CVE Feed

    Dashboard / CVE

    5
    Medium

    CVE-2008-5723

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in CGI RESCUE KanniBBS2000 (aka KanniBBS2000i, MiniBBS2000, and MiniBBS2000i) before 1.03 allows remote attackers to read arbitrary files via unspecified vectors.

    Published: 26 Dec 2008
    7.2
    High

    CVE-2008-5724

    Last Modified: 23 Apr 2026

    The Personal Firewall driver (aka epfw.sys) 3.0.672.0 and earlier in ESET Smart Security 3.0.672 and earlier allows local users to gain privileges via a crafted IRP in a certain METHOD_NEITHER IOCTL request to \Device\Epfw that overwrites portions of memory.

    Published: 26 Dec 2008
    7.5
    High

    CVE-2008-5726

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in thread.php in stormBoards 1.0.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 26 Dec 2008
    4.9
    Medium

    CVE-2008-5731

    Last Modified: 23 Apr 2026

    The PGPwded device driver (aka PGPwded.sys) in PGP Corporation PGP Desktop 9.0.6 build 6060 and 9.9.0 build 397 allows local users to cause a denial of service (system crash) and possibly gain privileges via a certain METHOD_BUFFERED IOCTL request that overwrites portions of memory, related to a "Driver Collapse." NOTE: some of these details are obtained from third party information.

    Published: 26 Dec 2008
    10
    Critical

    CVE-2009-0065

    Last Modified: 23 Apr 2026

    Buffer overflow in net/sctp/sm_statefuns.c in the Stream Control Transmission Protocol (sctp) implementation in the Linux kernel before 2.6.28-git8 allows remote attackers to have an unknown impact via an FWD-TSN (aka FORWARD-TSN) chunk with a large stream ID.

    Published: 26 Dec 2008
    5
    Medium

    CVE-2008-5710

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in the web management interface in Avaya Communication Manager (CM) 3.1.x, 4.0.3, and 5.x allow remote attackers to read (1) configuration files, (2) log files, (3) binary image files, and (4) help files via unknown vectors.

    Published: 24 Dec 2008
    9.3
    Critical

    CVE-2008-5711

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the Facebook PhotoUploader ActiveX control 5.0.14.0 and earlier allows remote attackers to execute arbitrary code via a long FileMask property value.

    Published: 24 Dec 2008
    5
    Medium

    CVE-2008-5712

    Last Modified: 23 Apr 2026

    The HTML parser in KDE Konqueror 3.5.9 allows remote attackers to cause a denial of service (application crash) via (1) a long COLOR attribute in an HR element; or a long (a) BGCOLOR or (b) BORDERCOLOR attribute in a (2) TABLE, (3) TD, or (4) TR element. NOTE: the FONT vector is already covered by CVE-2008-4514.

    Published: 24 Dec 2008
    7.5
    High

    CVE-2008-5708

    Last Modified: 23 Apr 2026

    redirect.php in SlimCMS 1.0.0 does not require authentication, which allows remote attackers to create administrative users by using the newusername and newpassword parameters and setting the newisadmin parameter to 1.

    Published: 24 Dec 2008
    9
    Critical

    CVE-2008-5709

    Last Modified: 23 Apr 2026

    Multiple unspecified vulnerabilities in the web management interface in Avaya Communication Manager (CM) 3.1 before 3.1.4 SP2, 4.0 before 4.0.3 SP1, and 5.0 before 5.0 SP3 allow remote authenticated users to execute arbitrary code via unknown attack vectors in the (1) Set Static Routes and (2) Backup History components.

    Published: 24 Dec 2008
    5
    Medium

    CVE-2008-5715

    Last Modified: 23 Apr 2026

    Mozilla Firefox 3.0.5 on Windows Vista allows remote attackers to cause a denial of service (application crash) via JavaScript code with a long string value for the hash property (aka location.hash). NOTE: it was later reported that earlier versions are also affected, and that the impact is CPU consumption and application hang in unspecified circumstances perhaps involving other platforms.

    Published: 24 Dec 2008
    5
    Medium

    CVE-2008-5498

    Last Modified: 23 Apr 2026

    Array index error in the imageRotate function in PHP 5.2.8 and earlier allows context-dependent attackers to read the contents of arbitrary memory locations via a crafted value of the third argument (aka the bgd_color or clrBack argument) for an indexed image.

    Published: 24 Dec 2008
    7.5
    High

    CVE-2008-5707

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in urunler.asp in Iltaweb Alisveris Sistemi allows remote attackers to execute arbitrary SQL commands via the catno parameter.

    Published: 23 Dec 2008
    9.3
    Critical

    CVE-2008-2434

    Last Modified: 23 Apr 2026

    The Trend Micro HouseCall ActiveX control 6.51.0.1028 and 6.6.0.1278 in Housecall_ActiveX.dll allows remote attackers to download an arbitrary library file onto a client system via a "custom update server" argument. NOTE: this can be leveraged for code execution by writing to a Startup folder.

    Published: 23 Dec 2008
    6.8
    Medium

    CVE-2008-4303

    Last Modified: 23 Apr 2026

    Multiple SQL injection vulnerabilities in phpCollab 2.5 rc3, 2.4, and earlier allow remote attackers to execute arbitrary SQL commands via the loginForm parameter to general/login.php, and unspecified other vectors.

    Published: 23 Dec 2008
    9
    Critical

    CVE-2008-4305

    Last Modified: 23 Apr 2026

    Static code injection vulnerability in installation/setup.php in phpCollab 2.5 rc3 and earlier allows remote authenticated administrators to inject arbitrary PHP code into include/settings.php via the URI.

    Published: 23 Dec 2008
    10
    Critical

    CVE-2008-4304

    Last Modified: 23 Apr 2026

    general/login.php in phpCollab 2.5 rc3 and earlier allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified input related to the SSL_CLIENT_CERT environment variable. NOTE: in some environments, SSL_CLIENT_CERT always has a base64-encoded string value, which may impose constraints on injection for typical shells.

    Published: 23 Dec 2008
    9.3
    Critical

    CVE-2008-2435

    Last Modified: 23 Apr 2026

    Use-after-free vulnerability in the Trend Micro HouseCall ActiveX control 6.51.0.1028 and 6.6.0.1278 in Housecall_ActiveX.dll allows remote attackers to execute arbitrary code via a crafted notifyOnLoadNative callback function.

    Published: 23 Dec 2008
    4.9
    Medium

    CVE-2011-4324

    Last Modified: 11 Apr 2025

    The encode_share_access function in fs/nfs/nfs4xdr.c in the Linux kernel before 2.6.29 allows local users to cause a denial of service (BUG and system crash) by using the mknod system call with a pathname on an NFSv4 filesystem.

    Published: 23 Dec 2008
    5.1
    Medium

    CVE-2008-2380

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in authpgsqllib.c in Courier-Authlib before 0.62.0, when a non-Latin locale Postgres database is used, allows remote attackers to execute arbitrary SQL commands via query parameters containing apostrophes.

    Published: 22 Dec 2008
    4.3
    Medium

    CVE-2008-5698

    Last Modified: 23 Apr 2026

    HTMLTokenizer::scriptHandler in Konqueror in KDE 3.5.9 and 3.5.10 allows remote attackers to cause a denial of service (application crash) via an invalid document.load call that triggers use of a deleted object. NOTE: some of these details are obtained from third party information.

    Published: 22 Dec 2008
    4.6
    Medium

    CVE-2008-5699

    Last Modified: 23 Apr 2026

    The name service cache daemon (nscd) in Sun Solaris 10 and OpenSolaris snv_50 through snv_104 does not properly check permissions, which allows local users to gain privileges and obtain sensitive information via unspecified vectors.

    Published: 22 Dec 2008
    4.7
    Medium

    CVE-2008-5701

    Last Modified: 23 Apr 2026

    Array index error in arch/mips/kernel/scall64-o32.S in the Linux kernel before 2.6.28-rc8 on 64-bit MIPS platforms allows local users to cause a denial of service (system crash) via an o32 syscall with a small syscall number, which leads to an attempted read operation outside the bounds of the syscall table.

    Published: 22 Dec 2008
    6.2
    Medium

    CVE-2008-5703

    Last Modified: 23 Apr 2026

    gpsdrive (aka gpsdrive-scripts) 2.10~pre4 allows local users to overwrite arbitrary files via a symlink attack on the (a) /tmp/.smswatch or (b) /tmp/gpsdrivepos temporary file, related to (1) examples/gpssmswatch and (2) src/splash.c, different vectors than CVE-2008-4959 and CVE-2008-5380.

    Published: 22 Dec 2008
    9.3
    Critical

    CVE-2008-5705

    Last Modified: 23 Apr 2026

    The cTrigger::DoIt function in src/ctrigger.cpp in the trigger mechanism in the daemon in Verlihub 0.9.8d-RC2 and earlier, when user triggers are enabled, allows remote attackers to execute arbitrary commands via shell metacharacters in an argument.

    Published: 22 Dec 2008
    4.3
    Medium

    CVE-2008-5697

    Last Modified: 23 Apr 2026

    The skype_tool.copy_num method in the Skype extension BETA 2.2.0.95 for Firefox allows remote attackers to write arbitrary data to the clipboard via a string argument.

    Published: 22 Dec 2008
    7.6
    High

    CVE-2008-5704

    Last Modified: 23 Apr 2026

    src/unit_test.c in gpsdrive (aka gpsdrive-scripts) 2.10~pre4 might allow local users to overwrite arbitrary files via a symlink attack on the /tmp/gpsdrive-unit-test/proc temporary file, a different vector than CVE-2008-4959 and CVE-2008-5380.

    Published: 22 Dec 2008
    6.9
    Medium

    CVE-2008-5706

    Last Modified: 23 Apr 2026

    The cTrigger::DoIt function in src/ctrigger.cpp in the trigger mechanism in the daemon in Verlihub 0.9.8d-RC2 and earlier allows local users to overwrite arbitrary files via a symlink attack on the /tmp/trigger.tmp temporary file.

    Published: 22 Dec 2008
    4.9
    Medium

    CVE-2009-0269

    Last Modified: 23 Apr 2026

    fs/ecryptfs/inode.c in the eCryptfs subsystem in the Linux kernel before 2.6.28.1 allows local users to cause a denial of service (fault or memory corruption), or possibly have unspecified other impact, via a readlink call that results in an error, leading to use of a -1 return value as an array index.

    Published: 22 Dec 2008
    5
    Medium

    CVE-2008-6679

    Last Modified: 23 Apr 2026

    Buffer overflow in the BaseFont writer module in Ghostscript 8.62, and possibly other versions, allows remote attackers to cause a denial of service (ps2pdf crash) and possibly execute arbitrary code via a crafted Postscript file.

    Published: 22 Dec 2008
    5
    Medium

    CVE-2008-2382

    Last Modified: 23 Apr 2026

    The protocol_client_msg function in vnc.c in the VNC server in (1) Qemu 0.9.1 and earlier and (2) KVM kvm-79 and earlier allows remote attackers to cause a denial of service (infinite loop) via a certain message.

    Published: 22 Dec 2008
    5
    Medium

    CVE-2008-5693

    Last Modified: 23 Apr 2026

    Ipswitch WS_FTP Server Manager 6.1.0.0 and earlier, and possibly other Ipswitch products, might allow remote attackers to read the contents of custom ASP files in WSFTPSVR/ via a request with an appended dot character.

    Published: 19 Dec 2008
    8.5
    High

    CVE-2008-5695

    Last Modified: 23 Apr 2026

    wp-admin/options.php in WordPress MU before 1.3.2, and WordPress 2.3.2 and earlier, does not properly validate requests to update an option, which allows remote authenticated users with manage_options and upload_files capabilities to execute arbitrary code by uploading a PHP script and adding this script's pathname to active_plugins.

    Published: 19 Dec 2008
    5
    Medium

    CVE-2008-5692

    Last Modified: 23 Apr 2026

    Ipswitch WS_FTP Server Manager before 6.1.1, and possibly other Ipswitch products, allows remote attackers to bypass authentication and read logs via a logLogout action to FTPLogServer/login.asp followed by a request to FTPLogServer/LogViewer.asp with the localhostnull account name.

    Published: 19 Dec 2008
    10
    Critical

    CVE-2008-5694

    Last Modified: 23 Apr 2026

    PHP remote file inclusion vulnerability in lib/jpgraph/jpgraph_errhandler.inc.php in Sandbox 1.4.1 might allow remote attackers to execute arbitrary PHP code via unspecified vectors. NOTE: the issue, if any, may be located in Aditus JpGraph rather than Sandbox. If so, then this should not be treated as an issue in Sandbox.

    Published: 19 Dec 2008
    9.3
    Critical

    CVE-2008-5696

    Last Modified: 23 Apr 2026

    Novell NetWare 6.5 before Support Pack 8, when an OES2 Linux server is installed into the NDS tree, does not require a password for the ApacheAdmin console, which allows remote attackers to reconfigure the Apache HTTP Server via console operations.

    Published: 19 Dec 2008
    6.5
    Medium

    CVE-2008-1094

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in index.cgi in the Account View page in Barracuda Spam Firewall (BSF) before 3.5.12.007 allows remote authenticated administrators to execute arbitrary SQL commands via a pattern_x parameter in a search_count_equals action, as demonstrated by the pattern_0 parameter.

    Published: 19 Dec 2008
    7.5
    High

    CVE-2008-4122

    Last Modified: 23 Apr 2026

    Joomla! 1.5.8 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.

    Published: 19 Dec 2008
    4.3
    Medium

    CVE-2008-5249

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in MediaWiki 1.13.0 through 1.13.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 19 Dec 2008
    5.8
    Medium

    CVE-2008-5252

    Last Modified: 23 Apr 2026

    Cross-site request forgery (CSRF) vulnerability in the Special:Import feature in MediaWiki 1.3.0 through 1.6.10, 1.12.x before 1.12.2, and 1.13.x before 1.13.3 allows remote attackers to perform unspecified actions as authenticated users via unknown vectors.

    Published: 19 Dec 2008
    10
    Critical

    CVE-2008-5685

    Last Modified: 23 Apr 2026

    Sun ScApp firmware 5.18.x, 5.19.x, and 5.20.0 through 5.20.10 on Sun Fire and Netra platforms allows remote attackers to access the System Controller (SC), the system console, and possibly the host OS, and cause a denial of service (shutdown or reboot), via spoofed IP packets.

    Published: 19 Dec 2008
    9.3
    Critical

    CVE-2008-5691

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the Phoenician Casino FlashAX ActiveX control 1.0.0.7 allows remote attackers to execute arbitrary code via a long argument to the SetID method.

    Published: 19 Dec 2008
    3.5
    Low

    CVE-2008-5250

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in MediaWiki before 1.6.11, 1.12.x before 1.12.2, and 1.13.x before 1.13.3, when Internet Explorer is used and uploads are enabled, or an SVG scripting browser is used and SVG uploads are enabled, allows remote authenticated users to inject arbitrary web script or HTML by editing a wiki page.

    Published: 19 Dec 2008
    3.5
    Low

    CVE-2008-0971

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in index.cgi in Barracuda Spam Firewall (BSF) before 3.5.12.007, Message Archiver before 1.2.1.002, Web Filter before 3.3.0.052, IM Firewall before 3.1.01.017, and Load Balancer before 2.3.024 allow remote attackers to inject arbitrary web script or HTML via (1) the Policy Name field in Search Based Retention Policy in Message Archiver; unspecified parameters in the (2) IP Configuration, (3) Administration, (4) Journal Accounts, (5) Retention Policy, and (6) GroupWise Sync components in Message Archiver; (7) input to search operations in Web Filter; and (8) input used in error messages and (9) hidden INPUT elements in (a) Spam Firewall, (b) IM Firewall, and (c) Web Filter.

    Published: 19 Dec 2008
    5
    Medium

    CVE-2008-5684

    Last Modified: 23 Apr 2026

    Unspecified vulnerability in the X Inter Client Exchange library (aka libICE) in Sun Solaris 8 through 10 and OpenSolaris before snv_85 allows context-dependent attackers to cause a denial of service (application crash), as demonstrated by a port scan that triggers a segmentation violation in the Gnome session manager (aka gnome-session).

    Published: 19 Dec 2008
    5
    Medium

    CVE-2008-5687

    Last Modified: 23 Apr 2026

    MediaWiki 1.11, and other versions before 1.13.3, does not properly protect against the download of backups of deleted images, which might allow remote attackers to obtain sensitive information via requests for files in images/deleted/.

    Published: 19 Dec 2008
    8.5
    High

    CVE-2008-5686

    Last Modified: 23 Apr 2026

    IBM Tivoli Provisioning Manager (TPM) before 5.1.1.1 IF0006, when its LDAP service is shared with other applications, does not require that an LDAP user be listed in the TPM user records, which allows remote authenticated users to execute SOAP commands that access arbitrary TPM functionality, as demonstrated by running provisioning workflows.

    Published: 19 Dec 2008
    4.3
    Medium

    CVE-2008-5688

    Last Modified: 23 Apr 2026

    MediaWiki 1.8.1, and other versions before 1.13.3, when the wgShowExceptionDetails variable is enabled, sometimes provides the full installation path in a debugging message, which might allow remote attackers to obtain sensitive information via unspecified requests that trigger an uncaught exception.

    Published: 19 Dec 2008
    7.2
    High

    CVE-2008-5689

    Last Modified: 23 Apr 2026

    tun in IP Tunnel in Solaris 10 and OpenSolaris snv_01 through snv_76 allows local users to cause a denial of service (panic) and possibly execute arbitrary code via a crafted SIOCGTUNPARAM IOCTL request, which triggers a NULL pointer dereference.

    Published: 19 Dec 2008
    2.1
    Low

    CVE-2008-5690

    Last Modified: 23 Apr 2026

    The Kerberos credential renewal feature in Sun Solaris 8, 9, and 10, and OpenSolaris build snv_01 through snv_104, allows local users to cause a denial of service (authentication failure) via unspecified vectors related to incorrect cache file permissions, and lack of credential storage by the store_cred function in pam_krb5.

    Published: 19 Dec 2008