Browse Database

Browsing Vulnerabilities Disclosed in September of 2008

<< Back to Browse
OSVDB IDDisclosure DateTitle
48661 2008-09-30 Post Comments Script PostCommentsAdmin Cookie Admin Authentication Bypass
48634 2008-09-30 Autodesk Design Review AdView.AdViewer.1 ActiveX (AdView.dll) SaveAs Method Arbitrary File Overwrite
48643 2008-09-30 moziloCMS download.php file Variable Traversal Arbitrary File Download
48640 2008-09-30 hyBook Guestbook Script hyBook.mdb Direct Request Information Disclosure
48644 2008-09-30 moziloCMS index.php page Variable Traversal Arbitrary File Download
48645 2008-09-30 moziloCMS index.php Multiple Variable XSS
48646 2008-09-30 moziloCMS download.php Multiple Variable XSS
48647 2008-09-30 moziloCMS gallery.php gal Variable XSS
48648 2008-09-30 moziloCMS admin/login.php URL XSS
48649 2008-09-30 moziloCMS Unspecified CSRF
48655 2008-09-30 Pritlog index.php filename Variable Traversal Remote File Access
48656 2008-09-30 GdPicture Pro Imaging SDK GdPicturePro5S.Imaging ActiveX (gdpicturepro5s.ocx) SaveAsPDF Method Arbitrary File Overwrite
48659 2008-09-30 FAQ Management Script index.php catid Variable SQL Injection
48657 2008-09-30 GdPicture Light Imaging Toolkit GdPicture4S.Imaging ActiveX (gdpicture4s.ocx) SaveAsPDF Method Arbitrary File Overwrite
48687 2008-09-30 Celoxis user.do ni.smessage Variable XSS
48730 2008-09-30 Trend Micro OfficeScan OfficeScanNT Listener Traversal Arbitrary File Access
48774 2008-09-30 Avaya CMS Solaris ACL for UFS File Systems NULL Deference Local DoS
48755 2008-09-29 XAMPP adodb.php Multiple Variable XSS
48633 2008-09-29 PG MatchMaking Script news_read.php id Variable SQL Injection
48642 2008-09-29 Citrix Presentation Server Unspecified Local Privilege Escalation
48662 2008-09-29 MPlayer stream_read Function Crafted Video File Handling Multiple Underflows
48641 2008-09-29 HP Insight Diagnostics Unspecified Remote File Access
48635 2008-09-29 WordPress MU wp-admin/wpmu-blogs.php Multiple Variable XSS
48637 2008-09-29 tnftpd FTP Command Handling CSRF
48632 2008-09-29 PG MatchMaking Script gifts_show.php id Variable SQL Injection
48653 2008-09-29 A4Desk PHP Event Calendar index.php v Variable Remote File Inclusion
48753 2008-09-29 Blue Coat Security Gateway OS ICAP Patience Page URL XSS
48783 2008-09-28 Mozilla Firefox keypress User Interface Event Dispatcher DoS
48629 2008-09-28 Pilot Group eTraining news_read.php id Variable SQL Injection
48728 2008-09-28 ZEELYRICS bannerclick.php adid Variable SQL Injection
48727 2008-09-28 Adult Banner Exchange Website click.php targetid Variable SQL Injection
48608 2008-09-28 Pro Chat Rooms profiles/index.php gud Variable SQL Injection
48609 2008-09-28 Pro Chat Rooms profiles/admin.php gud Variable SQL Injection
48664 2008-09-28 ParsaWeb CMS default.aspx Multiple Variable SQL Injection
48628 2008-09-27 PlugSpace index.php navi Variable Traversal Local File Inclusion
48630 2008-09-27 WhoDomLite wholite.cgi dom Variable XSS
48729 2008-09-27 ASPapp Knowledge Base content_by_cat.asp catid Variable SQL Injection
48611 2008-09-27 VBGooglemap Module for vBulletin vbgooglemaphse.php mapid Variable SQL Injection
48615 2008-09-27 PHP-Lance show.php catid Variable SQL Injection
48614 2008-09-27 CoAST header.php sections_file Variable Remote File Inclusion

DONATE NOW!

User Status

Quick Searches

Advertisements

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2008 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use