Browse Database

Browsing Vulnerabilities Disclosed in September of 2008

<< Back to Browse
OSVDB IDDisclosure DateTitle
48803 2008-09-30 Xen XenStore DomU Domain Unauthorized Variable Overwrite
48726 2008-09-30 BookMarks Favourites Script view_group.php id Parameter SQL Injection
48743 2008-09-30 Linux Kernel arch/x86/kernel/vmi_32.c vmi_write_ldt_entry() Function Local Privilege Escalation
54292 2008-09-30 Microsoft ActiveSync RNDIS over USB System Lock Bypass
54291 2008-09-30 moziloWiki PHPSESSID Parameter Session Fixation
48661 2008-09-30 Post Comments Script PostCommentsAdmin Cookie Admin Authentication Bypass
48634 2008-09-30 Autodesk Design Review DWF Viewer AdView.AdViewer.1 ActiveX (AdView.dll) SaveAs Method Arbitrary File Overwrite
48645 2008-09-30 moziloCMS index.php Multiple Parameter XSS
48646 2008-09-30 moziloCMS download.php Multiple Parameter XSS
48648 2008-09-30 moziloCMS admin/login.php URL XSS
48649 2008-09-30 moziloCMS Unspecified CSRF
48655 2008-09-30 Pritlog index.php filename Parameter Traversal Arbitrary File Access
48656 2008-09-30 GdPicture Pro Imaging SDK GdPicturePro5S.Imaging ActiveX (gdpicturepro5s.ocx) SaveAsPDF Method Arbitrary File Overwrite
48659 2008-09-30 FAQ Management Script index.php catid Parameter SQL Injection
48657 2008-09-30 GdPicture Light Imaging Toolkit GdPicture4S.Imaging ActiveX (gdpicture4s.ocx) SaveAsPDF Method Arbitrary File Overwrite
48730 2008-09-30 Trend Micro OfficeScan OfficeScanNT Listener Traversal Arbitrary File Access
48687 2008-09-30 Celoxis user.do ni.smessage Parameter XSS
48774 2008-09-30 Avaya CMS Solaris ACL for UFS File Systems NULL Dereference Local DoS
48878 2008-09-30 Fedora Linux Kernel utrace Subsystem utrace_control Function Local DoS
48886 2008-09-30 lighttpd url.redirect / url.rewrite URL Decoding Remote Security Bypass
48889 2008-09-30 lighttpd mod_userdir Filename Component Case Mismatch Remote Access Restriction Bypass
48894 2008-09-30 libvirt xenstore /local/domain/ Subdirectory Xen Guest VM File Modification
48901 2008-09-30 Linux Kernel VMI arch/x86/kernel/vmi_32.c vmi_write_ldt_entry Function Crafted Function Calls Local DoS
49047 2008-09-30 LiveUpdate UpdateEngine ActiveX (LiveUpdate16.DLL) ApplyPatch Method Arbitrary Program Execution
49727 2008-09-30 KDE Konqueror Crafted URL-encoded String alert Function DoS
50077 2008-09-30 Linux Kernel sctp Protocol Violation Handling Multiple Function Calls Unspecified Remote DoS
50125 2008-09-30 IBM Tivoli Access Manager WebSEAL webseald Daemon Crafted HTTP Message Handling Remote DoS
51757 2008-09-30 Micronation Banking System utdb_access.php minsoft_path Parameter Remote File Inclusion
51758 2008-09-30 Micronation Banking System utgn_message.php minsoft_path Parameter Remote File Inclusion
51759 2008-09-30 Real Estate Portal Auth Cookie Manipulation Admin Access Bypass
51760 2008-09-30 Rianxosencabos CMS scripts/links.php id Parameter SQL Injection
51877 2008-09-30 Printlog index.php filename Parameter NULL Byte Request Arbitrary Script Source Disclosure
51900 2008-09-30 phpMyID MyID.php openid_return_to Parameter Arbitrary Site Redirect
51948 2008-09-30 Real Estate Portal index.php Multiple Parameter Traversal Arbitrary File Access
51949 2008-09-30 Real Estate Portal admin/index.php Multiple Parameter Traversal Arbitrary File Access
51950 2008-09-30 Real Estate Portal index.php page_id Parameter SQL Injection
48755 2008-09-29 XAMPP adodb.php Multiple Parameter XSS
52644 2008-09-29 Opera Window Object Suppressing Remote DoS
57065 2008-09-29 Google Chrome window.open DMK.alert DoS
57066 2008-09-29 Apple Safari window.open DMK.alert DoS

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2002 - 2013 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use