Browse Database

Browsing Vulnerabilities Disclosed in May of 2009

<< Back to Browse
OSVDB IDDisclosure DateTitle
55387 2009-05-31 Unclassified NewsBoard (UNB) import_wbb1.php Direct Request Error Message Path Disclosure
55388 2009-05-31 Unclassified NewsBoard (UNB) forum.php GLOBALS[filename] Parameter Traversal Arbitrary File Access
55389 2009-05-31 Unclassified NewsBoard (UNB) forum.php GLOBALS[UTE][__tplCollection] Parameter Traversal Local File Inclusion
55390 2009-05-31 Unclassified NewsBoard (UNB) forum.php Query Parameter SQL Injection
61689 2009-05-31 phpBB forum.php Forum ID Access Restriction Bypass
72681 2009-05-31 Mozilla Firefox Space Saturation URL Spoofing
54829 2009-05-30 OCS Inventory NG download.php Multiple Parameter SQL Injection
54830 2009-05-30 OCS Inventory NG group_show.php systemid Parameter SQL Injection
54893 2009-05-30 ICQ URL Search Hook (ICQToolBar.dll) URL File Handling Overflow
62021 2009-05-30 Basic Analysis And Security Engine (BASE) /admin/base_useradmin.php Full Name Field XSS
62022 2009-05-30 Basic Analysis And Security Engine (BASE) base_ag_main.php Name Field XSS
62023 2009-05-30 Basic Analysis And Security Engine (BASE) /admin/base_roleadmin.php Description Field XSS
64451 2009-05-30 Basic Analysis And Security Engine (BASE) base_conf_contents.php Unspecified Parameter XSS
64452 2009-05-30 Basic Analysis And Security Engine (BASE) base_qry_sqlcalls.php Unspecified XSS
58146 2009-05-29 Advanced Encryption Standard (AES-196 / AES-256) Algorithm Related-key Boomerang Attack Weakness
55078 2009-05-29 IBM WebSphere Application Server (WAS) Security Component LTPA Token Timeout Policy Bypass
55061 2009-05-29 IBM WebSphere MQ Queue Manager Crafted Request Remote Overflow
55781 2009-05-29 Xvid xvidcore/src/decoder.c decoder_create Function Movie File Handling Overflow
54781 2009-05-29 REP-BBS Unspecified XSS
54782 2009-05-29 IMG-BBS Unspecified XSS
54809 2009-05-29 Traidnt Up uploadcp/index.php Multiple Parameter SQL Injection
54811 2009-05-29 Arab Portal admin/index.php Multiple Header SQL Injection
54812 2009-05-29 AIMP MP3 ID3 Tag Handling Overflow
54824 2009-05-29 ZeusCart index.php maincatid Parameter SQL Injection
54851 2009-05-29 Luottokunta Module for osCommerce Order Processing Security Restriction Bypass
54881 2009-05-29 SonicWALL SSL-VPN cgi-bin/welcome/VirtualOffice err Parameter Remote Format String
54917 2009-05-29 Linux Kernel fs/ocfs2/file.c Inode Double Locking Code Splice System Calls Local DoS
55102 2009-05-29 Luottokunta Module for osCommerce Unspecified Orders Issue
56590 2009-05-29 Zen Help Desk admin.asp Multiple Parameter SQL Injection Authentication Bypass
56600 2009-05-29 Webboard view.php topic Parameter Traversal Arbitrary File Access
58415 2009-05-29 Adobe Acrobat Alert Method Square Bracket Character DoS
60787 2009-05-29 Million Dollar Text Links admin.link.modify.php id Parameter SQL Injection
61572 2009-05-29 Avira AntiVir Antivirus Embedded Archive Handling Scan Bypass
64448 2009-05-29 Roxio CinePlayer SonicMediaPlayer.dll SonicMediaPlayer ActiveX DiskType Method Overflow
66477 2009-05-29 JVideo! Component for Joomla! index.php user_id Parameter SQL Injection
55588 2009-05-28 Pidgin OSCAR Protocol Implementation Crafted ICQWebMessage Remote DoS
59000 2009-05-28 Apache CXF Unsigned Message Policy Bypass
56275 2009-05-28 libsndfile Audio Data Handling Multiple Function Divide by Zero DoS
54773 2009-05-28 Simple Machines Forum (SMF) Incorrect MIME type image/bmp XSS
54914 2009-05-28 IBM DB2 Universal Database Common Code Infrastructure Component LDAP Password Authentication Bypass

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2012 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use