| OSVDB ID | Disclosure Date | Title |
|
30276
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in ls.php in SAMEDIA LandShop allow remote attackers to inject arbitrary web script or HTML via the (1) start, (2) CAT_ID, (3) keyword, (4) search_area, (5) search_type, (6) infield, or (7) search_order parameter.
|
2006-11-09
|
LandShop ls.php Multiple Parameter XSS
|
|
74178
Description:
(Description Provided by CVE) : dbus_backend/ls-dbus-backend in the D-Bus backend in language-selector before 0.6.7 does not restrict access on the basis of a PolicyKit check result, which allows local users to modify the /etc/default/locale and /etc/environment files via a (1) SetSystemDefaultLangEnv or (2) SetSystemDefaultLanguageEnv call.
|
2011-04-18
|
language-selector dbus_backend/ls-dbus-backend PolicyKit Check Result Local Access Restriction Bypass
|
|
74177
Description:
(Description Provided by CVE) : dbus_backend/lsd.py in the D-Bus backend in language-selector before 0.6.7 does not validate the arguments to the (1) SetSystemDefaultLangEnv and (2) SetSystemDefaultLanguageEnv functions, which allows local users to gain privileges via shell metacharacters in a string argument, a different vulnerability than CVE-2011-0729.
|
2011-04-18
|
language-selector dbus_backend/lsd.py Multiple Function Shell Metacharacter Local Privilege Escalation
|
|
35287
Description:
(Description Provided by CVE) : Cross-site scripting (XSS) vulnerability in the embedded webserver in Daniel Naber LanguageTool before 0.8.9 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors involving an error message, possibly the demultiplex method in HTTPServer.java.
|
2007-04-08
|
LanguageTool Unspecified XSS
|
|
66026
Description:
Lanius CMS contains a flaw that allows a remote Cross-site Request Forgery (CSRF / XSRF) attack. The flaw exists because the application does not require multiple steps or explicit confirmation for sensitive transactions for the creation of a new admin user. By using a crafted URL (e.g., a crafted GET request inside an "img" tag), an attacker may trick the victim into clicking on the image to take advantage of the trust relationship between the authenticated victim and the application. Such an attack could trick the victim into executing arbitrary commands in the context of their session with the application, without further prompting or verification.
|
2010-07-05
|
Lanius CMS Admin User Creation CSRF
|
|
53460
Description:
Unknown / Incomplete
|
2009-04-07
|
Lanius CMS includes/upload.php File Upload Arbitrary PHP Code Execution
|
|
77361
Description:
Lanoba Social Plugin for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'action' parameter upon submission to the index.php script script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-11-19
|
Lanoba Social Plugin for WordPress index.php action Parameter XSS
|
|
64916
Description:
Unknown / Incomplete
|
2010-05-20
|
LANrev Theft Track Default Static Authentication Key Weakness
|
|
72144
Description:
aXes Terminal Server contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'login' parameter upon submission to the axests/terminal script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-04-30
|
LANSA aXes Terminal Server axests/terminal login Parameter XSS
|
|
48679
Description:
(Description Provided by CVE) : Directory traversal vulnerability in index.php in LanSuite 3.3.2 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the design parameter.
|
2008-09-25
|
LanSuite index.php design Parameter Traversal Local File Inclusion
|
|
23533
Description:
LanSuite contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'index.php' script not properly sanitizing user-supplied input to the 'fid' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2006-02-24
|
LanSuite LanParty Intranet System index.php fid Parameter SQL Injection
|
|
48658
Description:
Unknown / Incomplete
|
2008-09-25
|
LanSuite LanParty Intranet System upload.php Arbitrary PHP Code Execution
|
|
69870
Description:
Lantern CMS contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'intPassedLocationID' parameter upon submission to the 11-login.asp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2010-10-08
|
Lantern CMS 11-login.asp intPassedLocationID Parameter XSS
|
|
69871
Description:
Lantern CMS contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'signupemail' parameter upon submission to the 7-home-page.asp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2010-10-08
|
Lantern CMS 7-home-page.asp signupemail Parameter XSS
|
|
18597
Description:
A local buffer overflow exists in the "edituser" comand on Lantronix console servers. The "edituser" command fails to check its command line arguments resulting in a stack overflow. With a specially crafted argument, an attacker can gain administrative privileges resulting in a full compromise.
|
2005-08-05
|
Lantonix Secure Console Server edituser Local Overflow
|
|
18595
Description:
Lantronix Secure Console Server contains a flaw that may allow a malicious local user to modify arbitrary files on the system. Due to insecure permissions set on the /tmp directory, an attacker can exploit a race condition against the creation of the /tmp/listen_fifo_server pipe to modify arbitrary files on the system resulting in a loss of integrity.
|
2005-08-05
|
Lantonix Secure Console Server listen_fifo_server Symlink Arbitrary Privileged File Overwrite
|
|
18596
Description:
Lantronix Secure Console Server contains a flaw that allows a local console user to execute system binaries. The issue is due to the console software not properly sanitizing user input, specifically traversal style attacks (../../) supplied via the command line variables. Sysadmin user can abuse this bug to become root user, and gain privileges usally not granted by the console software.
|
2005-08-05
|
Lantonix Secure Console Server Traversal Arbitrary Privileged Command Execution
|
|
51003
Description:
(Description Provided by CVE) : Lantronix MSS485-T allows remote attackers to cause a denial of service (unstable performance and service loss) via certain vulnerability scans, as demonstrated using (1) Nessus and (2) nmap.
|
2008-01-15
|
Lantronix MSS485-T Vulnerability Scan Remote DoS
|
|
39188
Description:
(Description Provided by CVE) : Lantronix SCS3200 does not properly handle public-key requests, which allows remote attackers to cause a denial of service (unresponsive device) via unspecified keyscan requests. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
|
2007-11-11
|
Lantronix SCS3200 Unspecified Keyscan Requests Remote DoS
|
|
71069
Description:
Lara contains a flaw that allows a remote Cross-site Request Forgery (CSRF / XSRF) attack. The flaw exists because the /_ui/changepassword script does not require multiple steps or explicit confirmation for sensitive transactions for the manipulation of passwords. By using a crafted URL (e.g., a crafted GET request inside an "img" tag), an attacker may trick the victim into clicking on the image to take advantage of the trust relationship between the authenticated victim and the application. Such an attack could trick the victim into executing arbitrary commands in the context of their session with the application, without further prompting or verification.
|
2010-10-11
|
Lara /_ui/changepassword Password Manipulation CSRF
|
|
13125
Description:
(Description Provided by CVE) : Lars Ellingsen guestserver.cgi allows remote attackers to execute arbitrary commands via shell metacharacters in the "email" parameter.
|
2001-01-29
|
Lars Ellingsen guestserver.cgi email Parameter Arbitrary Command Execution
|
|
42902
Description:
(Description Provided by CVE) : Format string vulnerability in the logging function in Larson Network Print Server (LstNPS) 9.4.2 build 105 and earlier for Windows might allow remote attackers to execute arbitrary code via format string specifiers in a USEP command on TCP port 3114.
|
2008-02-11
|
Larson Network Print Server (LstNPS) Logging Function USEP Command Remote Format String
|
|
42901
Description:
(Description Provided by CVE) : Stack-based buffer overflow in NPSpcSVR.exe in Larson Network Print Server (LstNPS) 9.4.2 build 105 and earlier allows remote attackers to execute arbitrary code via a long argument in a LICENSE command on TCP port 3114.
|
2008-02-11
|
Larson Network Print Server (LstNPS) NPSpcSVR.exe License Command Remote Overflow
|
|
5986
Description:
LaserFiche, when running on Netware, contains a flaw that may lead to an unauthorized password exposure. The Btreive tables that contain usernames, passwords, and group membership information do not require administrative privileges for write access. Additionally, any operations directly on the tables are not logged. This may lead to a loss of confidentiality and/or integrity.
|
1999-01-28
|
LaserFiche on NetWare User Database Privilege Escalation
|
|
5885
Description:
LaserFiche, when running on Netware, contains a flaw that may lead to an unauthorized password exposure. The Btreive tables that contain usernames, passwords, and group membership information are available for any user to read. The data inside those tables is not encrypted, which exposes the passwords in plaintext to any user. Included in the tables is the password for the administrative account. This may lead to a loss of confidentiality and/or integrity.
|
1999-01-28
|
LaserFiche on NetWare User Database Unencrypted
|
|
44401
Description:
LASERnet CMS contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the index.php script not properly sanitizing user-supplied input to the 'new' variable and that variable is assigned to the 'id' variable. This may allow an attacker to inject or manipulate SQL queries in the back-end database.
|
2008-04-15
|
Lasernet CMS index.php new Parameter SQL Injection
|
|
18671
Description:
(Description Provided by CVE) : Unknown vulnerability in Lasso Professional Server8.0.4 and 8.0.5 allows attackers to bypass authentication, related to [Auth] tags.
|
2005-08-02
|
Lasso Professional Auth Tag Restricted Page Bypass
|
|
8960
Description:
(Description Provided by CVE) : Directory traversal vulnerability in lastlines.cgi for Last Lines 2.0 allows remote attackers to read arbitrary files via '..' sequences in the $error_log variable.
|
2001-12-30
|
Last Lines lastlines.cgi Double Dot Traversal Arbitrary File Access
|
|
68789
Description:
(Description Provided by CVE) : lastfm 1.5.4 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
|
2010-09-28
|
lastfm LD_LIBRARY_PATH Zero-length Directory Name Path Subversion Local Privilege Escalation
|
|
54862
Description:
(Description Provided by CVE) : Mole Group Lastminute Script 4.0 and earlier stores passwords in cleartext, which allows context-dependent attackers to obtain sensitive information. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
|
2008-07-08
|
Lastminute Script Cleartext Password Disclosure
|