CVE Feed

    Dashboard / CVE

    9.3
    Critical

    CVE-2009-3068

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in the RoboHelpServer Servlet (robohelp/server) in Adobe RoboHelp Server 8 allows remote attackers to execute arbitrary code by uploading a Java Archive (.jsp) file during a PUBLISH action, then accessing it via a direct request to the file in the robohelp/robo/reserved/web directory under its sessionid subdirectory, as demonstrated by the vd_adobe module in VulnDisco Pack Professional 8.7 through 8.11.

    Published: 4 Sept 2009
    10
    Critical

    CVE-2008-7164

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in Shareaza before 2.3.1.0 have unknown impact and attack vectors related to "very important security fixes," possibly involving update notifications and a domain that is no longer controlled by the vendor.

    Published: 4 Sept 2009
    6.8
    Medium

    CVE-2008-7165

    Last Modified: 23 Apr 2026

    Cross-site request forgery in cp06_wifi_m_nocifr.cgi in the administrator panel in TELECOM ITALIA Alice Gate2 Plus Wi-Fi allows remote attackers to hijack the authentication of administrators for requests that disable Wi-Fi encryption via certain values for the wlChannel and wlRadioEnable parameters.

    Published: 4 Sept 2009
    5
    Medium

    CVE-2008-7166

    Last Modified: 23 Apr 2026

    Buffer overflow in the web interface in BitTorrent 6.0.1 (build 7859) and earlier, and uTorrent 1.7.6 (build 7859) and earlier, allows remote attackers to cause a denial of service (memory consumption and crash) via a crafted Range header. NOTE: this is probably a different vulnerability than CVE-2008-0071 and CVE-2008-0364.

    Published: 4 Sept 2009
    6.8
    Medium

    CVE-2008-7163

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in mods/Integrated/index.php in SineCMS 2.3.5 and earlier, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via the sine[config][index_main] parameter.

    Published: 4 Sept 2009
    5
    Medium

    CVE-2009-2521

    Last Modified: 23 Apr 2026

    Stack consumption vulnerability in the FTP Service in Microsoft Internet Information Services (IIS) 5.0 through 7.0 allows remote authenticated users to cause a denial of service (daemon crash) via a list (ls) -R command containing a wildcard that references a subdirectory, followed by a .. (dot dot), aka "IIS FTP Service DoS Vulnerability."

    Published: 4 Sept 2009
    7.5
    High

    CVE-2008-7161

    Last Modified: 23 Apr 2026

    Fortinet FortiGuard Fortinet FortiGate-1000 3.00 build 040075,070111 allows remote attackers to bypass URL filtering via fragmented GET or POST requests that use HTTP/1.0 without the Host header. NOTE: this issue might be related to CVE-2005-3058.

    Published: 4 Sept 2009
    9.3
    Critical

    CVE-2008-7162

    Last Modified: 23 Apr 2026

    Buffer overflow in Hero Super Player 3000 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long filename in a .M3U file. NOTE: this might be related to CVE-2008-4504.

    Published: 4 Sept 2009
    7.5
    High

    CVE-2009-3054

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the Artetics.com Art Portal (com_artportal) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the portalid parameter to index.php.

    Published: 3 Sept 2009
    7.5
    High

    CVE-2009-3055

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in engine/api/api.class.php in DataLife Engine (DLE) 8.2 allows remote attackers to execute arbitrary PHP code via a URL in the dle_config_api parameter.

    Published: 3 Sept 2009
    7.5
    High

    CVE-2009-3056

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in include/engine/content/elements/menu.php in KingCMS 0.6.0 allows remote attackers to execute arbitrary PHP code via a URL in the CONFIG[AdminPath] parameter.

    Published: 3 Sept 2009
    4.3
    Medium

    CVE-2009-3057

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in AOM Software Beex 3 allow remote attackers to inject arbitrary web script or HTML via the navaction parameter to (1) news.php and (2) partneralle.php.

    Published: 3 Sept 2009
    9.3
    Critical

    CVE-2009-3058

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in akPlayer 1.9.0 allows remote attackers to execute arbitrary code via a long string in a .plt playlist file.

    Published: 3 Sept 2009
    6.8
    Medium

    CVE-2009-3053

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in the Agora (com_agora) component 3.0.0b for Joomla! allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the action parameter to the avatars page, reachable through index.php.

    Published: 3 Sept 2009
    7.5
    High

    CVE-2009-3062

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in message_box.php in OSI Codes PHP Live! 3.3 allows remote attackers to execute arbitrary SQL commands via the deptid parameter.

    Published: 3 Sept 2009
    7.5
    High

    CVE-2009-3063

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the Game Server (com_gameserver) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a gamepanel action to index.php.

    Published: 3 Sept 2009
    7.5
    High

    CVE-2009-3064

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in debugger/debug_php.php in Ve-EDIT 0.1.4 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the _GET[filename] parameter.

    Published: 3 Sept 2009
    7.5
    High

    CVE-2009-3065

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in editor/edit_htmlarea.php in Ve-EDIT 0.1.4 allows remote attackers to execute arbitrary PHP code via a URL in the highlighter parameter.

    Published: 3 Sept 2009
    4.3
    Medium

    CVE-2009-3066

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in PropertyWatchScript.com Property Watch 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) videoid parameter to tools/email.php and (2) redirect parameter to tools/login.php.

    Published: 3 Sept 2009
    7.5
    High

    CVE-2009-3061

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in lesson.php in Alqatari Q R Script 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: some of these details are obtained from third party information.

    Published: 3 Sept 2009
    4.3
    Medium

    CVE-2009-3067

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in index.php in Reservation Manager allows remote attackers to inject arbitrary web script or HTML via the resman_startdate parameter.

    Published: 3 Sept 2009
    6.5
    Medium

    CVE-2009-3052

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in root/includes/prime_quick_style.php in the Prime Quick Style addon before 1.2.3 for phpBB 3 allows remote authenticated users to execute arbitrary SQL commands via the prime_quick_style parameter to ucp.php.

    Published: 3 Sept 2009
    7.5
    High

    CVE-2009-3059

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in Joker Board (aka JBoard) 2.0 and earlier allow remote attackers to execute arbitrary SQL commands via (1) core/select.php or (2) the city parameter to top_add.inc.php, reachable through sboard.php.

    Published: 3 Sept 2009
    4.3
    Medium

    CVE-2009-3060

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in Joker Board (aka JBoard) 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the notice parameter to editform.php, (2) the edit_user_message parameter to core/edit_user_message.php, or (3) the user_title parameter to inc/head.inc.php, reachable through any PHP script.

    Published: 3 Sept 2009
    9.3
    Critical

    CVE-2009-3569

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in OpenOffice.org (OOo) allows remote attackers to execute arbitrary code via unspecified vectors, as demonstrated by a certain module in VulnDisco Pack Professional 8.8, aka "Client-side stack overflow exploit." NOTE: as of 20091005, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.

    Published: 3 Sept 2009
    5
    Medium

    CVE-2009-3095

    Last Modified: 23 Apr 2026

    The mod_proxy_ftp module in the Apache HTTP Server allows remote attackers to bypass intended access restrictions and send arbitrary commands to an FTP server via vectors related to the embedding of these commands in the Authorization HTTP header, as demonstrated by a certain module in VulnDisco Pack Professional 8.11.

    Published: 3 Sept 2009
    5
    Medium

    CVE-2009-3083

    Last Modified: 23 Apr 2026

    The msn_slp_sip_recv function in libpurple/protocols/msn/slp.c in the MSN protocol plugin in libpurple in Pidgin before 2.6.2 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via an SLP invite message that lacks certain required fields, as demonstrated by a malformed message from a KMess client.

    Published: 3 Sept 2009
    5
    Medium

    CVE-2009-2703

    Last Modified: 23 Apr 2026

    libpurple/protocols/irc/msgs.c in the IRC protocol plugin in libpurple in Pidgin before 2.6.2 allows remote IRC servers to cause a denial of service (NULL pointer dereference and application crash) via a TOPIC message that lacks a topic string.

    Published: 3 Sept 2009
    9.3
    Critical

    CVE-2009-3571

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in OpenOffice.org (OOo) has unknown impact and client-side attack vector, as demonstrated by a certain module in VulnDisco Pack Professional 8.8, aka "Client-side exploit." NOTE: as of 20091005, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.

    Published: 3 Sept 2009
    5
    Medium

    CVE-2009-4880

    Last Modified: 11 Apr 2025

    Multiple integer overflows in the strfmon implementation in the GNU C Library (aka glibc or libc6) 2.10.1 and earlier allow context-dependent attackers to cause a denial of service (memory consumption or application crash) via a crafted format string, as demonstrated by a crafted first argument to the money_format function in PHP, a related issue to CVE-2008-1391.

    Published: 3 Sept 2009
    10
    Critical

    CVE-2009-3570

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in OpenOffice.org (OOo) has unspecified impact and remote attack vectors, as demonstrated by a certain module in VulnDisco Pack Professional 8.9. NOTE: as of 20091005, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.

    Published: 3 Sept 2009
    7.8
    High

    CVE-2009-2346

    Last Modified: 23 Apr 2026

    The IAX2 protocol implementation in Asterisk Open Source 1.2.x before 1.2.35, 1.4.x before 1.4.26.2, 1.6.0.x before 1.6.0.15, and 1.6.1.x before 1.6.1.6; Business Edition B.x.x before B.2.5.10, C.2.x before C.2.4.3, and C.3.x before C.3.1.1; and s800i 1.3.x before 1.3.0.3 allows remote attackers to cause a denial of service (call-number exhaustion) by initiating many IAX2 message exchanges, a related issue to CVE-2008-3263.

    Published: 3 Sept 2009
    5
    Medium

    CVE-2009-3085

    Last Modified: 23 Apr 2026

    The XMPP protocol plugin in libpurple in Pidgin before 2.6.2 does not properly handle an error IQ stanza during an attempted fetch of a custom smiley, which allows remote attackers to cause a denial of service (application crash) via XHTML-IM content with cid: images.

    Published: 3 Sept 2009
    4.3
    Medium

    CVE-2009-3009

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in Ruby on Rails 2.x before 2.2.3, and 2.3.x before 2.3.4, allows remote attackers to inject arbitrary web script or HTML by placing malformed Unicode strings into a form helper.

    Published: 3 Sept 2009
    7.5
    High

    CVE-2008-7153

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the autoDetectRegion function in doceboCore/lib/lib.regset.php in Docebo 3.5.0.3 and earlier allows remote attackers to execute arbitrary SQL commands via the Accept-Language HTTP header. NOTE: this can be leveraged to execute arbitrary PHP code using the INTO DUMPFILE command.

    Published: 2 Sept 2009
    6.8
    Medium

    CVE-2008-7156

    Last Modified: 23 Apr 2026

    EkinBoard 1.1.0 and earlier, when register_globals is enabled, allows remote attackers to bypass authorization and gain administrator privileges by setting the _groups[] parameter to 2, as demonstrated via backup.php.

    Published: 2 Sept 2009
    6.8
    Medium

    CVE-2008-7157

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in EkinBoard 1.1.0 and earlier allows remote attackers to execute arbitrary code by uploading an avatar file with an executable extension followed by a safe extension, then accessing it via a direct request to the file in uploaded/avatars/.

    Published: 2 Sept 2009
    10
    Critical

    CVE-2008-7158

    Last Modified: 23 Apr 2026

    Numara FootPrints 7.5a through 7.5a1 and 8.0 through 8.0a allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) transcriptFile parameter to MRcgi/MRchat.pl or (2) LOADFILE parameter to MRcgi/MRABLoad2.pl. NOTE: some of these details are obtained from third party information.

    Published: 2 Sept 2009
    7.5
    High

    CVE-2008-7155

    Last Modified: 23 Apr 2026

    NetRisk 1.9.7 does not properly restrict access to admin/change_submit.php, which allows remote attackers to change the password of arbitrary users via a direct request.

    Published: 2 Sept 2009
    4.9
    Medium

    CVE-2009-3043

    Last Modified: 23 Apr 2026

    The tty_ldisc_hangup function in drivers/char/tty_ldisc.c in the Linux kernel 2.6.31-rc before 2.6.31-rc8 allows local users to cause a denial of service (system crash, sometimes preceded by a NULL pointer dereference) or possibly gain privileges via certain pseudo-terminal I/O activity, as demonstrated by KernelTtyTest.c.

    Published: 2 Sept 2009
    4.3
    Medium

    CVE-2009-3048

    Last Modified: 23 Apr 2026

    Opera before 10.00 on Linux, Solaris, and FreeBSD does not properly implement the "INPUT TYPE=file" functionality, which allows remote attackers to trick a user into uploading an unintended file via vectors involving a "dropped file."

    Published: 2 Sept 2009
    5
    Medium

    CVE-2009-3049

    Last Modified: 23 Apr 2026

    Opera before 10.00 does not properly display all characters in Internationalized Domain Names (IDN) in the address bar, which allows remote attackers to spoof URLs and conduct phishing attacks, related to Unicode and Punycode.

    Published: 2 Sept 2009
    7.5
    High

    CVE-2009-3046

    Last Modified: 23 Apr 2026

    Opera before 10.00 does not check all intermediate X.509 certificates for revocation, which makes it easier for remote SSL servers to bypass validation of the certificate chain via a revoked certificate.

    Published: 2 Sept 2009
    5
    Medium

    CVE-2008-7154

    Last Modified: 23 Apr 2026

    Docebo 3.5.0.3 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) class/class.conf_fw.php, (2) class.module/class.event_manager.php, (3) lib/lib.domxml5.php, or (4) menu/menu_over.php in doceboCore/; or (5) class/class.conf_cms.php, (6) lib/lib.compose.php, (7) modules/chat/teleskill.php, or (8) class/class.admin_menu_cms.php in doceboCms/; which reveals the installation path in an error message.

    Published: 2 Sept 2009
    5
    Medium

    CVE-2009-2968

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in a support component in the web interface in VMware Studio 2.0 public beta before build 1017-185256 allows remote attackers to upload files to arbitrary locations via unspecified vectors.

    Published: 2 Sept 2009
    5
    Medium

    CVE-2009-3044

    Last Modified: 23 Apr 2026

    Opera before 10.00 does not properly handle a (1) '\0' character or (2) invalid wildcard character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted certificate issued by a legitimate Certification Authority.

    Published: 2 Sept 2009
    5
    Medium

    CVE-2009-3045

    Last Modified: 23 Apr 2026

    Opera before 10.00 trusts root X.509 certificates signed with the MD2 algorithm, which makes it easier for man-in-the-middle attackers to spoof arbitrary SSL servers via a crafted server certificate.

    Published: 2 Sept 2009
    4.3
    Medium

    CVE-2009-3047

    Last Modified: 23 Apr 2026

    Opera before 10.00, when a collapsed address bar is used, does not properly update the domain name from the previously visited site to the currently visited site, which might allow remote attackers to spoof URLs.

    Published: 2 Sept 2009
    2.1
    Low

    CVE-2009-3228

    Last Modified: 23 Apr 2026

    The tc_fill_tclass function in net/sched/sch_api.c in the tc subsystem in the Linux kernel 2.4.x before 2.4.37.6 and 2.6.x before 2.6.31-rc9 does not initialize certain (1) tcm__pad1 and (2) tcm__pad2 structure members, which might allow local users to obtain sensitive information from kernel memory via unspecified vectors.

    Published: 2 Sept 2009
    2.6
    Low

    CVE-2009-3094

    Last Modified: 23 Apr 2026

    The ap_proxy_ftp_handler function in modules/proxy/proxy_ftp.c in the mod_proxy_ftp module in the Apache HTTP Server 2.0.63 and 2.2.13 allows remote FTP servers to cause a denial of service (NULL pointer dereference and child process crash) via a malformed reply to an EPSV command.

    Published: 2 Sept 2009