 2008-11-19 |
| Computer Associates ARCserve Backup 'caloggerd' and 'xdr' Functions Multiple Remote Vulnerabilities | 2008-11-19 |
| EntertainmentScript 'play.php' SQL Injection Vulnerability | 2008-11-19 |
| HP-UX 'useradd' Security Bypass Vulnerability | 2008-11-19 |
| FireFTP 'MLSD' And 'LIST' Commands Directory Traversal Vulnerability | 2008-11-19 |
| Stunnel OCSP Certificate Validation Security Bypass Vulnerability | 2008-11-19 |
| libpam-pgsql 'pam_pgsql.c' Authentication Bypass Vulnerability | 2008-11-19 |
| OFFSystem HTTP Headers Remote Buffer Overflow Vulnerability | 2008-11-19 |
| CGIWrap Error Page Handling Cross Site Scripting Vulnerability | 2008-11-19 |
| eLineStudio Site Composer Multiple Input Validation and Unauthorized Access Vulnerabilities | 2008-11-19 |
| Academic Web Tools CMS 1.4.2.8 Multiple Input Validation Vulnerabilities | 2008-11-19 |
| Samart-cms 'site.php' SQL Injection Vulnerability | 2008-11-19 |
| TYPO3 DCD GoogleMap Extension Unspecified Cross-Site Scripting Vulnerability | 2008-11-19 |
| CMS-BRD 'index.php' SQL Injection Vulnerability | 2008-11-19 |
| vBulletin Moderation Control Panel 'redirect' Parameter Cross-Site Scripting Vulnerability | 2008-11-19 |
| OwnRS 'clanek.php' Multiple Input Validation Vulnerabilities | 2008-11-19 |
| TYPO3 Diocese of Portsmouth Calendar Today Extension SQL Injection Vulnerability | 2008-11-19 |
| Orlando CMS classes'GLOBALS['preloc']' Parameter Multiple Remote File Include Vulnerabilities | 2008-11-19 |
| TYPO3 CoolURI Extension SQL Injection Vulnerability | 2008-11-19 |
| TYPO3 Diocese of Portsmouth Training Courses Extension SQL Injection Vulnerability | 2008-11-19 |
| TYPO3 TIMTAB Social Bookmark Icons Extension SQL Injection Vulnerability | 2008-11-19 |
| TYPO3 Fussballtippspiel Extension SQL Injection Vulnerability | 2008-11-19 |
| TYPO3 Download system Extension SQL Injection Vulnerability | 2008-11-19 |
| TYPO3 TARGET-E WorldCup Bets Extension Multiple Unspecified Input Validation Vulnerabilities | 2008-11-19 |
| TYPO3 Random Prayer Extension SQL Injection Vulnerability | 2008-11-19 |
| TYPO3 JobControl Extension Unspecified Cross-Site Scripting and SQL-Injection Vulnerabilities | 2008-11-19 |
| PHP 'rfc822_write_address()' Function Buffer Overflow Vulnerability | 2008-11-19 |
| MindTouch DekiWiki Search Cross-Site Scripting Vulnerability | 2008-11-19 |
| Apple Mac OS X AppleScript ARDAgent Shell Local Privilege Escalation Vulnerability | 2008-11-19 |
| TYPO3 Resource Library Extension Unspecified Cross-Site Scripting Vulnerability | 2008-11-19 |
| TYPO3 nepa-design.de Spam Protection Extension Unspecified Setting Manipulation Vulnerability | 2008-11-19 |
| CaupoShop 'csc_article_details.php' SQL Injection Vulnerability | 2008-11-19 |
| Apple Safari Automatic File Launch Remote Code Execution Vulnerability | 2008-11-19 |
| Apple Safari WebKit JavaScript Arrays Remote Buffer Overflow Vulnerability | 2008-11-19 |
| TYPO3 Frontend Filemanager Extension Unspecified Code Execution Vulnerability | 2008-11-19 |
| Lotus Core CMS 'phpbb_root_path' Parameter Multiple Remote File Include Vulnerabilities | 2008-11-19 |
| AJ Auction Pro 'cate_id' Parameter SQL Injection Vulnerability | 2008-11-19 |
| AJ Auction 'id' Parameter SQL Injection Vulnerability | 2008-11-19 |
| Siteframe 'folder.php' SQL Injection Vulnerability | 2008-11-19 |
| Aprox CMS Engine 'index.php' SQL Injection Vulnerability | 2008-11-19 |
| Vanilla 1.1.4 HTML Injection and Cross-Site Scripting Vulnerabilities | 2008-11-19 |
| Aurora Password Manager System Tray Icon Information Disclosure Vulnerability | 2008-11-19 |
| WordPress 'get_edit_post_link()' & 'get_edit_comment_link()' Multiple Eavesdropping Vulnerabilities | 2008-11-19 |
| SunShop Shopping Cart 'class.ajax.php' Multiple SQL Injection Vulnerabilities | 2008-11-19 |
| Papoo 'suchanzahl' Parameter SQL Injection Vulnerability | 2008-11-19 |
| Sun Solaris NFSv4 Client Kernel Module Local Denial of Service Vulnerability | 2008-11-19 |
| YourFreeWorld Banner Management Script 'id' Parameter SQL Injection Vulnerability | 2008-11-19 |
| Avaya SES Authentication Bypass Vulnerability and Information Disclosure Weakness | 2008-11-19 |
| Vim Insufficient Shell Escaping Multiple Command Execution Vulnerabilities | 2008-11-19 |
| Novell Forum Unspecified Tcl Command Injection Vulnerability | 2008-11-19 |
| TYPO3 auto BE User Registration 'autobeuser' Component SQL Injection Vulnerability | 2008-11-19 |
| HyperStop WebHost Directory Database Disclosure Vulnerability | 2008-11-19 |
| phpShop Unspecified Session Fixation Vulnerability | 2008-11-19 |
| ISC BIND Windows UDP Client Handler Denial Of Service Vulnerability | 2008-11-19 |
| TYPO3 'kw_secdir' Extension Unspecified Remote Code Execution Vulnerability | 2008-11-19 |
| TYPO3 Simple Random Objects Extension Unspecified SQL Injection Vulnerability | 2008-11-19 |
| RETIRED: Xerox WorkCentre/WorkCentre Pro Network Controller Remote Code Execution Vulnerability | 2008-11-19 |
| Parallels H-Sphere 'login.php' Multiple Cross Site Scripting Vulnerabilities | 2008-11-19 |
| TYPO3 My Quiz and Poll Extension Unspecified SQL Injection Vulnerability | 2008-11-19 |
| TYPO3 Swigmore institute Extension Unspecified SQL Injection Vulnerability | 2008-11-19 |
| TYPO3 FE address edit for tt_address & direct mail Extension Unspecified SQL Injection Vulnerability | 2008-11-19 |
| TYPO3 Diocese of Portsmouth Church Search Extension Unspecified SQL Injection Vulnerability | 2008-11-19 |
| TYPO3 HBook Extension Unspecified SQL Injection Vulnerability | 2008-11-19 |
| TYPO3 File List Extension Unspecified Information Disclosure Vulnerability | 2008-11-19 |
| PHP Pro Bid Multiple SQL Injection Vulnerabilities | 2008-11-19 |
| TYPO3 Random Prayer Version 2 Extension Unspecified SQL Injection Vulnerability | 2008-11-19 |
| fhttpd Basic Authorization Remote Denial Of Service Vulnerability | 2008-11-19 |
| TYPO3 Another Backend Login Extension Unspecified SQL Injection Vulnerability | 2008-11-19 |
| LooYu Web IM Cross Site Scripting Vulnerability | 2008-11-19 |
| Explay CMS Multiple HTML Injection Vulnerabilities | 2008-11-19 |
| E-Php Shopping Cart Script 'search_results.php' SQL Injection Vulnerability | 2008-11-19 |
| CCProxy Server HTTP 'CONNECT' Request Buffer Overflow Vulnerability | 2008-11-19 |
| Fast Click SQL Lite 'init.php' Remote File Include Vulnerability | 2008-11-19 |
| e107 CMS 'ue[]' Parameter SQL Injection Vulnerability | 2008-11-19 |
| fence 'fence_apc' and 'fence_apc_snmp' Insecure Temporary File Creation Vulnerabilities | 2008-11-19 |
| Symantec Backup Exec Data Management Protocol Buffer Overflow Vulnerability | 2008-11-19 |
| Symantec Backup Exec for Windows Server Remote Agent Authentication Bypass Vulnerability | 2008-11-19 |
| Streamripper Multiple Buffer Overflow Vulnerabilities | 2008-11-19 |
| Microsoft Windows Vista 'iphlpapi.dll' Local Kernel Buffer Overflow Vulnerability | 2008-11-19 |
| 3Com Wireless 8760 Dual-Radio 11a/b/g PoE Multiple Security Vulnerabilities | 2008-11-19 |
| Ruby on Rails 'redirect_to()' HTTP Header Injection Vulnerability | 2008-11-19 |
| PunBB 'pun_user[language]' Parameter Multiple Local File Include Vulnerabilities | 2008-11-19 |
| PHPCow Unspecified Remote File Include Vulnerability | 2008-11-19 |
| MyTopix 'send' Parameter SQL Injection Vulnerability | 2008-11-19 |
| Mozilla Thunderbird and SeaMonkey 'mailnews' Information Disclosure Vulnerability | 2008-11-19 |
| MauryCMS 'Rss.php' SQL Injection Vulnerability | 2008-11-19 |
| RevSense 'index.php' SQL Injection Vulnerability | 2008-11-19 |
| Pre ASP Job Board 'emp_login.asp' SQL Injection Vulnerability | 2008-11-19 |
| W3matter AskPert 'index.php' SQL Injection Vulnerability | 2008-11-19 |
| Easyedit Multiple SQL Injection Vulnerabilities | 2008-11-19 |
| refbase 'headerMsg' Parameter Cross Site Scripting Vulnerabilities | 2008-11-19 |
| Courier-Authlib Non-Latin Character Handling Postgres SQL Injection Vulnerability | 2008-11-19 |
| Fujitsu-Siemens WebTransactions Unspecified Remote Command Execution Vulnerability | 2008-11-19 |
| webcamXP URL Directory Traversal Vulnerability | 2008-11-19 |
| ClaSS 'scripts/export.php' Information Disclosure Vulnerability | 2008-11-19 |
| MyPBS 'seasonID' Parameter SQL Injection Vulnerability | 2008-11-19 |
| PDFjam Multiple Insecure Temporary File Creation Vulnerabilities | 2008-11-19 |
| Online Keyword Research Tool 'download.php' Local File Include Vulnerability | 2008-11-19 |
| PECL Alternative PHP Cache Local HTML Injection Vulnerability | 2008-11-19 |
| Extract Website 'download.php' Local File Include Vulnerability | 2008-11-19 |
| myPHPscripts Login Session 'login.php' Cross Site Scripting Vulnerability | 2008-11-19 |
| PECL Alternative PHP Cache Local Denial of Service Vulnerability | 2008-11-19 |
| FreeLyrics 'source.php' Information Disclosure Vulnerability | 2008-11-19 |
| Constructr CMS 'show_page' Parameter SQL Injection Vulnerability | 2008-11-19 |
| Constructr CMS Directory Traversal Vulnerability | 2008-11-19 |
| OneOrZero Arbitrary File Upload Vulnerability | 2008-11-19 |
| Apache Tiles Cross Site Scripting And Information Disclosure Vulnerabilities | 2008-11-19 |
| ReVou 'adminlogin/password.php' Remote Password Change Vulnerability | 2008-11-19 |
| Winamp Ultravox Streaming Metadata Multiple Stack Buffer Overflow Vulnerabilities | 2008-11-18 |
| Microsoft Visual Basic Enterprise Edition 6 DSR File Handling Buffer Overflow Vulnerabilities | 2008-11-18 |
| Multiple Horde Products Security Bypass Vulnerability | 2008-11-18 |
| Claroline Multiple Remote Vulnerabilities | 2008-11-18 |
| wyrd Insecure Temporary File Creation Vulnerability | 2008-11-18 |
| astatsPRO com_astatspro Component 'id' Parameter SQL Injection Vulnerability | 2008-11-18 |
| RunCMS 'admin.php' Cross-Site Scripting Vulnerability | 2008-11-18 |
| Yellow Swordfish Simple Forum 'sf-profile.php' SQL Injection Vulnerability | 2008-11-18 |
| ATutor User Profile Multiple HTML Injection Vulnerabilities | 2008-11-18 |
| WordPress Recipes Blog Plugin 'id' Parameter SQL Injection Vulnerability | 2008-11-18 |
| ProjectPier Multiple HTML Injection and Cross-Site Scripting Vulnerabilities | 2008-11-18 |
| Crafty Syntax Live Help 'lostsheep.php' Cross-Site Scripting Vulnerability | 2008-11-18 |
| DESLock+ IOCTL Request Local Code Execution and Denial of Service Vulnerabilities | 2008-11-18 |
| PHP-Nuke Books Module 'cid' Parameter SQL Injection Vulnerability | 2008-11-18 |
| Joomla! and Mambo 'com_pccookbook' Component 'user_id' Parameter SQL Injection Vulnerability | 2008-11-18 |
| Thecus N5200Pro NAS Server Control Panel 'usrgetform.html' Remote File Include Vulnerability | 2008-11-18 |
| sCssBoard 'index.php' Multiple SQL Injection Vulnerabilities | 2008-11-18 |
| Apple iPhoto DPAP Remote Denial of Service Vulnerability | 2008-11-18 |
| SWORD Remote Arbitrary Command Execution Vulnerability | 2008-11-18 |
| Joomla! and Mambo 'com_clasifier' Component 'cat_id' Parameter SQL Injection Vulnerability | 2008-11-18 |
| Sun Solaris DTrace Dynamic Tracing Framework Information Disclosure Vulnerability | 2008-11-18 |
| Apple Mac OS X Server Wiki Server Directory Traversal Vulnerability | 2008-11-18 |
| RETIRED: Apple Safari Prior to 3.1 Multiple Security Vulnerabilities | 2008-11-18 |
| phpstats 'phpstats.php' Cross-Site Scripting Vulnerability | 2008-11-18 |
| BusinessObjects 'RptViewerAX' ActiveX Control Stack Based Buffer Overflow Vulnerability | 2008-11-18 |
| eForum 'busca.php' Multiple Cross Site Scripting Vulnerabilities | 2008-11-18 |
| webSPELL 'index.php' Cross-Site Scripting Vulnerability | 2008-11-18 |
| Microsoft Internet Explorer CreateTextRange.text Code Execution Vulnerability | 2008-11-18 |
| Travelsized CMS 'frontpage.php' and 'index.php' Multiple Input Validation Vulnerabilities | 2008-11-18 |
| S9Y Serendipity Trackbacks HTML Injection Vulnerability | 2008-11-18 |
| Check Point VPN-1 IP Address Collision Denial of Service Vulnerability | 2008-11-18 |
| cPanel List Directories and Folders Information Disclosure Vulnerability | 2008-11-18 |
| HTTP File Upload ActiveX Control Arbitrary File and Directory Deletion Vulnerability | 2008-11-18 |
| MIT Kerberos5 kadmind Excessive File Descriptors Multiple Remote Code Execution Vulnerabilities | 2008-11-18 |
| MIT Kerberos 5 KDC Multiple Memory Corruption Based Information Disclosure Vulnerabilities | 2008-11-18 |
| RETIRED: Apple Mac OS X 2008-002 Multiple Security Vulnerabilities | 2008-11-18 |
| Joomla! and Mambo Acajoom Component 'mailingid' Parameter SQL Injection Vulnerability | 2008-11-18 |
| KAPhotoservice 'album.asp' SQL Injection Vulnerability | 2008-11-18 |
| CUPS CGI Interface Remote Buffer Overflow Vulnerability | 2008-11-18 |
| Asterisk RTP Codec Payload Handling Multiple Buffer Overflow Vulnerabilities | 2008-11-18 |
| Easy-Clanpage 'id' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-18 |
| Asterisk Call Authentication Security Bypass Vulnerability | 2008-11-18 |
| Asterisk Logger and Manager Format String Vulnerabilities | 2008-11-18 |
| Apple Mac OS X AFP Client 'afp://' URI Remote Code Execution Vulnerability | 2008-11-18 |
| Apple Safari Error Page Cross-Site Scripting Vulnerability | 2008-11-18 |
| Apple Mac OS X AFP Server Cross-Realm Authentication Bypass Vulnerability | 2008-11-18 |
| Apple Safari WebCore 'Kotoeri' Password Field Information Disclosure Vulnerability | 2008-11-18 |
| Apple Safari Javascript URL Parsing Cross-Site Scripting Vulnerability | 2008-11-18 |
| Apple Safari WebCore 'document.domain' Cross-Site Scripting Vulnerability | 2008-11-18 |
| Apple Safari WebCore 'window.open()' Function Cross-Site Scripting Vulnerability | 2008-11-18 |
| Apple Safari WebCore Java Frame Navigation Cross-Site Scripting Vulnerability | 2008-11-18 |
| Apple Safari WebCore 'document.domain' Variant Cross-Site Scripting Vulnerability | 2008-11-18 |
| Apple Safari WebCore History Object Cross-Site Scripting Vulnerability | 2008-11-18 |
| Apple Safari WebKit JavaScript Regular Expression Handling Buffer Overflow Vulnerability | 2008-11-18 |
| Apple Mac OS X mDNSResponderHelper Local Format String Vulnerability | 2008-11-18 |
| Apple Mac OS X AppKit Bootstrap Namespace Local Privilege Escalation Vulnerability | 2008-11-18 |
| Apple Mac OS X Foundation 'NSSelectorFromString' Input Validation Vulnerability | 2008-11-18 |
| Apple Safari WebKit Frame Method Cross-Site Scripting Vulnerability | 2008-11-18 |
| Apple Mac OS X Foundation NSFileManager Insecure Directory Local Privilege Escalation Vulnerability | 2008-11-18 |
| Apple Mac OS X Authenticated Print Queue Information Disclosure Vulnerability | 2008-11-18 |
| Apple Mac OS X 'notifyd' Local Denial of Service Vulnerability | 2008-11-18 |
| Apple Safari Web Inspector Remote Code Injection Vulnerability | 2008-11-18 |
| Apple Safari CFNetwork Arbitrary Secure Website Spoofing Vulnerability | 2008-11-18 |
| Apple Mac OS X Foundation 'NSFileManager' Stack-Based Buffer Overflow Vulnerability | 2008-11-18 |
| Apple Mac OS X AppKit Legacy Serialization Kit Multiple Integer Overflow Vulnerabilities | 2008-11-18 |
| Apple Mac OS X Foundation 'NSURLConnection' Cache Management Race Condition Security Vulnerability | 2008-11-18 |
| Apple Mac OS X Image RAW Stack-Based Buffer Overflow Vulnerability | 2008-11-18 |
| Apple Mac OS X AppKit PPD File Stack Buffer Overflow Vulnerability | 2008-11-18 |
| Apple Mac OS X pax Archive Utility Remote Code Execution Vulnerability | 2008-11-18 |
| Apple Mac OS X Foundation 'NSXML' XML File Processing Race Condition Security Vulnerability | 2008-11-18 |
| Apple Mac OS X Application Firewall German Translation Insecure Configuration Weakness | 2008-11-18 |
| Apple Mac OS X Help Viewer Remote Applescript Code Execution Vulnerability | 2008-11-18 |
| Apple Mac OS X Podcast Producer Podcast Capture Information Disclosure Vulnerability | 2008-11-18 |
| Apple Mac OS X libc 'strnstr(3)' Off-By-One Denial of Service Vulnerability | 2008-11-18 |
| Apple Mac OS X CoreFoundation Time Zone Data Local Privilege Escalation Vulnerability | 2008-11-18 |
| Apple Mac OS X CoreServices '.ief' Files Security Policy Violation Weakness | 2008-11-18 |
| SunShop Shopping Cart 'adminindex.php' Multiple SQL Injection Vulnerabilities | 2008-11-18 |
| IBM DB2 Universal Database JAR File Processing Multiple Denial of Service Vulnerabilities | 2008-11-18 |
| IBM DB2 'NNSTAT' Procedure Arbitrary File Overwrite Vulnerability | 2008-11-18 |
| TLM CMS Multiple SQL Injection Vulnerabilities | 2008-11-18 |
| Grape Web Statistics 'functions.php' Remote File Include Vulnerability | 2008-11-18 |
| LightNEasy 1.2.2 Flat Multiple Input Validation Vulnerabilities | 2008-11-18 |
| 5th Avenue Shoppe 'category_list.php' SQL Injection Vulnerability | 2008-11-18 |
| Wikepage Opus 'wiki' Parameter Cross-Site Scripting Vulnerability | 2008-11-18 |
| IBM DB2 Universal Database ADMIN_SP_C and ADMIN_SP_C2 Prodecures Remote Code Execution Vulnerability | 2008-11-18 |
| PHP Toolkit Quote Parameter Information Disclosure and Denial of Service Vulnerability. | 2008-11-18 |
| WordPress 'cat' Parameter Directory Traversal Vulnerability | 2008-11-18 |
| TorrentFlux Cross-Site Request Forgery and Remote PHP Script Code Execution Vulnerabilities | 2008-11-18 |
| uTorrent WebUI Cross-Site Request Forgery Vulnerability | 2008-11-18 |
| Azureus HTML WebUI Cross-Site Request Forgery Vulnerability | 2008-11-18 |
| Simple Customer 'contact.php' SQL Injection Vulnerability | 2008-11-18 |
| openInvoice Security Bypass Vulnerabilities | 2008-11-18 |
| phShoutBox Cookie Security Bypass Vulnerability | 2008-11-18 |
| CMS WebManager-Pro Multiple SQL Injection Vulnerabilities | 2008-11-18 |
| eCMS Cookie Multiple Security Vulnerabilities | 2008-11-18 |
| LulieBlog Multiple Remote Vulnerabilities | 2008-11-18 |
| GNU/Gallery 'admin.php' Local File Include Vulnerability | 2008-11-18 |
| MeltingIce File System 'admin/adduser.php' Security Bypass Vulnerability | 2008-11-18 |
| Mypicgallery 'admin/addUser.php' Security Bypass Vulnerability | 2008-11-18 |
| eMule Plus Unspecified Security Vulnerability | 2008-11-18 |
| ManageEngine OpUtils 'hostName' HTML Injection Vulnerability | 2008-11-18 |
| Exero CMS 'theme' Parameter Multiple Local File Include Vulnerabilities | 2008-11-18 |
| doITlive CMS Multiple SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-18 |
| Traindepot Local File Include and Cross-Site Scripting Vulnerabilities | 2008-11-18 |
| Cisco Intrustion Prevention System (IPS) Platforms Inline Mode Denial of Service Vulnerability | 2008-11-18 |
| Microsoft Visual Basic Enterprise Edition 6 'vb6skit.dll' Remote Buffer Overflow Vulnerability | 2008-11-18 |
| Mozilla Firefox 3 Unspecified Buffer Overflow Vulnerability | 2008-11-18 |
| aspWebCalendar 'calendar_admin.asp' Arbitrary File Upload Vulnerability | 2008-11-18 |
| PHP 'chdir()' and 'ftok()' 'safe_mode' Multiple Security Bypass Vulnerabilities | 2008-11-18 |
| PHP 5 'posix_access()' Function 'safe_mode' Bypass Directory Traversal Vulnerability | 2008-11-18 |
| MyBizz-Classifieds 'index.php' SQL Injection Vulnerability | 2008-11-18 |
| MaxTrade Trade Module SQL Injection Vulnerability | 2008-11-18 |
| BoatScripts Classifieds 'type' Parameter SQL Injection Vulnerability | 2008-11-18 |
| Mozilla Firefox CSSValue Array Data Structure Remote Code Execution Vulnerability | 2008-11-18 |
| Carscripts Classifieds 'index.php' SQL Injection Vulnerability | 2008-11-18 |
| nweb2fax Multiple Remote Vulnerabilities | 2008-11-18 |
| SurgeMail IMAP Command Unspecified Denial of Service Vulnerability | 2008-11-18 |
| Easy Webstore 'index.php' SQL Injection Vulnerability | 2008-11-18 |
| Drupal TrailScout Module SQL Injection And HTML Injection Vulnerabilities | 2008-11-18 |
| KEIL Software photokorn 'index.php' SQL Injection Vulnerability | 2008-11-18 |
| Novell GroupWise WebAccess Simple Interface Cross Site Scripting Vulnerability | 2008-11-18 |
| LunarNight Laboratory WebProxy Cross Site Scripting Vulnerability | 2008-11-18 |
| CreaCMS Multiple Remote File Include Vulnerabilities | 2008-11-18 |
| Lemon CMS 'browser.php' Local File Include Vulnerability | 2008-11-18 |
| Stash Cookie Authentication Bypass Vulnerability | 2008-11-18 |
| Microsoft Windows Vista Shutdown Button Local Security Bypass Vulnerability | 2008-11-18 |
| Def_Blog 'article' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-18 |
| SmbClientParser Perl Module Remote Command Execution Vulnerability | 2008-11-18 |
| phpFreeChat 'demo21_with_hardocded_urls.php' Cross Site Scripting Vulnerability | 2008-11-18 |
| zypp-refresh-patches wrapper XML Repository Corruption Weakness | 2008-11-18 |
| phpScheduleIt 'useLogonName' Security Bypass Vulnerability | 2008-11-18 |
| VidiScript Remote File Upload Vulnerability | 2008-11-18 |
| Ipswitch WS_FTP Server Message Response Buffer Overflow Vulnerability | 2008-11-18 |
| PHP Live Helper Multiple Input Validation Vulnerabilities | 2008-11-18 |
| AWStats 'awstats.pl' Cross-Site Scripting Vulnerability | 2008-11-18 |
| Freeway 'language' Parameter Multiple Local File Include Vulnerabilities | 2008-11-18 |
| NewsHOWLER Cookie Data SQL Injection Vulnerability | 2008-11-18 |
| OllyDBG 'ollydbg.ini' Debug Argument Local Buffer Overflow Vulnerability | 2008-11-18 |
| cyberBB Multiple SQL Injection Vulnerabilities | 2008-11-18 |
| Ovidentia 'index.php' Cross-Site Scripting Vulnerability | 2008-11-18 |
| SWIMAGE Encore Master Password Information Disclosure Vulnerability | 2008-11-18 |
| VMware Workstation 'hcmon.sys' Local Denial Of Service Vulnerability | 2008-11-18 |
| Sun Java System Portal Server Portlets Cross-Site Scripting Vulnerability | 2008-11-18 |
| itMedia Multiple SQL Injection Vulnerabilities | 2008-11-18 |
| SFS Affiliate Directory 'id' Parameter SQL Injection Vulnerability | 2008-11-18 |
| YourFreeWorld Ad Board Script 'id' Parameter SQL Injection Vulnerability | 2008-11-18 |
| K Web CMS 'sayfala.asp' SQL Injection Vulnerability | 2008-11-18 |
| Adobe Flash Player Clipboard Security Weakness | 2008-11-18 |
| Gallery Prior to 2.2.6 Multiple Vulnerabilities | 2008-11-18 |
| Denora IRC Stats CTCP String Handling Remote Denial Of Service Vulnerability | 2008-11-18 |
| FFmpeg 'lavf_demux' Animated GIF Processing Remote Denial of Service Vulnerability | 2008-11-18 |
| InstallShield Update Service Agent ActiveX Control Buffer Overflow Vulnerability | 2008-11-18 |
| Drupal Talk Module Multiple Remote Vulnerabilities | 2008-11-18 |
| Cyask 'collect.php' Information Disclosure Vulnerability | 2008-11-18 |
| ProArcadeScript 'random' Parameter SQL Injection Vulnerability | 2008-11-18 |
| Diesel Joke Site 'picture_category.php' SQL Injection Vulnerability | 2008-11-18 |
| Sama Educational Management System 'Error.asp' Cross-Site Scripting Vulnerability | 2008-11-18 |
| Kantan WEB Server Unspecified Cross Site Scripting Vulnerability | 2008-11-18 |
| Kantan WEB Server Unspecified Directory Traversal Vulnerability | 2008-11-18 |
| G DATA InternetSecurity/AntiVirus/TotalCare 2008 'GDTdiIcpt.sys' Memory Corruption Vulnerability | 2008-11-18 |
| AssetMan 'search_inv.php' Multiple Vulnerabilities | 2008-11-18 |
| Sun Solaris UFS Filesystem 'acl(2)' Local Denial of Service Vulnerability | 2008-11-18 |
| strongSwan 'mpz_export()' Remote Denial Of Service Vulnerability | 2008-11-18 |
| Zeeproperty 'bannerclick.php' SQL Injection Vulnerability | 2008-11-18 |
| XOOPS GesGaleri Module 'index.php' SQL Injection Vulnerability | 2008-11-18 |
| Meeting Room Booking System 'month.php' SQL Injection Vulnerability | 2008-11-18 |
| myWebland miniBloggie 'del.php' SQL Injection Vulnerability | 2008-11-18 |
| phpFastNews Cookie Authentication Bypass Vulnerability | 2008-11-18 |
| FCKeditor 'CurrentFolder' Parameter Arbitrary File Upload Vulnerability | 2008-11-18 |
| VLC Media Player TY File Stack Based Buffer Overflow Vulnerability | 2008-11-18 |
| Libpng Library 'png_handle_tEXt()' Memory Leak Denial of Service Vulnerability | 2008-11-18 |
| Pluck 'g_pcltar_lib_dir' Parameter Local File Include Vulnerability | 2008-11-18 |
| Kimson CMS 'id' Parameter Cross Site Scripting Vulnerability | 2008-11-18 |
| No-IP Dynamic Update Client for Linux Remote Buffer Overflow Vulnerability | 2008-11-18 |
| vBulletin 'admincalendar.php' SQL Injection Vulnerability | 2008-11-18 |
| vBulletin 'admincp/verify.php' SQL Injection Vulnerability | 2008-11-18 |
| Mozilla Firefox/Thunderbird/Seamokey Arbitrary Image Cross Domain Security Bypass Vulnerability | 2008-11-18 |
| vBulletin 'admincp/attachmentpermission.php' SQL Injection Vulnerability | 2008-11-18 |
| vBulletin 'admincp/image.php' SQL Injection Vulnerability | 2008-11-18 |
| Link Back Checker Cookie Authentication Bypass Vulnerability | 2008-11-18 |
| MDaemon Server WorldClient Script Injection Vulnerability | 2008-11-18 |
| Docvert 'test-pipe-to-pyodconverter' Insecure Temporary File Creation Vulnerability | 2008-11-18 |
| IBM Tivoli Access Manager for e-business Remote Denial Of Service Vulnerability | 2008-11-18 |
| PowerDNS 'CH HINFO' Remote Denial of Service Vulnerability | 2008-11-18 |
| sCssBoard 'admin/forums.php' Authentication Bypass Vulnerability | 2008-11-18 |
| libvirt Local Security Bypass Vulnerability | 2008-11-18 |
| DO-CMS 'p' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-18 |
| Irrlicht B3D loader Buffer Overflow Vulnerability | 2008-11-18 |
| EasySiteNetwork Jokes Complete Website 'joke.php' SQL Injection Vulnerability | 2008-11-18 |
| 2532designs 2532|Gigs Local File Include and Arbitrary File Upload Vulnerabilities | 2008-11-18 |
| I-RATER Basic 'messages.php' SQL Injection Vulnerability | 2008-11-18 |
| 2532designs 2532|Gigs 'index.php' SQL Injection Vulnerability | 2008-11-18 |
| MySQL Calendar Cookie Authentication Bypass Vulnerability | 2008-11-18 |
| Phpclanwebsite Multiple Input Validation Vulnerabilities | 2008-11-18 |
| 2532designs 2532|Gigs 'calcss_edit.php' Remote Command Execution Vulnerability | 2008-11-18 |
| ESET Smart Security 'epfw.sys' Local Privilege Escalation Vulnerability | 2008-11-18 |
| Gobbl CMS Cookie Authentication Bypass Vulnerability | 2008-11-18 |
| MyPHPsite 'index.php' Local File Include Vulnerability | 2008-11-18 |
| Sun Solaris Name Service Cache Daemon (nscd(1M)) Local Privilege Escalation Vulnerability | 2008-11-18 |
| Netatalk Printing Request Arbitrary Command Injection Vulnerability | 2008-11-18 |
| WebKit XMLHttpRequest Cookie Information Disclosure Vulnerability | 2008-11-18 |
| MoinMoin 1.6.1 Multiple Remote Vulnerabilities | 2008-11-18 |
| WANPIPE Multiple Unspecified Race Condition Vulnerabilities | 2008-11-18 |
| Epona IP Address Information Disclosure Vulnerability | 2008-11-18 |
| Site2Nite Real Estate Web 'default.asp' Multiple SQL Injection Vulnerabilities | 2008-11-17 |
| X.Org X Server 'MIT-SHM' Local Privilege Escalation Vulnerability | 2008-11-17 |
| X.Org X Server 'Xinput' Extension Local Privilege Escalation Vulnerability | 2008-11-17 |
| X.Org X Server PCF Font Parser Buffer Overflow Vulnerability | 2008-11-17 |
| X.Org X Server 'EVI' Extension Local Privilege Escalation Vulnerability | 2008-11-17 |
| X.Org X Server 'PassMessage' Request Local Privilege Escalation Vulnerability | 2008-11-17 |
| X.Org X Server 'TOG-CUP' Extension Local Privilege Escalation Vulnerability | 2008-11-17 |
| X.Org X 'Server X:1 -sp' Command Information Disclosure Vulnerability | 2008-11-17 |
| LightBlog 'view_member.php' Local File Include Vulnerability | 2008-11-17 |
| freeSSHd 'SSH2_MSG_NEWKEYS' Packet Remote Denial of Service Vulnerability | 2008-11-17 |
| ICQ Message Processing Remote Format String Vulnerability | 2008-11-17 |
| SNewsCMS 'search.php' Cross-Site Scripting Vulnerability | 2008-11-17 |
| Multiple Time Sheets 'tab' Parameter Multiple Input Validation Vulnerabilities | 2008-11-17 |
| RaidSonic NAS-4220-B Encryption Key Disclosure Vulnerability | 2008-11-17 |
| Novell GroupWise Windows Client API Shared Folder Email Information Disclosure Vulnerability | 2008-11-17 |
| MG-SOFT Net Inspector Multiple Remote Vulnerabilities | 2008-11-17 |
| Cfnetgs 'index.php' Cross-Site Scripting Vulnerability | 2008-11-17 |
| PBSite Multiple Input Validation Vulnerabilities | 2008-11-17 |
| BootManage TFTP Server 'filename' Remote Buffer Overflow Vulnerability | 2008-11-17 |
| Joomla! and Mambo 'com_guide' Component 'category' Parameter SQL Injection Vulnerability | 2008-11-17 |
| phpBP 'id' Parameter SQL Injection Vulnerability | 2008-11-17 |
| Exero CMS 'theme' Parameter Multiple Local File Include Vulnerabilities | 2008-11-17 |
| VLC Media Player 'Subtitle' Buffer Overflow Vulnerability | 2008-11-17 |
| XOOPS Dictionary Module 'print.php' SQL Injection Vulnerability | 2008-11-17 |
| VMware Server 1.0.5 and Workstation 6.0.3 Multiple Vulnerabilities | 2008-11-17 |
| RSA WebID 'IISWebAgentIF.dll' Cross-Site Scripting Vulnerability | 2008-11-17 |
| Imperva SecureSphere Cross-Site Scripting Vulnerability | 2008-11-17 |
| WEBalbum 'photo_add.php' Security Bypass Vulnerability | 2008-11-17 |
| F-Secure Multiple Products Multiple Remote Archive Handling Vulnerabilities | 2008-11-17 |
| Home FTP Server Remote Denial of Service Vulnerability | 2008-11-17 |
| PHPauction 'include_path' Parameter Multiple Remote File Include Vulnerabilities | 2008-11-17 |
| 7-Zip Unspecified Archive Handling Vulnerability | 2008-11-17 |
| bzip2 Unspecified File Handling Vulnerability | 2008-11-17 |
| Registry Pro 'epRegPro.ocx' ActiveX Control Insecure Method And Buffer Overflow Vulnerabilities | 2008-11-17 |
| Info-ZIP UnZip 'inflate_dynamic()' Remote Code Execution Vulnerability | 2008-11-17 |
| VMware Products Multiple Vulnerabilities | 2008-11-17 |
| xine-lib NES Sound Format Demuxer 'demux_nsf.c' Buffer Overflow Vulnerability | 2008-11-17 |
| OpenOffice Multiple Heap Based Buffer Overflow Vulnerabilities | 2008-11-17 |
| Microsoft Works 7 'WkImgSrv.dll' ActiveX Control Remote Code Execution Vulnerability | 2008-11-17 |
| ImageMagick Malformed XCF File Heap Overflow Vulnerability | 2008-11-17 |
| ImageMagick Malformed PCX File Heap Overflow Vulnerability | 2008-11-17 |
| MyBoard 'rep.php' Cross-Site Scripting Vulnerability | 2008-11-17 |
| Php-Stats 'admin.php' Multiple Cross-Site Scripting Vulnerabilities | 2008-11-17 |
| EsContacts 'msg' Parameter Multiple Cross-Site Scripting Vulnerabilities | 2008-11-17 |
| e107 123 FlashChat Module '123flashchat.php' Remote File Include Vulnerability | 2008-11-17 |
| Poppler and Xpdf PDF Rendering Library Embedded Font Remote Code Execution Vulnerability | 2008-11-17 |
| CoBaLT 'adminler.asp' SQL Injection Vulnerability | 2008-11-17 |
| Microsoft Windows SeImpersonatePrivilege Local Privilege Escalation Vulnerability | 2008-11-17 |
| Exponent CMS Multiple HTML Injection Vulnerabilities | 2008-11-17 |
| PHP-Nuke 'KuiraniKerim' Module 'sid' Parameter SQL Injection Vulnerability | 2008-11-17 |
| WR-Meeting 'index.php' Local File Include Vulnerability | 2008-11-17 |
| How2ASP.net Webboard 'showQAnswer.asp' SQL Injection Vulnerability | 2008-11-17 |
| Smeego Cookie Parameter Local File Include Vulnerability | 2008-11-17 |
| FicHive 'category' Parameter SQL Injection Vulnerability | 2008-11-17 |
| Symantec Altiris Notification Server Agent Local Privilege Escalation Vulnerability | 2008-11-17 |
| OpenDocMan 'out.php' Cross-Site Scripting Vulnerability | 2008-11-17 |
| Jura Internet Connectivity Kit Unauthorized Access Input-Validation Vulnerability | 2008-11-17 |
| Comparison Engine Power 'product.detail.php' SQL Injection Vulnerability | 2008-11-17 |
| Microsoft Word Bulleted List Handling Remote Memory Corruption Vulnerability | 2008-11-17 |
| Bizon-CMS 'photo/index.php' SQL Injection Vulnerability | 2008-11-17 |
| Basic-CMS 'index.php' SQL Injection Vulnerability | 2008-11-17 |
| Deterministic Network Enhancer 'dne2000.sys' Local Privilege Escalation Vulnerability | 2008-11-17 |
| FreeCMS 'index.php' SQL Injection Vulnerability | 2008-11-17 |
| ThaiQuickCart 'PHPSESSID' Cookie Parameter Local File Include Vulnerability | 2008-11-17 |
| easyTrade 'detail.php' SQL Injection Vulnerability | 2008-11-17 |
| Foxy 'fs' Parameter Memory Exhaustion Remote Denial of Service Vulnerability | 2008-11-17 |
| PHP Site Lock 'index.php' SQL Injection Vulnerability | 2008-11-17 |
| Adobe Flex 3 History Management 'historyFrame.html' Cross-Site Scripting Vulnerability | 2008-11-17 |
| ClipShare 'group_posts.php' SQL Injection Vulnerability | 2008-11-17 |
| MyShoutPro 'admin_access' Cookie Parameter Authentication Bypass Vulnerability | 2008-11-17 |
| EroCMS 'site' parameter SQL Injection Vulnerability | 2008-11-17 |
| Novell eDirectory iMonitor Unspecified Cross-Site Scripting Vulnerability | 2008-11-17 |
| WebCalendar 'tools/send_reminders.php' Remote File Include Vulnerability | 2008-11-17 |
| UltraEdit FTP/SFTP 'LIST' Command Directory Traversal Vulnerability | 2008-11-17 |
| TorrentTrader Classic Edition Multiple SQL Injection Vulnerabilities | 2008-11-17 |
| IBS 'username' Parameter Cross Site Scripting Vulnerability | 2008-11-17 |
| phpHoo3 'phpHoo3.php' SQL Injection Vulnerability | 2008-11-17 |
| AlstraSoft Video Share Enterprise 'album.php' SQL Injection Vulnerability | 2008-11-17 |
| Oracle mod_wl HTTP POST Request Remote Buffer Overflow Vulnerability | 2008-11-17 |
| AlstraSoft Article Manager Pro 'contact_author.php' SQL Injection Vulnerability | 2008-11-17 |
| Community CMS 'include.php' Remote File Include Vulnerability | 2008-11-17 |
| Debian OpenSSH SELinux Privilege Escalation Vulnerability | 2008-11-17 |
| Arctic Issue Tracker 'filter' Parameter SQL Injection Vulnerability | 2008-11-17 |
| preCMS 'id' Parameter SQL Injection Vulnerability | 2008-11-17 |
| Vim Insecure Temporary File Creation Vulnerability | 2008-11-17 |
| IBM WebSphere Application Server 'PropFilePasswordEncoder' Unspecified Vulnerability | 2008-11-17 |
| OpenLink Virtuoso Multiple Denial Of Service Vulnerabilities | 2008-11-17 |
| Mantis 'account_prefs_update.php' Local File Include Vulnerability | 2008-11-17 |
| IDevSpot BizDirectory Multiple SQL Injection and Cross Site Scripting Vulnerabilities | 2008-11-17 |
| phpArcadeScript 'cat' Parameter SQL Injection Vulnerability | 2008-11-17 |
| XNova Project XNova 'todofleetcontrol.php' Remote File Include Vulnerability | 2008-11-17 |
| Ipswitch WS_FTP Client Format String Vulnerability | 2008-11-17 |
| PHPBasket 'pro_id' Parameter SQL Injection Vulnerability | 2008-11-17 |
| phpRealty 'view.php' Remote File Include Vulnerability | 2008-11-17 |
| Cars & Vehicle 'page.php' SQL Injection Vulnerability | 2008-11-17 |
| Microsoft Internet Explorer Malfromed PNG File Remote Denial of Service Vulnerability | 2008-11-17 |
| Quick.Cart 'admin.php' Cross Site Scripting Vulnerability | 2008-11-17 |
| PHP Crawler 'footer.php' Remote File Include Vulnerability | 2008-11-17 |
| Cisco 871 Integrated Services Router Cross-Site Request Forgery Vulnerability | 2008-11-17 |
| FAAD2 Frontend 'decodeMP4file()' Heap Based Buffer Overflow Vulnerability | 2008-11-17 |
| Technote 'twindow_notice.php' Remote File Include Vulnerability | 2008-11-17 |
| Drupal Link to Us 'Link page header' Field HTML Injection Vulnerability | 2008-11-17 |
| x10 Automatic MP3 Script 'web_root' Parameter Multiple Remote File Include Vulnerabilities | 2008-11-17 |
| Acritum Femitter Server Information Disclosure and Denial of Service Vulnerabilities | 2008-11-17 |
| Data Dynamics ActiveReports ARViewer2 ActiveX Control Multiple Insecure Method Vulnerabilities | 2008-11-17 |
| Add a link Security Bypass and SQL Injection Vulnerabilities | 2008-11-17 |
| Sun Solaris Text Editors Command Execution Vulnerability | 2008-11-17 |
| Drupal Mailhandler Module Multiple SQL Injection Vulnerabilities | 2008-11-17 |
| Drupal Mailsave Module MIME Type HTML Injection Vulnerability | 2008-11-17 |
| XOOPS 'hisa_cart' Module Remote Information Disclosure Vulnerability | 2008-11-17 |
| Slaytanic Scripts Content Plus Version 2.1.1 Multiple Unspecified Vulnerabilities | 2008-11-17 |
| Hummingbird Deployment Wizard 10 'DeployRun.dll' ActiveX Control Multiple Security Vulnerabilities | 2008-11-17 |
| FlashChat 'connection.php' Role Filter Security Bypass Vulnerability | 2008-11-17 |
| Hitachi JP1/NETM/DM SubManager and JP1/NETM/DM Client Denial Of Service Vulnerability | 2008-11-17 |
| Hitachi XFIT/S/JCA and XFIT/S/ZGN Unspecified Denial Of Service Vulnerability | 2008-11-17 |
| Hitachi JP1/File Transmission Server/FTP File Modfication Unauthorized Access Vulnerability | 2008-11-17 |
| Hitachi JP1/File Transmission Server/FTP Unspecified Denial Of Service Vulnerability | 2008-11-17 |
| Apache HTTP Server OS Fingerprinting Unspecified Security Vulnerability | 2008-11-17 |
| ShiftThis Newsletter WordPress Plugin 'stnl_iframe.php' SQL Injection Vulnerability | 2008-11-17 |
| TikiWiki Multiple Unspecified Vulnerabilities | 2008-11-17 |
| GungHo LoadPrgAx ActiveX Control Unspecified Vulnerability | 2008-11-17 |
| BoutikOne CMS 'search_query' Parameter Cross Site Scripting Vulnerability | 2008-11-17 |
| OpenASP 'default.asp' SQL Injection Vulnerability | 2008-11-17 |
| Opera Web Browser 'file://' Heap Based Buffer Overflow Vulnerability | 2008-11-17 |
| infiniteReality mxCamArchive 'archive/config.ini' Information Disclosure Vulnerability | 2008-11-17 |
| FREEze Greetings 'pwd.txt' Password Information Disclosure Vulnerability | 2008-11-17 |
| libxml2 'xmlSAX2Characters()' Integer Overflow Vulnerability | 2008-11-17 |
| E-topbiz AdManager 'view.php' SQL Injection Vulnerability | 2008-11-17 |
| QuadComm Q-Shop Cross Site Scripting and Multiple SQL Injection Vulnerabilities | 2008-11-17 |
| Exodus URI Handler Command Line Parameter Injection Vulnerability | 2008-11-17 |
| libxml2 'xmlBufferResize()' Remote Denial of Service Vulnerability | 2008-11-17 |
| Chilkat Socket ActiveX 'SaveLastError()' Arbitrary File Overwrite Vulnerability | 2008-11-17 |
| Adobe AIR Unspecified JavaScript Code Execution Vulnerability | 2008-11-17 |
| phpFan 'init.php' Remote File Include Vulnerability | 2008-11-17 |
| SaturnCMS 'Username' Login Page SQL Injection Vulnerability | 2008-11-17 |
| Jadu Galaxies 'documents.php' SQL Injection Vulnerability | 2008-11-17 |
| Balabit syslog-ng Insecure 'chroot()' Implementation Weakness | 2008-11-17 |
| Simple Customer 'login.php' SQL Injection Vulnerability | 2008-11-17 |
| UltraStats 'login.php' SQL Injection Vulnerability | 2008-11-17 |
| IBM Lotus Web Content Management Unspecified Cross Site Scripting Vulnerabilities | 2008-11-17 |
| Vim 'tar.vim' Plugin Arbitrary Command Execution Vulnerability | 2008-11-17 |
| Vim 'zip.vim' Plugin Arbitrary Command Execution Vulnerability | 2008-11-17 |
| Dovecot ManageSieve Service '.sieve' Files Directory Traversal Vulnerability | 2008-11-17 |
| GpsDrive Multiple Insecure Temporary File Creation Vulnerabilities | 2008-11-17 |
| K&S Shopsystem 'images.php' Arbitrary File Upload Vulnerability | 2008-11-17 |
| phpcksec 'phpcksec.php' Cross Site Scripting Vulnerability | 2008-11-17 |
| Drupal Services Module Insecure Signing Multiple Security Vulnerabilities | 2008-11-17 |
| Drupal Views Content Construction Kit SQL Injection Vulnerability | 2008-11-17 |
| Adobe Flash Player Remote Command Execution Vulnerability | 2008-11-17 |
| Tech Articles Joomla! Component 'item' Parameter SQL Injection Vulnerability | 2008-11-17 |
| Lizardware CMS '/administrator/index.php' SQL Injection Vulnerability | 2008-11-17 |
| RETIRED: TinyMCE 'menuID' Parameter SQL Injection Vulnerability | 2008-11-17 |
| Phoenician Casino 'FlashAX' ActiveX Control Remote Buffer Overflow Vulnerability | 2008-11-17 |
| PHP Python Extension 'safe_mode' Restriction Bypass Vulnerability | 2008-11-17 |
| ADbNewsSender SQL Injection and Cross Site Scripting Vulnerabilities | 2008-11-17 |
| Sun Solaris IP Tunnel Param Local Code Execution Vulnerability | 2008-11-17 |
| Novell Identity Manager Multiple Cross Site Scripting Vulnerabilities | 2008-11-17 |
| Linux Kernel 'ib700wdt.c' Buffer Underflow Vulnerability | 2008-11-17 |
| Apache Roller 'q' Parameter Cross Site Scripting Vulnerability | 2008-11-17 |
| Varnish HTTP Request Parsing Denial of Service Vulnerability | 2008-11-17 |
| Moodle User Edit Form Unspecified Remote Privilege Escalation Vulnerability | 2008-11-17 |
| TYPO3 pmk_rssnewsexport and cm_rdfexport Extensions Unspecified SQL Injection Vulnerability | 2008-11-17 |
| Linux Kernel 'kill_something_info()' Local Denial of Service Vulnerability | 2008-11-17 |
| ngIRCd PART Command Parsing Denial Of Service Vulnerability | 2008-11-16 |
| PHP-Residence 'visualizza_tabelle.php' SQL Injection Vulnerability | 2008-11-16 |
| Boost Library Regular Expression Remote Denial of Service Vulnerabilities | 2008-11-16 |
| Multiple Web Browser BMP Partial Palette Information Disclosure and Denial Of Service Vulnerability | 2008-11-16 |
| Foxit WAC Remote Access Server Heap Buffer Overflow Vulnerability | 2008-11-16 |
| CA BrightStor 'AddColumn()' ListCtrl.ocx ActiveX Control Buffer Overflow Vulnerability | 2008-11-16 |
| ICQ 'Personal Status Manager' Remote Buffer Overflow Vulnerability | 2008-11-16 |
| Carbon Communities Multiple SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-16 |
| Cisco Network Admission Control Shared Secret Information Disclosure Vulnerability | 2008-11-16 |
| XplodPHP AutoTutorials 'id' Parameter SQL Injection Vulnerability | 2008-11-16 |
| Computer Associates DSM 'gui_cm_ctrls.ocx' ActiveX Control Remote Code Execution Vulnerability | 2008-11-16 |
| Blogator-script 'bs_auth.php' Cross Site Scripting Vulnerability | 2008-11-16 |
| BS.Player SRT File Remote Buffer Overflow Vulnerability | 2008-11-16 |
| Mambo and Joomla! Jom Comment Component User Credential SQL Injection Vulnerability | 2008-11-16 |
| Apple Safari File Download Remote Memory Corruption Vulnerability | 2008-11-16 |
| Apple Safari WebKit URI Handling Cross-Site Scripting Vulnerability | 2008-11-16 |
| Apple Safari WebKit JavaScript Regular Expression Repetition Counts Buffer Overflow Vulnerability | 2008-11-16 |
| Mozilla Firefox/SeaMonkey JavaScript Garbage Collector Memory Corruption Vulnerability | 2008-11-16 |
| Pet Grooming Management System 'useradded.php' Unauthorized Access Vulnerability | 2008-11-16 |
| ACGV News 'glossaire.php' Multiple Input Validation Vulnerabilities | 2008-11-16 |
| AN Guestbook 'send_email.php' Cross Site Scripting Vulnerability | 2008-11-16 |
| Digital Hive 'base_include.php' Local File Include Vulnerability | 2008-11-16 |
| StanWeb CMS 'default.asp' SQL Injection Vulnerability | 2008-11-16 |
| Archangel Management Weblog 'index.php' SQL Injection Vulnerability | 2008-11-16 |
| Zomplog 'install/newuser.php' Unauthorized Access Vulnerability | 2008-11-16 |
| SH-News 'action.php' Authentication Bypass Vulnerability | 2008-11-16 |
| Horde Turba 'services/obrowser/index.php' HTML Injection Vulnerability | 2008-11-16 |
| Linux Kernel 'pppol2tp_recvmsg()' Remote Denial of Service Vulnerability | 2008-11-16 |
| Webmatic Multiple SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-16 |
| 3D-FTP 'LIST' and 'MLSD' Directory Traversal Vulnerabilities | 2008-11-16 |
| ClamAV 'petite.c' Invalid Memory Access Denial Of Service Vulnerability | 2008-11-16 |
| Sun Glassfish Multiple Cross Site Scripting Vulnerabilities | 2008-11-16 |
| Ananta CMS 'change.php' Authentication Bypass Vulnerability | 2008-11-16 |
| NITRO Web Gallery 'albums.php' SQL Injection Vulnerability | 2008-11-16 |
| MyMarket 'index.php' SQL Injection Vulnerability | 2008-11-16 |
| SimpleNotes Multiple Cross Site Scripting Vulnerabilities | 2008-11-16 |
| Open Azimyt CMS 'lang-system.php' Local File Include Vulnerability | 2008-11-16 |
| DIY 'index_topic.php' SQL Injection Vulnerability | 2008-11-16 |
| No-IP DUC Client for Windows Local Information Disclosure Vulnerability | 2008-11-16 |
| Crysis HTTP/XML-RPC Service Remote Denial of Service Vulnerability | 2008-11-16 |
| Skulltag Malformed Packet Denial of Service Vulnerability | 2008-11-16 |
| Lyris ListManager 'words' Parameter Cross Site Scripting Vulnerability | 2008-11-16 |
| BlueZ SDP Payload Processing Multiple Buffer Overflow Vulnerabilities | 2008-11-16 |
| Afuse 'afuse.c' Shell Command Injection Vulnerability | 2008-11-16 |
| PPMate PPMedia Class ActiveX Control Remote Buffer Overflow Vulnerability | 2008-11-16 |
| Galatolo WebManager Cookie Authentication Bypass Vulnerability | 2008-11-16 |
| HockeySTATS Online 'index.php' Multiple SQL Injection Vulnerabilities | 2008-11-16 |
| PhotoPost vBGallery 'upload.php' Arbitrary File Upload Vulnerability | 2008-11-16 |
| HP Select Identity Bidrectional LDAP Connector Remote Unauthorized Access Vulnerability | 2008-11-16 |
| MediaMonkey URI Handling Multiple Denial of Service Vulnerabilities | 2008-11-16 |
| QuickPlayer '.m3u' File Buffer Overflow Vulnerability | 2008-11-16 |
| F-PROT Antivirus CHM File Remote Denial Of Service Vulnerability | 2008-11-16 |
| Netrw Vim Script 's:BrowserMaps()' Command Execution Vulnerability | 2008-11-16 |
| BitComet URI Handling Remote Denial of Service Vulnerability | 2008-11-16 |
| Joomla! and Mambo DT Register Component 'eventId' Parameter SQL Injection Vulnerability | 2008-11-16 |
| PHPizabi 'v_cron_proc.php' Arbitrary Script Injection Vulnerabilities | 2008-11-16 |
| F-PROT Antivirus Multiple File Processing Remote Denial Of Service Vulnerabilities | 2008-11-16 |
| AlstraSoft Affiliate Network Pro 'pgm' Parameter SQL Injection Vulnerability | 2008-11-16 |
| tplSoccerSite Multiple SQL Injection Vulnerabilities | 2008-11-16 |
| Velocity Security Management System HTTP Server Directory Traversal Vulnerability | 2008-11-16 |
| Evaria ECMS 'DOCUMENT_ROOT' Parameter Multiple Remote File Include Vulnerabilities | 2008-11-16 |
| Spring Framework Multiple Remote Vulnerabilities | 2008-11-16 |
| OpenPro 'search_wA.php' Remote File Include Vulnerability | 2008-11-16 |
| Citrix XenServer XenAPI HTTP Interfaces Cross-Site Scripting Vulnerability | 2008-11-16 |
| Mozilla Firefox Mac OS X GIF Rendering Memory Corruption Vulnerability | 2008-11-16 |
| CGI::Session 'CGISESSID' Cookie Value Directory Traversal Vulnerability | 2008-11-16 |
| Nokia 6131 Multiple Vulnerabilities | 2008-11-16 |
| Maya Studio eo-video Playlist File Buffer Overflow Vulnerability | 2008-11-16 |
| VLC Media Player 'demux ta.c' TTA File Handling Buffer Overflow Vulnerability | 2008-11-16 |
| ESET Smart Security 'easdrv.sys' Local Privilege Escalation Vulnerability | 2008-11-16 |
| RETIRED: ComponentOne VSFlexGrid ActiveX Control 'Archive()' Buffer Overflow Vulnerability | 2008-11-16 |
| iScripts EasyIndex 'detaillist.php' SQL Injection Vulnerability | 2008-11-16 |
| Beetel 220BX Series DSL Modem Provided by Airtel Multiple Security Vulnerabilities | 2008-11-16 |
| Acresso FLEXnet Connect 'GetRules.asp' Remote Code Execution Vulnerability | 2008-11-16 |
| Unreal Engine 'UnChan.cpp' Failed Assertion Remote Denial of Service Vulnerability | 2008-11-16 |
| Attachmax Multiple Security Vulnerabilities | 2008-11-16 |
| Adobe Illustrator Malformed AI File Remote Code Execution Vulnerability | 2008-11-16 |
| RETIRED: osCommerce 'create_account.php' Information Disclosure Vulnerability | 2008-11-16 |
| Quick.Cms.Lite 'admin.php' Cross Site Scripting Vulnerability | 2008-11-16 |
| RETIRED: SoftAcid Hotel Reservation System 'city.asp' SQL Injection Vulnerability | 2008-11-16 |
| Apple QuickTime Filetype Remote Off-By-One Stack Buffer Overflow Vulnerability | 2008-11-16 |
| WEB//NEWS Multiple SQL Injection Vulnerabilities | 2008-11-16 |
| Hewlett-Packard Systems Insight Manager Unspecified Unauthorized Access Vulnerability | 2008-11-16 |
| myPHPNuke 'displayCategory.php' Multiple Remote File Include Vulnerabilities | 2008-11-16 |
| Drupal Node Vote Module Cast Vote SQL Injection Vulnerability | 2008-11-16 |
| Drupal Node Clone Module Information Disclosure Vulnerability | 2008-11-16 |
| IP Reg 'locationdel.php' SQL Injection Vulnerability | 2008-11-16 |
| Mosaic Commerce 'category.php' SQL Injection Vulnerability | 2008-11-16 |
| Hummingbird HostExplorer ActiveX Control 'PlainTextPassword()' Buffer Overflow Vulnerability | 2008-11-16 |
| PokerMax Poker League Tournament Script Cookie Authentication Bypass Vulnerability | 2008-11-16 |
| Kure Multiple Local File Include Vulnerabilities | 2008-11-16 |
| CafeEngine 'id' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-16 |
| Mic_blog SQL Injection and Unauthorized Access Vulnerabilities | 2008-11-16 |
| CafeEngine Easy Cafe Engine 'itemid' Parameter SQL Injection Vulnerability | 2008-11-16 |
| Mantis 'manage_proj_page.php' PHP Code Injection Vulnerability | 2008-11-16 |
| Calendars for the Web Security Bypass Vulnerability | 2008-11-16 |
| Linux Kernel i915 Driver 'drivers/char/drm/i915_dma.c' Memory Corruption Vulnerability | 2008-11-16 |
| iGaming CMS 'search.php' SQL Injection Vulnerability | 2008-11-16 |
| Habari 'habari_username' Parameter Cross-Site Scripting Vulnerability | 2008-11-16 |
| Post Affiliate Pro 'index.php' Local File Include Vulnerability | 2008-11-16 |
| MUSCLE 'Message::AddToString()' Buffer Overflow Vulnerability | 2008-11-16 |
| Wholesale 'track.php' SQL Injection Vulnerability | 2008-11-16 |
| Flosites Blog SQL Injection Vulnerabilities | 2008-11-16 |
| phpstore.info Yahoo Answers-Like 'index.php' SQL Injection Vulnerability | 2008-11-16 |
| jhead 'DoCommand()' Arbitrary File Deletion Vulnerability | 2008-11-16 |
| Faupload 'download.php' SQL Injection Vulnerability | 2008-11-16 |
| Free Links Directory Script 'report.php' SQL Injection Vulnerability | 2008-11-16 |
| Realtek Media Player Playlist Buffer Overflow Vulnerability | 2008-11-16 |
| Kerio MailServer WebMail Multiple Cross Site Scripting Vulnerabilities | 2008-11-16 |
| Opera Web Browser prior to 9.63 Multiple Security Vulnerabilities | 2008-11-16 |
| Multiple Barracuda Products Multiple Input Validation Vulnerabilities | 2008-11-16 |
| Microsoft Internet Explorer 'Scripting.FileSystem' Security Bypass Vulnerability | 2008-11-16 |
| Mozilla Firefox MathML XHTML Null Pointer Dereference Denial of Service Vulnerability | 2008-11-16 |
| Mozilla Firefox/Thunderbird/SeaMonkey Multiple Remote Vulnerabilities | 2008-11-16 |
| Gnews Publisher 'authors.asp' SQL Injection Vulnerability | 2008-11-16 |
| Liberum Help Desk 'forgotpass.asp' SQL Injection Vulnerability | 2008-11-16 |
| ASP Indir EvimGibi Pro Resim Galerisi 'resim.asp' SQL Injection Vulnerability | 2008-11-16 |
| RSMScript Cookie Authentication Bypass and HTML Injection Vulnerabilities | 2008-11-16 |
| Opera Web Browser HTML Parsing Heap-Based Remote Code Execution Vulnerability | 2008-11-16 |
| r.cms Multiple SQL Injection Vulnerabilities | 2008-11-16 |
| University of Washington IMAP c-client Buffer Overflow Vulnerability | 2008-11-16 |
| RealNetworks Helix Server Multiple Remote Code Execution Vulnerabilities | 2008-11-16 |
| Moodle HotPot Module 'report.php' SQL Injection Vulnerability | 2008-11-16 |
| Power Phlogger Cross-site Scripting Vulnerability | 2008-11-16 |
| Apple iPhone Passcode Lock Security Bypass Vulnerability | 2008-11-15 |
| Apple QuickTime Compressed PICT Remote Buffer Overflow Vulnerability | 2008-11-15 |
| FaName 'page.php' SQL Injection Vulnerability | 2008-11-15 |
| Microsoft Excel Macro Validation Uninitialized Variable Manipulation Vulnerability | 2008-11-15 |
| Dokeos Multiple SQL Injection, HTML Injection, Cross-Site Scripting, and File Upload Vulnerabilities | 2008-11-15 |
| 2eNetWorX StatCounteX Administration Pages Authentication Bypass Vulnerability | 2008-11-15 |
| IBM Lotus Quickr Unspecified Cross-Site Scripting Vulnerability | 2008-11-15 |
| Joomla!, Mambo and PHP-Nuke Quran Component SQL Injection Vulnerability | 2008-11-15 |
| WebGUI Username HTML Injection Vulnerability | 2008-11-15 |
| IBM DB2 Universal Database Multiple Vulnerabilities | 2008-11-15 |
| RETIRED: Rosoft Media Player RML File Stack-Based Buffer Overflow Vulnerability | 2008-11-15 |
| XnView Command-Line Arguments Buffer Overflow Vulnerability | 2008-11-15 |
| SurgeMail IMAP LIST Command Remote Buffer Overflow Vulnerability | 2008-11-15 |
| Sun Solaris 'rpc.metad' Remote Denial of Service Vulnerability | 2008-11-15 |
| RETIRED: ClamAV 'libclamav/pe.c' UPACK File Heap Based Buffer Overflow Vulnerability | 2008-11-15 |
| WORK system e-commerce 'main.php' Multiple Cross-Site Scripting Vulnerabilities | 2008-11-15 |
| Dotclear 'ecrire/images.php' Arbitrary File Upload Vulnerability | 2008-11-15 |
| KwsPHP Eskuel Module Arbitrary File Upload Vulnerability | 2008-11-15 |
| Amfphp Multiple Cross-Site Scripting Vulnerabilities | 2008-11-15 |
| phpBB Memberlist Search And Private Message Attachment Mutliple Security Bypass Vulnerabilities | 2008-11-15 |
| RETIRED: phpHotResources 'cat.php' SQL Injection Vulnerability | 2008-11-15 |
| RETIRED: BosDev BosNews '/admin/index.php' Authentication Bypass Vulnerability | 2008-11-15 |
| Omnistar OSI Affiliate 'login.php' Multiple Cross-Site Scripting Vulnerabilities | 2008-11-15 |
| Gallarific Cross Site Scripting, HTML Injection and Backdoor Vulnerabilities | 2008-11-15 |
| BigAnt IM Server HTTP GET Request Remote Buffer Overflow Vulnerability | 2008-11-15 |
| W2B Online Banking 'ilang' Parameter Remote File Include Vulnerability | 2008-11-15 |
| Istant-Replay 'read.php' Remote File Include Vulnerability | 2008-11-15 |
| ClamAV 'libclamav/pe.c' WWPACK File Heap Based Buffer Overflow Vulnerability | 2008-11-15 |
| DivX Player .SRT 'subtitle' Remote Buffer Overflow Vulnerability | 2008-11-15 |
| Classifieds Caffe 'cat_id' Parameter SQL Injection Vulnerability | 2008-11-15 |
| LightNEasy Multiple Input Validation Vulnerabilities | 2008-11-15 |
| Red Hat 'redhat-ds-admin' Shell Command Injection and Security Bypass Vulnerabilities | 2008-11-15 |
| LASERnet CMS 'new' Parameter SQL Injection Vulnerability | 2008-11-15 |
| Cecilia Insecure Temporary File Creation Vulnerability | 2008-11-15 |
| eGroupWare Unspecified Arbitrary File Upload Vulnerability | 2008-11-15 |
| Magnolia Enterprise Edition Sitedesigner module 'query' Parameter Cross Site Scripting Vulnerability | 2008-11-15 |
| Kostenloses Linkmanagementscript 'id' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-15 |
| phpVID 'search_results.php' Cross Site Scripting Vulnerability | 2008-11-15 |
| TYPO3 Frontend User Registration Extension Multiple Input Validation Vulnerabilities | 2008-11-15 |
| Aruba Mobility Controller Multiple Remote Vulnerabilities | 2008-11-15 |
| SunShop Shopping Cart 'index.php' SQL Injection Vulnerability | 2008-11-15 |
| Drupal Site Documentation Module Database Tables Information Disclosure Vulnerability | 2008-11-15 |
| Rantx 'admin.php' Unauthorized Access Vulnerability | 2008-11-15 |
| Multi-Page Comment System 'CommentSystemAdmin' Cookie Parameter Authentication Bypass Vulnerability | 2008-11-15 |
| Web Slider 'admin' Cookie Parameter Authentication Bypass Vulnerability | 2008-11-15 |
| 68 Classifieds 'category.php' SQL Injection Vulnerability | 2008-11-15 |
| IMGallery Multiple SQL Injection Vulnerabilities | 2008-11-15 |
| News Manager Multiple Remote Vulnerabilities | 2008-11-15 |
| Linux Kernel Unspecified Security Vulnerability | 2008-11-15 |
| Crysis 'keyexchange' Packet Information Disclosure Vulnerability | 2008-11-15 |
| Advanced Webhost Billing System 'news.php' SQL Injection Vulnerability | 2008-11-15 |
| S.T.A.L.K.E.R. Remote Denial of Service Vulnerability | 2008-11-15 |
| Devalcms 'currentfile' Parameter Local File Include Vulnerability | 2008-11-15 |
| Oxygen 'post.php' SQL Injection Vulnerability | 2008-11-15 |
| Simple Machines Forum 'load.php' SQL Injection Vulnerability | 2008-11-15 |
| Newsx 'read_article()' Buffer Overflow Vulnerability | 2008-11-15 |
| Galatolo Web Manager SQL Injection and Cross-Site Scripting Vulnerabilities | 2008-11-15 |
| Berkeley Yacc (byacc) 'skeleton.c' Local Denial of Service Vulnerability | 2008-11-15 |
| pSys 0.7.0 Alpha Multiple Remote File Include Vulnerabilities | 2008-11-15 |
| Pragyan CMS 'form.lib.php' Remote File Include Vulnerability | 2008-11-15 |
| WinRemotePC Packet Handling Remote Denial of Service Vulnerability | 2008-11-15 |
| Comdev Web Blogger 'arcmonth' Parameter SQL Injection Vulnerability | 2008-11-15 |
| WordPress 'press-this.php' Multiple Cross-Site Scripting Vulnerabilities | 2008-11-15 |
| CMME Cross Site Scripting And Information Disclosure Vulnerabilities | 2008-11-15 |
| php Help Agent 'head_chat.inc.php' Local File Include Vulnerability | 2008-11-15 |
| Redmine Unspecified Cross Site Scripting Vulnerability | 2008-11-15 |
| Mozilla Firefox URI Splitting Security Bypass Vulnerability | 2008-11-15 |
| Black Ice Software Document Imaging SDK/ActiveX Remote Buffer Overflow Vulnerability | 2008-11-15 |
| Mozilla Firefox 'chrome' Document Unspecified Script Injection Weakness | 2008-11-15 |
| Claroline Prior to 1.8.10 Multiple Input Validation Vulnerabilities | 2008-11-15 |
| MicroWorld Technologies MailScan Multiple Remote Vulnerabilities | 2008-11-15 |
| RETIRED: mktemp Predictable Temporary Filename Vulnerability | 2008-11-15 |
| dotCMS 'id' Parameter Multiple Local File Include Vulnerabilities | 2008-11-15 |
| Linux Kernel 'dccp_setsockopt_change()' Remote Denial of Service Vulnerability | 2008-11-15 |
| mUnky 'index.php' Remote Code Execution Vulnerability | 2008-11-15 |
| Harmoni Versions Prior to 1.6.0 Cross-Site Request Forgery and Security Bypass Vulnerabilities | 2008-11-15 |
| PHPizabi 'id' Parameter Local File Include Vulnerability | 2008-11-15 |
| Mambo Multiple Cross-Site Scripting Vulnerabilities | 2008-11-15 |
| FlexCMS 'inc-core-admin-editor-previouscolorsjs.php' Cross-Site Scripting Vulnerability | 2008-11-15 |
| Neon Digest Authentication Null Pointer Exception Denial Of Service Vulnerability | 2008-11-15 |
| ZEEJOBSITE 'bannerclick.php' SQL Injection Vulnerability | 2008-11-15 |
| FipsCMS 'forum/neu.asp' SQL Injection Vulnerability | 2008-11-15 |
| EchoVNC Remote Buffer Overflow Vulnerability | 2008-11-15 |
| Quick Poll 'code.php' SQL Injection Vulnerability | 2008-11-15 |
| PromoProducts 'view_product.php' Multiple SQL Injection Vulnerabilities | 2008-11-15 |
| Interleave Information Disclosure Vulnerabilities | 2008-11-15 |
| phsdev phsBlog 'sid' Parameter SQL Injection Vulnerability | 2008-11-15 |
| Accellion File Transfer Appliance Error Report Message Open Email Relay Vulnerability | 2008-11-15 |
| Microsoft Windows WRITE_ANDX SMB Processing Remote Denial Of Service Vulnerability | 2008-11-15 |
| CzarNews 'recook' Cookie SQL Injection Vulnerability | 2008-11-15 |
| Python 'move-faqwiz.sh' Insecure Temporary File Creation Vulnerability | 2008-11-15 |
| IBM WebSphere Application Server 'FileServing' Feature Unspecified Vulnerability | 2008-11-15 |
| LinksCaffePRO 'index.php' SQL Injection Vulnerability | 2008-11-15 |
| phpMyAdmin 'server_databases.php' Remote Command Execution Vulnerability | 2008-11-15 |
| Apple Mac OS X 2008-006 Multiple Security Vulnerabilities | 2008-11-15 |
| Link Bid Script 'upgrade.php' SQL Injection Vulnerability | 2008-11-15 |
| PreProjects Real Estate Website 'search.php' SQL Injection Vulnerability | 2008-11-15 |
| Sun Management Center Remote Denial of Service Vulnerability | 2008-11-15 |
| Microsoft Outlook Web Access for Exchange Server 'redir.asp' URI Redirection Vulnerability | 2008-11-15 |
| Adobe Flash CS3 Professional SWF File Heap Buffer Overflow Vulnerability | 2008-11-15 |
| jhead Versions Prior to 2.84 Multiple Vulnerabilities | 2008-11-15 |
| AstroSPACES 'profile.php' SQL Injection Vulnerability | 2008-11-15 |
| myStats Security Bypass and SQL Injection Vulnerabilities | 2008-11-15 |
| myEvent 'viewevent.php' SQL Injection Vulnerability | 2008-11-15 |
| ClipShare Pro 'channel_detail.php' SQL Injection Vulnerability | 2008-11-15 |
| Minigal 'index.php' Directory Traversal Vulnerability | 2008-11-15 |
| VeryPDF PDFView ActiveX Component Heap Buffer Overflow Vulnerability | 2008-11-15 |
| Cobbler Web Interface Kickstart Template Remote Privilege Escalation Vulnerability | 2008-11-15 |
| Linux Kernel 'drivers/media/video/tvaudio.c' Memory Corruption Vulnerability | 2008-11-15 |
| MPlayer TwinVQ Handling Stack Buffer Overflow Vulnerability | 2008-11-15 |
| GeekiGeeki Multiple File Disclosure Vulnerabilities | 2008-11-15 |
| Citrix Broadcast Server 'login.asp' SQL Injection Vulnerability | 2008-11-15 |
| Groupmax Workflow Development Kit for Active Server Pages Cross Site Scripting Vulnerability | 2008-11-15 |
| Hitachi JP1/Integrated Management - Service Support Unspecified Cross-Site Scripting Vulnerability | 2008-11-15 |
| Free Links Directory Script 'lpro.php' SQL Injection Vulnerability | 2008-11-15 |
| Mediatheka 'connection.php' SQL Injection Vulnerability | 2008-11-15 |
| World Recipe Multiple Cross-Site Scripting Vulnerabilities | 2008-11-15 |
| RETIRED: Apple Mac OS X 2008-008 Multiple Security Vulnerabilities | 2008-11-15 |
| BabbleBoard 'username' HTML Injection Vulnerability | 2008-11-15 |
| phpList Unspecified Local File Include Vulnerability | 2008-11-15 |
| phpBB Account Re-Activation Authentication Bypass Vulnerability | 2008-11-15 |
| Injader SQL Injection and HTML Injection Vulnerabilities | 2008-11-15 |
| MediaWiki Cross Site Scripting And Multiple HTML Injection Vulnerabilities | 2008-11-15 |
| The Rat CMS 'login.php' Multiple SQL Injection Vulnerabilities | 2008-11-15 |
| CadeNix 'cid' Parameter SQL Injection Vulnerability | 2008-11-15 |
| W3C Amaya HTML Tag Parameter Multiple Buffer Overflow Vulnerabilities | 2008-11-15 |
| AM Events Module for XOOPS 'print.php' SQL Injection Vulnerability | 2008-11-15 |
| WorkSimple Information Disclosure Vulnerability and Remote File Include Vulnerability | 2008-11-15 |
| Aperto Blog Multiple Local File Include Vulnerabilities | 2008-11-15 |
| CFAGCMS 'right.php' SQL Injection Vulnerability | 2008-11-15 |
| eZ Publish Weak Activation Token Remote Privilege Escalation Vulnerability | 2008-11-15 |
| Aperto Blog 'categories.php' SQL Injection Vulnerability | 2008-11-15 |
| icash Click&Rank Multiple SQL Injection Vulnerabilities | 2008-11-15 |
| icash Click&Rank 'user.asp' Cross Site Scripting Vulnerability | 2008-11-15 |
| icash Click&BaneX Multiple SQL Injection Vulnerabilities | 2008-11-15 |
| icash ClickAndEmail SQL Injection and Cross Site Scripting Vulnerabilities | 2008-11-15 |
| Sun Solaris IPv4 Forwarding Denial of Service Vulnerability | 2008-11-15 |
| Sun Java Wireless Toolkit Unspecified Remote Stack Based Buffer Overflow Vulnerability | 2008-11-15 |
| Apple Podcast Producer Authentication-Bypass Vulnerability | 2008-11-15 |
| Apple Mac OS X UDF ISO File Handling Denial of Service Vulnerability | 2008-11-15 |
| Apple Mac OS X NFS Mounted Executable Exception Remote Denial of Service Vulnerability | 2008-11-15 |
| Apple Mac OS X 'natd' Remote Denial of Service Vulnerability | 2008-11-15 |
| Apple Mac OS X Type Service PDF File Remote Denial of Service Vulnerability | 2008-11-15 |
| Apple Mac OS X BOM CPIO Header Stack Buffer Overflow Vulnerability | 2008-11-15 |
| Apple Mac OS X 'inet_net_pton' API Integer Overflow Vulnerability | 2008-11-15 |
| Apple Mac OS X 'i386_set_ldt' and '1386_get_ldt' Multiple Integer Overflow Vulnerabilities | 2008-11-15 |
| Apple Mac OS X Managed Client Screen Saver Lock Bypass Vulnerability | 2008-11-15 |
| Apple Mac OS X 'strptime' API Memory Corruption Vulnerability | 2008-11-15 |
| KnowledgeTree Multiple Unspecified Vulnerabilities | 2008-11-15 |
| Kyocera Mita Scanner File Utility Multiple Remote Vulnerabilities | 2008-11-15 |
| Linux Kernel VFS Unauthorized File Access Vulnerability | 2008-11-14 |
| Multiple Vendors BIND 'inet_network()' Off-by-One Buffer Overflow Vulnerability | 2008-11-14 |
| IPdiva SSL VPN Security Bypass Vulnerability and Multiple Cross Site Scripting Vulnerabilities | 2008-11-14 |
| Teamtek Universal FTP Server CWD, LIST, and PORT Commands Remote Denial Of Service Vulnerabilities | 2008-11-14 |
| OSI Codes PHP Live! 'knowledge_searchm.php' SQL Injection Vulnerability | 2008-11-14 |
| Sun Solaris cpc(3CPC) Sub-System Local Denial of Service Vulnerabilities | 2008-11-14 |
| DNSSEC-Tools libval Security Bypass Vulnerability | 2008-11-14 |
| VLC Media Player Subtitle Parsing Buffer Overflow Vulnerability | 2008-11-14 |
| DB2 Monitoring Console Multiple Unspecified Security Bypass Vulnerabilities | 2008-11-14 |
| eXV2 MyAnnonces Module 'lid' Parameter SQL Injection Vulnerability | 2008-11-14 |
| eXV2 Viso Module 'kid' Parameter SQL Injection Vulnerability | 2008-11-14 |
| eXV2 CMS WebChat Module 'roomid' Parameter SQL Injection Vulnerability | 2008-11-14 |
| AuraCMS 'HTTP_X_FORWARDED_FOR' SQL Injection Vulnerability | 2008-11-14 |
| SILC Server 'NEW_CLIENT' Remote Denial of Service Vulnerability | 2008-11-14 |
| xine-lib Matroska Demuxer Remote Buffer Overflow Vulnerability | 2008-11-14 |
| ClamAV 'libclamav/pe.c' UPACK File Heap Based Buffer Overflow Vulnerability | 2008-11-14 |
| XM Easy Personal FTP Server 'PORT and 'XCWD' Multiple Remote Denial of Service Vulnerabilities | 2008-11-14 |
| BosClassifieds 'index.php' SQL Injection Vulnerability | 2008-11-14 |
| XT-News Multiple Administrative Scripts Authentication Bypass Vulnerabilities | 2008-11-14 |
| Business Objects Infoview 'cms' Parameter Cross-Site Scripting Vulnerability | 2008-11-14 |
| Mumbo Jumbo Media OP4 'id' Parameter SQL Injection Vulnerability | 2008-11-14 |
| Joomla! and Mambo eXtplorer Component 'dir' Parameter Directory Traversal Vulnerability | 2008-11-14 |
| Coppermine Photo Gallery 'upload.php' SQL Injection Vulnerability | 2008-11-14 |
| Coppermine Photo Gallery 'bridge/coppermine.inc.php' SQL Injection Vulnerability | 2008-11-14 |
| MirBSD Korn Shell Local Privilege Escalation Vulnerability | 2008-11-14 |
| SmallBiz 4 Seasons 'content.php' SQL Injection Vulnerability | 2008-11-14 |
| Libpng Library Unknown Chunk Handler Vulnerability | 2008-11-14 |
| eShop CMS 'index.php' SQL Injection Vulnerability | 2008-11-14 |
| Cezanne Software Multiple Cross-Site Scripting Vulnerabilities | 2008-11-14 |
| Cezanne Software 'FUNID' Parameter Multiple SQL Injection Vulnerabilities | 2008-11-14 |
| Cezanne Software 'CFLogon.asp' Cross-Site Scripting Vulnerability | 2008-11-14 |
| Nero MediaHome NMMediaServer.EXE Remote Denial of Service Vulnerability | 2008-11-14 |
| DevWorx BlogWorx 'view.asp' SQL Injection Vulnerability | 2008-11-14 |
| BosDev BosNews 'news.php' SQL Injection Vulnerability | 2008-11-14 |
| Koobi Pro 'poll_id' Parameter SQL Injection Vulnerability | 2008-11-14 |
| ClamAV ARJ File Denial Of Service Vulnerability | 2008-11-14 |
| ClamAV 0.92.1 Multiple Vulnerabilities | 2008-11-14 |
| Symantec Altiris Deployment Solution Agent User Interface Local Privilege Escalation Vulnerability | 2008-11-14 |
| Symantec Altiris Deployment Solution Registry Keys Local Unauthorized Access Vulnerability | 2008-11-14 |
| Symantec Altiris Deployment Solution Install Directory Local Privilege Escalation Vulnerability | 2008-11-14 |
| Symantec Altiris Deployment Solution 'axengine.exe' SQL Injection Vulnerability | 2008-11-14 |
| Symantec Altiris Deployment Solution Domain Credential Unauthorized Access Vulnerability | 2008-11-14 |
| Interspire ArticleLive NX 'Query' Field Cross-Site Scripting Vulnerability | 2008-11-14 |
| IDAutomation Barcode ActiveX Controls Multiple Arbitrary File Overwrite Vulnerabilities | 2008-11-14 |
| libvorbis Multiple Remote Vulnerabilities | 2008-11-14 |
| Django Login Form Cross-Site Scripting Vulnerability | 2008-11-14 |
| Horde Turba Multiple Cross-Site Scripting Vulnerabilities | 2008-11-14 |
| PicsEngine 'index.php' Cross Site Scripting Vulnerability | 2008-11-14 |
| GForge Insecure Temporary File Creation Vulnerability | 2008-11-14 |
| Cisco Content Switching Module Layer 7 Load Balancing Denial of Service Vulnerability | 2008-11-14 |
| Microsoft Internet Explorer 'Print Table of Links' Cross Zone Script Injection Vulnerability | 2008-11-14 |
| Symantec Altiris Deployment Solution Tooltip Local Privilege Escalation Vulnerability | 2008-11-14 |
| Cisco Unified Presence Engine Service Malformed IP Packets Denial of Service Vulnerability | 2008-11-14 |
| Cisco Unified Presence Engine Denial of Service Vulnerability | 2008-11-14 |
| Cisco Unified Communications Manager Multiple Denial of Service Vulnerabilities | 2008-11-14 |
| Cisco Unified Presence SIP Proxy Denial of Service Vulnerability | 2008-11-14 |
| Links Pile 'link.php' SQL Injection Vulnerability | 2008-11-14 |
| AustinSmoke GasTracker Cookie Parameter Authentication Bypass Vulnerability | 2008-11-14 |
| Freelance Auction Script 'browseproject.php' SQL Injection Vulnerability | 2008-11-14 |
| ActiveKB 'auth' Cookie Parameter Authentication Bypass Vulnerability | 2008-11-14 |
| Internet Photoshow 'login_admin' Parameter Unauthorized Access Vulnerability | 2008-11-14 |
| Feedback and Rating Script 'detail.php' SQL Injection Vulnerability | 2008-11-14 |
| W1L3D4 Philboard Multiple SQL Injection Vulnerabilities | 2008-11-14 |
| Rgboard 'bbs.lib.inc.php' Cross Site Scripting Vulnerability | 2008-11-14 |
| Citrix Presentation Server Authentication Bypass Vulnerability | 2008-11-14 |
| Citrix Presentation Server ICA Protocol Weak Encryption Vulnerability | 2008-11-14 |
| Kostenloses Linkmanagementscript Multiple Remote File Include Vulnerabilities | 2008-11-14 |
| Linux Kernel 'ipip6_rcv()' Remote Denial of Service Vulnerability | 2008-11-14 |
| Vim Vim Script Multiple Command Execution Vulnerabilities | 2008-11-14 |
| Mambo Cache_Lite Class 'mosConfig_absolute_path' Remote File Include Vulnerability | 2008-11-14 |
| Pre Job Board 'JobSearch.php' SQL Injection Vulnerability | 2008-11-14 |
| GSC Client Privilege Escalation Vulnerability | 2008-11-14 |
| Contenido CMS Cross Site Scripting and Multiple Remote File Include Vulnerabilities | 2008-11-14 |
| Haudenschilt Family Connections Multiple SQL Injection Vulnerabilities | 2008-11-14 |
| artegic AG Dana Remote Buffer Overflow Vulnerability | 2008-11-14 |
| Conkurent PHPMyCart 'shop.php' SQL Injection Vulnerability | 2008-11-14 |
| Application Dynamics Cartweaver PHP 'details.php' SQL Injection Vulnerability | 2008-11-14 |
| AlstraSoft AskMe Pro 'forum_answer.php' and 'profile.php' Multiple SQL Injection Vulnerabilities | 2008-11-14 |
| WallCity-Server: Shoutcast Admin Panel 'index.php' Local File Include Vulnerability | 2008-11-14 |
| PHPeasyblog 'newsarchive.php' SQL Injection Vulnerability | 2008-11-14 |
| EZTechhelp Company EZCMS 'index.php' SQL Injection Vulnerability | 2008-11-14 |
| EZTechhelp Company EZCMS Security Bypass Vulnerability | 2008-11-14 |
| xeCMS Cookie Parameters Authentication Bypass Vulnerability | 2008-11-14 |
| MediaWiki WikiHiero Extension Multiple Cross Site Scripting Vulnerabilities | 2008-11-14 |
| Scripteen Free Image Hosting Script Multiple SQL Injection Vulnerabilities | 2008-11-14 |
| Pluck 'predefined_variables.php' Multiple Local File Include Vulnerabilities | 2008-11-14 |
| Microsoft Internet Explorer New ActiveX Object String Concatenation Memory Corruption Vulnerability | 2008-11-14 |
| Edit-Point 'upload.php' Arbitrary File Upload Vulnerability | 2008-11-14 |
| Pubs Black Cat [The Fun] 'browse.groups.php' SQL Injection Vulnerability | 2008-11-14 |
| phpBB Prior to 3.0.2 Unspecified Remote Vulnerability | 2008-11-14 |
| Sina DLoader Class ActiveX Control 'DonwloadAndInstall' Method Arbitrary File Download Vulnerability | 2008-11-14 |
| eMule Operating System User Account Information Disclosure Weakness | 2008-11-14 |
| BilboBlog 'admin/index.php' Authentication Bypass Vulnerability | 2008-11-14 |
| OP XAUTHORITY Variable Local Privilege Escalation Vulnerability | 2008-11-14 |
| CodeDB 'list.php' Local File Include Vulnerability | 2008-11-14 |
| BilboBlog Multiple Cross-Site Scripting Vulnerabilities | 2008-11-14 |
| Firebird Multiple Denial of Service and Information Disclosure Vulnerabilities | 2008-11-14 |
| Votorola Multiple Unspecified Security Vulnerabilities | 2008-11-14 |
| Symantec Storage Foundation for Windows Security Update Circumvention Vulnerability | 2008-11-14 |
| CyBoards PHP Lite Multiple Remote Vulnerabilities | 2008-11-14 |
| Postfix Local Information Disclosure and Local Privilege Escalation Vulnerabilities | 2008-11-14 |
| E-Shop Shopping Cart Script 'search_results.php' SQL Injection Vulnerability | 2008-11-14 |
| PartyPoker Client Update Remote Code Execution Vulnerability | 2008-11-14 |
| Openwsman Multiple Remote Security Vulnerabilities | 2008-11-14 |
| Red Hat yum-rhn-plugin RHN Updates Denial of Service Vulnerability | 2008-11-14 |
| Openfire 'login.jsp' Cross-Site Scripting Vulnerability | 2008-11-14 |
| HAVP 'sockethandler.cpp' Client Connect Infinite Loop Denial of Service Vulnerability | 2008-11-14 |
| xine-lib 1.1.14 Multiple Remote Buffer Overflow Vulnerabilities | 2008-11-14 |
| Attachmate Reflection for Secure IT Multiple Unspecified Security Vulnerabilities | 2008-11-14 |
| Horde Turba Contact Manager '/imp/test.php' Cross Site Scripting Vulnerability | 2008-11-14 |
| DownlineGoldmine Multiple Products 'tr.php' SQL Injection Vulnerability | 2008-11-14 |
| Kasseler CMS 'index.php' Multiple SQL Injection Vulnerabilities | 2008-11-14 |
| Personal FTP Server 'RETR' Command Remote Denial of Service Vulnerability | 2008-11-14 |
| Nokia E90 Communicator Remote Denial of Service Vulnerability | 2008-11-14 |
| Fantastico De Luxe 'fantasticopath' Parameter Local File Include Vulnerability | 2008-11-14 |
| Microsoft Windows Active Directory LDAP Request Handling Remote Code Execution Vulnerability | 2008-11-14 |
| Microsoft Internet Explorer HTML Element Cross Domain Security Bypass Vulnerability | 2008-11-14 |
| Microsoft Internet Explorer Event Handling Cross Domain Security Bypass Vulnerability | 2008-11-14 |
| Microsoft Internet Explorer Uninitialized Object Remote Memory Corruption Vulnerability | 2008-11-14 |
| Microsoft Internet Explorer HTML Objects Uninitialized Memory Corruption Vulnerability | 2008-11-14 |
| Microsoft Host Integration Server RPC Remote Command Execution Vulnerability | 2008-11-14 |
| Microsoft Message Queuing Service RPC Query Heap Corruption Vulnerability | 2008-11-14 |
| Microsoft Windows SMB Buffer Underflow Code Execution Vulnerability | 2008-11-14 |
| Microsoft Windows Kernel Window Creation Local Privilege Escalation Vulnerability | 2008-11-14 |
| Microsoft Windows Kernel Memory Corruption Local Privilege Escalation Vulnerability | 2008-11-14 |
| Microsoft Windows Kernel Unhandled System Call Local Privilege Escalation Vulnerability | 2008-11-14 |
| Microsoft Internet Explorer Cross Domain Information Disclosure Vulnerability | 2008-11-14 |
| Microsoft Windows AFD Driver Local Privilege Escalation Vulnerability | 2008-11-14 |
| Microsoft Windows VAD Local Privilege Escalation Vulnerability | 2008-11-14 |
| Microsoft Windows Internet Printing Service Integer Overflow Vulnerability | 2008-11-14 |
| Oracle October 2008 Oracle Critical Patch Update Multiple Vulnerabilities | 2008-11-14 |
| Microsoft Office CDO Protocol Cross Site Scripting Vulnerability | 2008-11-14 |
| Microsoft Excel Calendar Object Validation Remote Code Execution Vulnerability | 2008-11-14 |
| Microsoft Excel BIFF File Format Parsing Remote Code Execution Vulnerability | 2008-11-14 |
| Microsoft Excel Formula Parsing Remote Code Execution Vulnerability | 2008-11-14 |
| ParsBlogger 'links.asp' SQL Injection Vulnerability | 2008-11-14 |
| IBM ENOVIA Security Bypass Vulnerability | 2008-11-14 |
| XOOPS xhresim Module 'index.php' SQL Injection Vulnerability | 2008-11-14 |
| WP Comment Remix 1.4.3 SQL Injection and HTML Injection Vulnerabilities | 2008-11-14 |
| Sun Solstice AdminSuite 'sadmind' 'adm_build_path()' Remote Stack Buffer Overflow Vulnerability | 2008-11-14 |
| Husdawg System Requirements Lab Multiple Remote Code Execution Vulnerabilities | 2008-11-14 |
| Etype Eserv FTP 'ABOR' Command Remote Stack Based Buffer Overflow Vulnerability | 2008-11-14 |
| Multiple Telecom Italia Routers Authentication Bypass Vulnerability | 2008-11-14 |
| Webscene eCommerce 'productlist.php' SQL Injection Vulnerability | 2008-11-14 |
| SezHoo 'SezHooTabsAndActions.php' Parameter Remote File Include Vulnerability | 2008-11-14 |
| Titan FTP Server 'SITE WHO' Command Remote Denial of Service Vulnerability | 2008-11-14 |
| VLC Media Player XSPF Playlist Memory Corruption Vulnerability | 2008-11-14 |
| Oracle WebLogic Server Apache Connector Stack Based Buffer Overflow Vulnerability | 2008-11-14 |
| PhpWebGallery 'comments.php' SQL Injection and Code Execution Vulnerabilities | 2008-11-14 |
| MyPHPDating 'success_story.php' SQL Injection Vulnerability | 2008-11-14 |
| Elxis CMS 'index.php' Multiple Cross Site Scripting and Session Fixation Vulnerabilities | 2008-11-14 |
| SweetCMS 'index.php' SQL Injection Vulnerability | 2008-11-14 |
| Multiple Scriptsfeed Scripts Arbitrary File Upload Vulnerability | 2008-11-14 |
| AlstraSoft Web Host Directory 'Password' Parameter SQL Injection Vulnerability | 2008-11-14 |
| Bankoi Webhost Panel 'login.asp' SQL Injection Vulnerability | 2008-11-14 |
| SlimCMS 'edit.php' SQL Injection Vulnerability | 2008-11-14 |
| AlstraSoft Web Hosting Directory Multiple Vulnerabilities | 2008-11-14 |
| TurnkeyForms Text Link Sales 'admin.php' Authentication Bypass Vulnerability | 2008-11-14 |
| Discuz! 'index.php' Remote Code Execution Vulnerability | 2008-11-14 |
| Microsoft Active Directory LDAP Server Username Enumeration Weakness | 2008-11-14 |
| Check Point VPN-1 Port Address Translation Information Disclosure Weakness | 2008-11-14 |
| GS Real Estate Portal Multiple Input Validation Vulnerabilities | 2008-11-14 |
| TurnkeyForms Text Link Sales 'admin.php' SQL Injection and Cross Site Scripting Vulnerabilities | 2008-11-14 |
| X7 Chat Password Field SQL Injection Vulnerability | 2008-11-14 |
| HOSTNOMI Real Estate Portal Pro 'index.php' SQL Injection Vulnerability | 2008-11-14 |
| OpenSSH CBC Mode Information Disclosure Vulnerability | 2008-11-14 |
| SystemImager Insecure Temporary File Creation Vulnerabilities | 2008-11-14 |
| 'imlib2' Library 'load()' Function Buffer Overflow Vulnerability | 2008-11-14 |
| P3nfs Insecure Temporary File Creation Vulnerability | 2008-11-14 |
| pam_mount Insecure Temporary File Creation Vulnerability | 2008-11-14 |
| xine-lib MP3 Processing Remote Denial of Service Vulnerability | 2008-11-14 |
| Multiple China-on-site.com Products Username and Password SQL Injection Vulnerabilities | 2008-11-14 |
| Simple Text-File Login script 'slogin_lib.inc.php' Remote File Include Vulnerability | 2008-11-14 |
| Multiple ASP SiteWare Products SQL Injection Vulnerabilities | 2008-11-14 |
| FLDS Free Links Directory Script 'redir.php' SQL Injection Vulnerability | 2008-11-14 |
| Evans FTP 'EvansFTP.ocx' ActiveX Control Multiple Remote Buffer Overflow Vulnerabilities | 2008-11-14 |
| Mediatheka 'index.php' Local File Include Vulnerability | 2008-11-14 |
| The Rat CMS Admin Security Bypass Vulnerability | 2008-11-14 |
| CFAGCMS 'index.php' Multiple Remote File Include Vulnerabilities | 2008-11-14 |
| AutositePHP Multiple Local File Include and File Overwrite Vulnerabilities | 2008-11-14 |
| RETIRED: Intesync LLC Miniweb 2.0 'username' Parameter SQL Injection Vulnerability | 2008-11-14 |
| PHP Weather Local File Include and Cross Site Scripting Vulnerabilities | 2008-11-14 |
| Multiple AvailScript Products Arbitrary File Upload Vulnerabilities | 2008-11-14 |
| CMS ISWEB SQL Injection and Cross Site Scripting Vulnerabilities | 2008-11-14 |
| Flatnux 'index.php' HTML Injection Vulnerability | 2008-11-14 |
| Flatnux 'photo.php' Multiple Cross Site Scripting Vulnerabilities | 2008-11-14 |
| WebPhotoPro Multiple SQL Injection Vulnerabilities | 2008-11-14 |
| SilverStripe 'AjaxUniqueTextField' Parameter SQL Injection Vulnerability | 2008-11-14 |
| EMC Documentum ApplicationXtender Admin Agent Multiple Vulnerabilities | 2008-11-14 |
| paramiko Random Number Generator Weakness | 2008-11-13 |
| Cisco Unified Communications Manager 'key' Parameter SQL Injection Vulnerability | 2008-11-13 |
| OpenLDAP MODRDN Remote Denial of Service Vulner |