Total
29592 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2008-6575 | 1 Avaya | 1 Communication Manager | 2024-11-21 | 6.8 MEDIUM | N/A |
Unspecified vulnerability in the SIP server in SIP Enablement Services (SES) in Avaya Communication Manager 3.1.x and 4.x allows remote authenticated users to cause a denial of service (resource consumption) via unknown vectors. | |||||
CVE-2008-6574 | 1 Avaya | 1 Communication Manager | 2024-11-21 | 7.5 HIGH | N/A |
Unspecified vulnerability in SIP Enablement Services (SES) in Avaya Communication Manager 3.1.x and 4.x allows remote attackers to gain privileges and cause a denial of service via unknown vectors related to reuse of valid credentials. | |||||
CVE-2008-6566 | 1 Octopussy | 1 Octopussy | 2024-11-21 | 10.0 HIGH | N/A |
Unspecified vulnerability in Octopussy before 0.9.5.8 has unknown impact and attack vectors related to a "major security" vulnerability. | |||||
CVE-2008-6549 | 1 Moinmo | 1 Moinmoin | 2024-11-21 | 5.0 MEDIUM | N/A |
The password_checker function in config/multiconfig.py in MoinMoin 1.6.1 uses the cracklib and python-crack features even though they are not thread-safe, which allows remote attackers to cause a denial of service (segmentation fault and crash) via unknown vectors. | |||||
CVE-2008-6546 | 1 Alecwh | 1 Phpns | 2024-11-21 | 10.0 HIGH | N/A |
Unspecified vulnerability in phpns before 2.1.3 has unknown impact and attack vectors related to "activation permissions." | |||||
CVE-2008-6542 | 1 Dotnetnuke | 1 Dotnetnuke | 2024-11-21 | 4.6 MEDIUM | N/A |
Unspecified vulnerability in the Skin Manager in DotNetNuke before 4.8.2 allows remote authenticated administrators to perform "server-side execution of application logic" by uploading a static file that is converted into a dynamic script via unknown vectors related to HTM or HTML files. | |||||
CVE-2008-6536 | 1 7-zip | 1 7-zip | 2024-11-21 | 10.0 HIGH | N/A |
Unspecified vulnerability in 7-zip before 4.5.7 has unknown impact and remote attack vectors, as demonstrated by the PROTOS GENOME test suite for Archive Formats (c10). | |||||
CVE-2008-6507 | 1 Phpbb | 1 Phpbb | 2024-11-21 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in phpBB before 3.0.4 allows attackers to obtain sensitive information via unknown vectors related to the lack of password prompts for a private message that quotes a post in a password-protected forum. | |||||
CVE-2008-6470 | 1 Clansphere | 1 Clansphere | 2024-11-21 | 5.0 MEDIUM | N/A |
Multiple unspecified vulnerabilities in ClanSphere before 2008.2.1 allow remote attackers to obtain sensitive information, and possibly have unknown other impact, via vectors related to "javascript insert" and the (1) mods/messages/getusers.php and (2) mods/abcode/listimg.php files. NOTE: some of these details are obtained from third party information. | |||||
CVE-2008-6417 | 1 Greensql | 1 Greensql-console | 2024-11-21 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in GreenSQL-Console before 0.3.5 allows attackers to obtain the "installation directory" via unknown vectors. | |||||
CVE-2008-6412 | 1 Vignette | 1 Vignette Content Management | 2024-11-21 | 7.5 HIGH | N/A |
Unspecified vulnerability in Vignette Content Management 7.3.0.5, 7.3.1, 7.3.1.1, 7.4, and 7.5 allows "low privileged" users to gain administrator privileges via unknown attack vectors. | |||||
CVE-2008-6342 | 2 Lobacher Patrick, Typo3 | 2 Simplefilebrowser, Typo3 | 2024-11-21 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in the TYPO3 Simple File Browser (simplefilebrowser) extension 1.0.2 and earlier allows remote attackers to obtain sensitive information via unknown attack vectors. | |||||
CVE-2008-6158 | 1 W3bcms | 1 W3b\>cms | 2024-11-21 | 10.0 HIGH | N/A |
Multiple unspecified vulnerabilities in the admin backend in w3b>cms (aka w3blabor CMS) before 3.2.0 have unknown impact and remote attack vectors. | |||||
CVE-2008-6140 | 1 Avaya | 1 One-x | 2024-11-21 | 5.0 MEDIUM | N/A |
Unspecified vulnerability in the Session Initiation Protocol (SIP) implementation in Avaya one-X Desktop Edition 2.1.0.78 allows remote attackers to cause a denial of service (crash) via unspecified vectors. | |||||
CVE-2008-6110 | 1 Semanticscuttle | 1 Semanticscuttle | 2024-11-21 | 10.0 HIGH | N/A |
Unspecified vulnerability in SemanticScuttle before 0.90 has unknown impact and attack vectors related to improper validation of parameters to profile.php. | |||||
CVE-2008-6079 | 1 Enlightenment | 1 Imlib2 | 2024-11-21 | 10.0 HIGH | N/A |
imlib2 before 1.4.2 allows context-dependent attackers to have an unspecified impact via a crafted (1) ARGB, (2) BMP, (3) JPEG, (4) LBM, (5) PNM, (6) TGA, or (7) XPM file, related to "several heap and stack based buffer overflows - partly due to integer overflows." | |||||
CVE-2008-6072 | 1 Graphicsmagick | 1 Graphicsmagick | 2024-11-21 | 5.0 MEDIUM | N/A |
Multiple unspecified vulnerabilities in GraphicsMagick before 1.1.14, and 1.2.x before 1.2.3, allow remote attackers to cause a denial of service (crash) via unspecified vectors in (1) XCF and (2) CINEON images. | |||||
CVE-2008-6021 | 1 Attachmate | 1 Reflection For Secure It | 2024-11-21 | 10.0 HIGH | N/A |
Multiple unspecified vulnerabilities in Attachmate Reflection for Secure IT UNIX Client and Server before 7.0 SP1 have unknown impact and attack vectors, aka "security vulnerabilities found by 3rd party analysis." | |||||
CVE-2008-5915 | 1 Google | 1 Chrome | 2024-11-21 | 2.1 LOW | N/A |
An unspecified function in the JavaScript implementation in Google Chrome creates and exposes a "temporary footprint" when there is a current login to a web site, which makes it easier for remote attackers to trick a user into acting upon a spoofed pop-up message, aka an "in-session phishing attack." NOTE: as of 20090116, the only disclosure is a vague pre-advisory with no actionable information. However, because it is from a well-known researcher, it is being assigned a CVE identifier for tracking purposes. | |||||
CVE-2008-5910 | 1 Sun | 1 Opensolaris | 2024-11-21 | 7.2 HIGH | N/A |
Unspecified vulnerability in txzonemgr in Sun OpenSolaris has unknown impact and local attack vectors, related to a "Temporary file vulnerability," aka Bug ID 6653462. |