Total
29592 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2008-7198 | 1 Alecwh | 1 Phpns | 2024-11-21 | 10.0 HIGH | N/A |
Multiple unspecified vulnerabilities in phpns before 2.1.1beta1 have unknown impact and attack vectors. | |||||
CVE-2008-7197 | 1 G15tools | 1 G15daemon | 2024-11-21 | 10.0 HIGH | N/A |
Multiple unspecified vulnerabilities in G15Daemon before 1.9.4 have unknown impact and attack vectors. | |||||
CVE-2008-7196 | 1 Mark Reinsfelder | 1 Metashell | 2024-11-21 | 10.0 HIGH | N/A |
Unspecified vulnerability in metashell before 0.03 has unknown impact and attack vectors related to a "PATH execution security flaw," possibly an untrusted search path vulnerability. | |||||
CVE-2008-7195 | 1 Fujitsu | 1 Interstage Application Server | 2024-11-21 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in Fujitsu Interstage HTTP Server, as used in Interstage Application Server Enterprise Edition 7.0.1 for Solaris, allows attackers to cause a denial of service via unknown vectors related to SSL. | |||||
CVE-2008-7194 | 1 Fujitsu | 1 Interstage Application Server | 2024-11-21 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in Fujitsu Interstage HTTP Server, as used in Interstage Application Server 5.0, 7.0, 7.0.1, and 8.0.0 for Windows, allows attackers to cause a denial of service via a crafted request. | |||||
CVE-2008-7191 | 1 Pps.jussieu | 1 Polipo | 2024-11-21 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in Polipo before 1.0.4 allows remote attackers to cause a denial of service (crash) via a long request URL. | |||||
CVE-2008-7190 | 1 Adium | 1 Adium | 2024-11-21 | 10.0 HIGH | N/A |
Unspecified vulnerability in Adium before 1.2 has unknown impact and attack vectors related to javascript: URLs, possibly cross-site scripting (XSS). | |||||
CVE-2008-7189 | 1 Bastian Blumentritt | 1 Local Media Browser | 2024-11-21 | 10.0 HIGH | N/A |
Multiple unspecified vulnerabilities in Local Media Browser before 0.1 have unknown impact and attack vectors related to "Security holes." | |||||
CVE-2008-7164 | 1 Ryo-oh-ki | 1 Shareaza | 2024-11-21 | 10.0 HIGH | N/A |
Multiple unspecified vulnerabilities in Shareaza before 2.3.1.0 have unknown impact and attack vectors related to "very important security fixes," possibly involving update notifications and a domain that is no longer controlled by the vendor. | |||||
CVE-2008-7149 | 1 Agilewiki | 1 Agilewiki | 2024-11-21 | 10.0 HIGH | N/A |
Unspecified vulnerability in AgileWiki before 0.10.1 has unknown impact and attack vectors related to passwords. | |||||
CVE-2008-7148 | 1 Synfig | 1 Synfigstudio | 2024-11-21 | 10.0 HIGH | N/A |
Unspecified vulnerability in Synfig Animation Studio before 0.61.08 allows attackers to execute arbitrary code via a crafted .sif file. | |||||
CVE-2008-7144 | 1 Rarlab | 1 Winrar | 2024-11-21 | 10.0 HIGH | N/A |
Multiple unspecified vulnerabilities in RARLAB WinRAR before 3.71 have unknown impact and attack vectors related to crafted (1) ACE, (2) ARJ, (3) BZ2, (4) CAB, (5) GZ, (6) LHA, (7) RAR, (8) TAR, or (9) ZIP files, as demonstrated by the OUSPG PROTOS GENOME test suite for Archive Formats. | |||||
CVE-2008-7131 | 1 Peter Kohlmann | 1 Db2 Monitoring Console | 2024-11-21 | 6.8 MEDIUM | N/A |
Unspecified vulnerability in DB2 Monitoring Console 2.2.4 and earlier allows remote attackers to gain access to a database via a link to a victim who is already connected to the database. | |||||
CVE-2008-7130 | 1 Peter Kohlmann | 1 Db2 Monitoring Console | 2024-11-21 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in DB2 Monitoring Console 2.2.4 and earlier allows remote attackers to upload arbitrary files via unknown vectors. | |||||
CVE-2008-7122 | 1 Evansprogramming | 1 Registry Pro | 2024-11-21 | 10.0 HIGH | N/A |
Multiple insecure method vulnerabilities in an ActiveX control in (epRegPro.ocx) in Evans Programming Registry Pro allow remote attackers to read and modify sensitive registry keys via the (1) About, (2) CreateKey, (3) DeleteBranch, (4) DeleteKey, (5) DeleteValue, (6) EnumKeys, (7) EnumValues, (8) QueryType, (9) QueryValue, (10) RenameKey, and (11) SetValue methods. | |||||
CVE-2008-7101 | 1 Dotnetnuke | 1 Dotnetnuke | 2024-11-21 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in DotNetNuke 4.0 through 4.8.4 and 5.0 allows remote attackers to obtain sensitive information (portal number) by accessing the install wizard page via unknown vectors. | |||||
CVE-2008-7100 | 1 Dotnetnuke | 1 Dotnetnuke | 2024-11-21 | 6.5 MEDIUM | N/A |
Unspecified vulnerability in DotNetNuke 4.4.1 through 4.8.4 allows remote authenticated users to bypass authentication and gain privileges via unknown vectors related to a "unique id" for user actions and improper validation of a "user identity." | |||||
CVE-2008-7099 | 1 Qsoft-inc | 1 K-rate | 2024-11-21 | 6.8 MEDIUM | N/A |
Unspecified vulnerability in the Manage Templates feature in Qsoft K-Rate Premium allows remote attackers to execute arbitrary PHP code via unknown vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. | |||||
CVE-2008-7012 | 1 Accellion | 1 Secure File Transfer Appliance | 2024-11-21 | 7.8 HIGH | N/A |
courier/1000@/api_error_email.html (aka "error reporting page") in Accellion File Transfer Appliance FTA_7_0_178, and possibly other versions before FTA_7_0_189, allows remote attackers to send spam e-mail via modified description and client_email parameters. | |||||
CVE-2008-6996 | 1 Google | 1 Chrome | 2024-11-21 | 5.0 MEDIUM | N/A |
Google Chrome BETA (0.2.149.27) does not prompt the user before saving an executable file, which makes it easier for remote attackers or malware to cause a denial of service (disk consumption) or exploit other vulnerabilities via a URL that references an executable file, possibly related to the "ask where to save each file before downloading" setting. |