| OSVDB ID | Disclosure Date | Title |
|
56411
Description:
Unknown / Incomplete
|
2009-07-21
|
GNU wget DNS Rebinding Information Disclosure Weakness
|
|
16902
Description:
(Description Provided by CVE) : Wget 1.9 and 1.9.1 allows local users to overwrite arbitrary files via a symlink attack on the name of the file being downloaded.
|
2004-05-16
|
GNU wget Download File Name Symlink Arbitrary File Overwrite
|
|
32755
Description:
(Description Provided by CVE) : The ftp_syst function in ftp-basic.c in Free Software Foundation (FSF) GNU wget 1.10.2 allows remote attackers to cause a denial of service (application crash) via a malicious FTP server with a large number of blank 220 responses to the SYST command.
|
2006-12-18
|
GNU wget ftp-basic.c ftp_syst Function SYST Command Remote DoS
|
|
12638
Description:
(Description Provided by CVE) : wget 1.8.x and 1.9.x does not filter or quote control characters when displaying HTTP responses to the terminal, which may allow remote malicious web servers to inject terminal escape sequences and execute arbitrary code.
|
2004-12-09
|
GNU wget HTTP Redirection File Overwrite
|
|
20011
Description:
A remote overflow exists in wget. The 'ntlm_output()' function fails to perform proper bounds checking resulting in a buffer overflow. With a specially crafted HTTP redirect request containing an overly long NTLM username, a remote attacker can cause arbitrary code execution resulting in a loss of integrity.
|
2005-10-13
|
GNU wget NTLM Username ntlm_output() Function Overflow
|
|
11426
Description:
(Description Provided by CVE) : wget 1.5.3 follows symlinks to change permissions of the target file instead of the symlink itself.
|
1999-02-20
|
GNU wget symlink Target Permission Modification
|
|
12640
Description:
Unknown / Incomplete
|
2004-12-09
|
GNU wget Terminal Window Overwrite
|
|
66109
Description:
When requesting a document that returns a 3xx redirection code, wget uses the new name of the file, allowing a malicious server to create or overwrite an arbitrary file in the current folder.
|
2010-05-17
|
GNU wget URL 3xx Redirect Server Provided Filename Arbitrary File Overwrite
|
|
8866
Description:
(Description Provided by CVE) : Buffer overflow in url_filename function for wget 1.8.1 allows attackers to cause a denial of service (segmentation fault) and possibly execute arbitrary code via a long URL.
|
2002-12-12
|
GNU wget url_filename() Function Overflow DoS
|
|
5603
Description:
wget contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when a user supplies a username and login via the command line, which will disclose that information to other users via process listings (ps) resulting in a loss of confidentiality.
|
2004-04-20
|
GNU wget Username/Password Disclosure
|
|
57632
Description:
(Description Provided by CVE) : GNU Wget before 1.12 does not properly handle a '\0' character in a domain name in the Common Name field of an X.509 certificate, which allows man-in-the-middle remote attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority, a related issue to CVE-2009-2408.
|
2009-08-05
|
GNU wget X.509 Certificate Authority (CA) Common Name Null Byte Handling SSL MiTM Weakness
|
|
45339
Description:
(Description Provided by CVE) : Directory traversal vulnerability in admin.php in GNU/Gallery 1.1.1.0 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the show parameter.
|
2008-05-18
|
GNU/Gallery admin.php show Parameter Traversal Arbitrary File Access
|
|
9731
Description:
gnubiff contains a flaw that may allow a remote denial of service. The issue is triggered when processing UIDL lists, which may allow a remote attacker to crash the process with excessive UIDL requests, and will result in loss of availability for the service.
|
2004-09-06
|
gnubiff POP3 uidl Saturation DoS
|
|
9730
Description:
gnubiff contains a flaw related to the 'pop3.c' file that may allow a remote attacker to cause a buffer overflow. No further details have been provided.
|
2004-09-06
|
gnubiff POP3 Unspecified Remote Overflow
|
|
7250
Description:
gnubiff contains a flaw related to the tables used for password encryption that may allow an attacker to gain access to passwords. No further details have been provided.
|
2004-06-22
|
gnubiff Unspecified Password Table Weakness
|
|
12777
Description:
Unknown / Incomplete
|
2004-11-30
|
gnubiff Unterminated Line DoS
|
|
76614
Description:
GNUBoard contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the bbs/tb.php script not properly sanitizing user-supplied input passed via the URL. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-10-17
|
GNUBoard bbs/tb.php URI SQL Injection
|
|
51414
Description:
(Description Provided by CVE) : Directory traversal vulnerability in common.php in SIR GNUBoard 4.31.03 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the g4_path parameter. NOTE: in some environments, this can be leveraged for remote code execution via a data: URI or a UNC share pathname.
|
2009-01-15
|
GNUBoard common.php g4_path Parameter Traversal Local File Inclusion
|
|
12710
Description:
GNUBoard contains a flaw that may allow a malicious user to upload arbitrary files. The issue is triggered when a filename is submitted to gbupdate.php with an extension with capital letters. It is possible that the flaw may allow arbitrary code execution resulting in a loss of integrity.
|
2005-01-03
|
GNUBoard gbupdate.php Arbitrary File Upload
|
|
12389
Description:
(Description Provided by CVE) : PHP remote file inclusion vulnerability in index.php in GNUBoard 3.39 and earlier allows remote attackers to execute arbitrary PHP code by modifying the doc parameter to reference a URL on a remote web server that contains the code.
|
2004-12-14
|
GNUBoard index.php doc Parameter Arbitrary Command Execution
|
|
69298
Description:
GnuCash contains a path subversion flaw that may allow an attacker to gain access to unauthorized privileges. The issue is triggered when the 'src/gnc-test-env' script incorrectly sets the environment variable 'LD_LIBRARY_PATH', allowing a context-dependent attacker to gain elevated privileges by tricking a user into running the script in a directory containing a malicious library.
|
2010-10-20
|
GnuCash gnc-test-env LD_LIBRARY_PATH Zero-length Directory Name Path Subversion Local Privilege Escalation
|
|
33224
Description:
(Description Provided by CVE) : gnucash 2.0.4 and earlier allows local users to overwrite arbitrary files via a symlink attack on the (1) gnucash.trace, (2) qof.trace, and (3) qof.trace.[PID] temporary files.
|
2007-01-18
|
GnuCash Multiple trace File Symlink Arbitrary File Overwrite
|
|
75225
Description:
GnuCash is prone to a flaw in the way it loads the perl.exe executable file. The program uses a fixed path to look for specific files or libraries. This path includes directories that may not be trusted or under user control. By placing a custom version of the file or library in the path, the program will load it before the legitimate version. This allows an attacker to inject custom code that will be run with the privilege of the program or user executing the program. This can be done by tricking a user into opening a .gnucash file from the local file system or a USB drive in some cases. This attack can be leveraged remotely in some cases by placing the malicious file or library on a network share or extracted archive downloaded from a remote source.
|
2011-09-07
|
GnuCash Perl.exe Path Subversion Executable File Injection Code Execution
|
|
56675
Description:
GnuDIP contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'cgi-bin/gnudip.cgi' script not properly sanitizing user-supplied input to the 'username' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2009-08-01
|
GnuDIP cgi-bin/gnudip.cgi username Parameter SQL Injection
|
|
38250
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php; (2) lom_update.php, (3) check-lom.php, and (4) weigh_keywords.php in scripts/; the (b) LIBSDIR parameter to (5) logout.php, (6) help.php, (7) index.php, (8) login.php; and the ETCDIR parameter to (9) web/lom.php.
|
2007-05-08
|
gnuedu scripts/check-lom.php ETCDIR Parameter Remote File Inclusion
|
|
38248
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php; (2) lom_update.php, (3) check-lom.php, and (4) weigh_keywords.php in scripts/; the (b) LIBSDIR parameter to (5) logout.php, (6) help.php, (7) index.php, (8) login.php; and the ETCDIR parameter to (9) web/lom.php.
|
2007-05-08
|
gnuedu scripts/libs/lom.php ETCDIR Parameter Remote File Inclusion
|
|
38249
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php; (2) lom_update.php, (3) check-lom.php, and (4) weigh_keywords.php in scripts/; the (b) LIBSDIR parameter to (5) logout.php, (6) help.php, (7) index.php, (8) login.php; and the ETCDIR parameter to (9) web/lom.php.
|
2007-05-08
|
gnuedu scripts/lom_update.php ETCDIR Parameter Remote File Inclusion
|
|
38251
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php; (2) lom_update.php, (3) check-lom.php, and (4) weigh_keywords.php in scripts/; the (b) LIBSDIR parameter to (5) logout.php, (6) help.php, (7) index.php, (8) login.php; and the ETCDIR parameter to (9) web/lom.php.
|
2007-05-08
|
gnuedu scripts/weigh_keywords.php ETCDIR Parameter Remote File Inclusion
|
|
38253
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php; (2) lom_update.php, (3) check-lom.php, and (4) weigh_keywords.php in scripts/; the (b) LIBSDIR parameter to (5) logout.php, (6) help.php, (7) index.php, (8) login.php; and the ETCDIR parameter to (9) web/lom.php.
|
2007-05-08
|
gnuedu web/help.php LIBSDIR Parameter Remote File Inclusion
|
|
38254
Description:
(Description Provided by CVE) : Multiple PHP remote file inclusion vulnerabilities in gnuedu 1.3b2 allow remote attackers to execute arbitrary PHP code via a URL in the (a) ETCDIR parameter to (1) libs/lom.php; (2) lom_update.php, (3) check-lom.php, and (4) weigh_keywords.php in scripts/; the (b) LIBSDIR parameter to (5) logout.php, (6) help.php, (7) index.php, (8) login.php; and the ETCDIR parameter to (9) web/lom.php.
|
2007-05-08
|
gnuedu web/index.php LIBSDIR Parameter Remote File Inclusion
|