CVE Feed

    Dashboard / CVE

    10
    Critical

    CVE-2008-4801

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the Data Protection for SQL CAD service (aka dsmcat.exe) in the Client Acceptor Daemon (CAD) and the scheduler in the Backup-Archive client 5.1.0.0 through 5.1.8.1, 5.2.0.0 through 5.2.5.2, 5.3.0.0 through 5.3.6.1, 5.4.0.0 through 5.4.2.2, and 5.5.0.0 through 5.5.0.91 in IBM Tivoli Storage Manager (TSM); and the Backup-Archive client in TSM Express; allows remote attackers to execute arbitrary code by sending a large amount of crafted data to a TCP port.

    Published: 30 Oct 2008
    5
    Medium

    CVE-2008-4800

    Last Modified: 23 Apr 2026

    The DebugDiag ActiveX control in CrashHangExt.dll, possibly 1.0, in Microsoft Debug Diagnostic Tool allows remote attackers to cause a denial of service (NULL pointer dereference and Internet Explorer 6.0 crash) via a large negative integer argument to the GetEntryPointForThread method. NOTE: this issue might only be exploitable in limited environments or non-default browser settings.

    Published: 30 Oct 2008
    9.3
    Critical

    CVE-2008-4794

    Last Modified: 23 Apr 2026

    Opera before 9.62 allows remote attackers to execute arbitrary commands via the History Search results page, a different vulnerability than CVE-2008-4696.

    Published: 30 Oct 2008
    4.3
    Medium

    CVE-2008-4795

    Last Modified: 23 Apr 2026

    The links panel in Opera before 9.62 processes Javascript within the context of the "outermost page" of a frame, which allows remote attackers to inject arbitrary web script or HTML via cross-site scripting (XSS) attacks.

    Published: 30 Oct 2008
    5
    Medium

    CVE-2008-4797

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in Arihiro Kurata Kantan WEB Server 1.8 and earlier allows remote attackers to read arbitrary files via unknown vectors.

    Published: 30 Oct 2008
    9.3
    Critical

    CVE-2008-4798

    Last Modified: 23 Apr 2026

    The loadModule function in lib/WebGUI/Asset.pm in WebGUI before 7.5.30 (stable) allows remote attackers to execute arbitrary code by uploading a Perl module and accessing it via a crafted URL.

    Published: 30 Oct 2008
    10
    Critical

    CVE-2008-4796

    Last Modified: 23 Apr 2026

    The _httpsrequest function (Snoopy/Snoopy.class.php) in Snoopy 1.2.3 and earlier, as used in (1) ampache, (2) libphp-snoopy, (3) mahara, (4) mediamate, (5) opendb, (6) pixelpost, and possibly other products, allows remote attackers to execute arbitrary commands via shell metacharacters in https URLs.

    Published: 30 Oct 2008
    9.3
    Critical

    CVE-2007-6021

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in Adobe PageMaker 7.0.1 and 7.0.2 allows user-assisted remote attackers to execute arbitrary code via a .PMD file with a crafted font structure.

    Published: 30 Oct 2008
    9.3
    Critical

    CVE-2007-5394

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in AldFs32.dll in Adobe PageMaker 7.0.1 and 7.0.2 allows user-assisted remote attackers to execute arbitrary code via a .PMD file with a crafted font structure, a different vulnerability than CVE-2007-5169 and CVE-2007-6432.

    Published: 30 Oct 2008
    6.9
    Medium

    CVE-2010-1643

    Last Modified: 11 Apr 2025

    mm/shmem.c in the Linux kernel before 2.6.28-rc3, when strict overcommit is enabled, does not properly handle the export of shmemfs objects by knfsd, which allows attackers to cause a denial of service (NULL pointer dereference and knfsd crash) or possibly have unspecified other impact via unknown vectors.

    Published: 30 Oct 2008
    1.2
    Low

    CVE-2008-7256

    Last Modified: 11 Apr 2025

    mm/shmem.c in the Linux kernel before 2.6.28-rc8, when strict overcommit is enabled and CONFIG_SECURITY is disabled, does not properly handle the export of shmemfs objects by knfsd, which allows attackers to cause a denial of service (NULL pointer dereference and knfsd crash) or possibly have unspecified other impact via unknown vectors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-1643.

    Published: 30 Oct 2008
    4
    Medium

    CVE-2008-4307

    Last Modified: 23 Apr 2026

    Race condition in the do_setlk function in fs/nfs/file.c in the Linux kernel before 2.6.26 allows local users to cause a denial of service (crash) via vectors resulting in an interrupted RPC call that leads to a stray FL_POSIX lock, related to improper handling of a race between fcntl and close in the EINTR case.

    Published: 30 Oct 2008
    4.3
    Medium

    CVE-2008-4907

    Last Modified: 23 Apr 2026

    The message parsing feature in Dovecot 1.1.4 and 1.1.5, when using the FETCH ENVELOPE command in the IMAP client, allows remote attackers to cause a denial of service (persistent crash) via an email with a malformed From address, which triggers an assertion error, aka "invalid message address parsing bug."

    Published: 30 Oct 2008
    6.9
    Medium

    CVE-2008-4956

    Last Modified: 23 Apr 2026

    fwb_install in fwbuilder 2.1.19 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/ssh-agent.##### temporary file.

    Published: 30 Oct 2008
    5.8
    Medium

    CVE-2008-4787

    Last Modified: 23 Apr 2026

    Visual truncation vulnerability in Microsoft Internet Explorer 6 allows remote attackers to spoof the address bar via a URL with a hostname containing many   (Non-Blocking Space character) sequences, which are rendered as whitespace, aka MSRC ticket MSRC7899, a related issue to CVE-2003-1025.

    Published: 29 Oct 2008
    6
    Medium

    CVE-2008-4790

    Last Modified: 23 Apr 2026

    The core upload module in Drupal 5.x before 5.11 allows remote authenticated users to bypass intended access restrictions and read "files attached to content" via unknown vectors.

    Published: 29 Oct 2008
    6
    Medium

    CVE-2008-4791

    Last Modified: 23 Apr 2026

    The user module in Drupal 5.x before 5.11 and 6.x before 6.5 might allow remote authenticated users to bypass intended login access rules and successfully login via unknown vectors.

    Published: 29 Oct 2008
    6
    Medium

    CVE-2008-4792

    Last Modified: 23 Apr 2026

    The core BlogAPI module in Drupal 5.x before 5.11 and 6.x before 6.5 does not properly validate unspecified content fields of an internal Drupal form, which allows remote authenticated users to bypass intended access restrictions via modified field values.

    Published: 29 Oct 2008
    7.5
    High

    CVE-2008-4793

    Last Modified: 23 Apr 2026

    The node module API in Drupal 5.x before 5.11 allows remote attackers to bypass node validation and have unspecified other impact via unknown vectors related to contributed modules.

    Published: 29 Oct 2008
    5
    Medium

    CVE-2008-4788

    Last Modified: 23 Apr 2026

    Microsoft Internet Explorer 6 omits high-bit URL-encoded characters when displaying the address bar, which allows remote attackers to spoof the address bar via a URL with a domain name that differs from an important domain name only in these characters, as demonstrated by using exam%A9ple.com to spoof example.com, aka MSRC ticket MSRC7900.

    Published: 29 Oct 2008
    6
    Medium

    CVE-2008-4789

    Last Modified: 23 Apr 2026

    The validation functionality in the core upload module in Drupal 6.x before 6.5 allows remote authenticated users to bypass intended access restrictions and "attach files to content," related to a "logic error."

    Published: 29 Oct 2008
    7.5
    High

    CVE-2008-4778

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the gallery module in Koobi CMS 4.3.0 allows remote attackers to execute arbitrary SQL commands via the galid parameter in a showimages action.

    Published: 29 Oct 2008
    10
    Critical

    CVE-2008-4779

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in TUGzip 3.5.0.0 allows remote attackers to denial of service (crash) or execute arbitrary code via a long filename in a .zip file.

    Published: 29 Oct 2008
    7.5
    High

    CVE-2008-4783

    Last Modified: 23 Apr 2026

    tlAds 1.0 allows remote attackers to bypass authentication and gain administrative access by setting the tlAds_login cookie to "admin."

    Published: 29 Oct 2008
    7.5
    High

    CVE-2008-4785

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in newuser.php in the alternate_profiles plugin, possibly 0.2, for e107 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 29 Oct 2008
    7.5
    High

    CVE-2008-4786

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in easyshop.php in the EasyShop plugin for e107 allows remote attackers to execute arbitrary SQL commands via the category_id parameter.

    Published: 29 Oct 2008
    7.5
    High

    CVE-2008-4781

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in update.php in MyKtools 2.4 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the langage parameter.

    Published: 29 Oct 2008
    7.5
    High

    CVE-2008-4784

    Last Modified: 23 Apr 2026

    aflog 1.01 allows remote attackers to bypass authentication and gain administrative access by setting the aflog_auth_a cookie to "A" or "O" in (1) edit_delete.php, (2) edit_cat.php, (3) edit_lock.php, and (4) edit_form.php.

    Published: 29 Oct 2008
    7.5
    High

    CVE-2008-4777

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in the Showroom Joomlearn LMS (com_lms) component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the cat parameter in a showTests task.

    Published: 29 Oct 2008
    7.5
    High

    CVE-2008-4782

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in public/code/cp_polls_results.php in All In One Control Panel (AIOCP) 1.4 allows remote attackers to execute arbitrary SQL commands via the poll_id parameter.

    Published: 29 Oct 2008
    6.8
    Medium

    CVE-2008-4780

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in admin/centre.php in MyForum 1.3, when register_globals is enabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the padmin parameter.

    Published: 29 Oct 2008
    9.3
    Critical

    CVE-2008-2238

    Last Modified: 23 Apr 2026

    Multiple integer overflows in OpenOffice.org (OOo) 2.x before 2.4.2 allow remote attackers to execute arbitrary code via crafted EMR records in an EMF file associated with a StarOffice/StarSuite document, which trigger a heap-based buffer overflow.

    Published: 29 Oct 2008
    9.3
    Critical

    CVE-2008-2237

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in OpenOffice.org (OOo) 2.x before 2.4.2 allows remote attackers to execute arbitrary code via a crafted WMF file associated with a StarOffice/StarSuite document.

    Published: 29 Oct 2008
    9.3
    Critical

    CVE-2008-4306

    Last Modified: 23 Apr 2026

    Buffer overflow in enscript before 1.6.4 has unknown impact and attack vectors, possibly related to the font escape sequence.

    Published: 29 Oct 2008
    10
    Critical

    CVE-2008-5134

    Last Modified: 23 Apr 2026

    Buffer overflow in the lbs_process_bss function in drivers/net/wireless/libertas/scan.c in the libertas subsystem in the Linux kernel before 2.6.27.5 allows remote attackers to have an unknown impact via an "invalid beacon/probe response."

    Published: 29 Oct 2008
    4.6
    Medium

    CVE-2009-1338

    Last Modified: 23 Apr 2026

    The kill_something_info function in kernel/signal.c in the Linux kernel before 2.6.28 does not consider PID namespaces when processing signals directed to PID -1, which allows local users to bypass the intended namespace isolation, and send arbitrary signals to all processes in all namespaces, via a kill command.

    Published: 29 Oct 2008
    7.2
    High

    CVE-2008-4539

    Last Modified: 23 Apr 2026

    Heap-based buffer overflow in the Cirrus VGA implementation in (1) KVM before kvm-82 and (2) QEMU on Debian GNU/Linux and Ubuntu might allow local users to gain privileges by using the VNC console for a connection, aka the LGD-54XX "bitblt" heap overflow. NOTE: this issue exists because of an incorrect fix for CVE-2007-1320.

    Published: 29 Oct 2008
    4.3
    Medium

    CVE-2008-4774

    Last Modified: 23 Apr 2026

    Cross-site scripting (XSS) vulnerability in main/main.php in QuestCMS allows remote attackers to inject arbitrary web script or HTML via the cx parameter.

    Published: 28 Oct 2008
    4.3
    Medium

    CVE-2008-4776

    Last Modified: 23 Apr 2026

    libgadu before 1.8.2 allows remote servers to cause a denial of service (crash) via a contact description with a large length, which triggers a buffer over-read.

    Published: 28 Oct 2008
    5
    Medium

    CVE-2008-4773

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in main/main.php in QuestCMS allows remote attackers to read arbitrary local files via a .. (dot dot) in the theme parameter.

    Published: 28 Oct 2008
    7.5
    High

    CVE-2008-4772

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in main/main.php in QuestCMS allows remote attackers to execute arbitrary SQL commands via the obj parameter.

    Published: 28 Oct 2008
    9.3
    Critical

    CVE-2008-4771

    Last Modified: 23 Apr 2026

    Stack-based buffer overflow in VATDecoder.VatCtrl.1 ActiveX control in (1) 4xem VatCtrl Class (VATDecoder.dll 1.0.0.27 and 1.0.0.51), (2) D-Link MPEG4 SHM Audio Control (VAPGDecoder.dll 1.7.0.5), (3) Vivotek RTSP MPEG4 SP Control (RtspVapgDecoderNew.dll 2.0.0.39), and possibly other products, allows remote attackers to execute arbitrary code via a long Url property. NOTE: some of these details are obtained from third party information.

    Published: 28 Oct 2008
    7.5
    High

    CVE-2008-4768

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in TLM CMS 3.1 allows remote attackers to execute arbitrary SQL commands via the nom parameter to a-b-membres.php. NOTE: the goodies.php vector is already covered by CVE-2007-4808. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 28 Oct 2008
    9.3
    Critical

    CVE-2008-4769

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in the get_category_template function in wp-includes/theme.php in WordPress 2.3.3 and earlier, and 2.5, allows remote attackers to include and possibly execute arbitrary PHP files via the cat parameter in index.php. NOTE: some of these details are obtained from third party information.

    Published: 28 Oct 2008
    9
    Critical

    CVE-2008-4767

    Last Modified: 23 Apr 2026

    Unrestricted file upload vulnerability in the DownloadsPlus module in PHP-Nuke allows remote attackers to execute arbitrary code by uploading a file with (1) .htm, (2) .html, or (3) .txt extensions, then accessing it via a direct request to the file. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information. NOTE: it is unclear how allowing the upload of .html or .txt files supports arbitrary code execution; this might be legitimate functionality.

    Published: 28 Oct 2008
    4.3
    Medium

    CVE-2008-4763

    Last Modified: 23 Apr 2026

    Multiple cross-site scripting (XSS) vulnerabilities in sample.php in WiKID wClient-PHP 3.0-2 and earlier allow remote attackers to inject arbitrary web script or HTML via the PHP_SELF variable.

    Published: 28 Oct 2008
    5
    Medium

    CVE-2008-4764

    Last Modified: 23 Apr 2026

    Directory traversal vulnerability in the eXtplorer module (com_extplorer) 2.0.0 RC2 and earlier in Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the dir parameter in a show_error action.

    Published: 28 Oct 2008
    7.5
    High

    CVE-2008-4766

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in member.php in Oxygen Bulletin Board 1.1.3 allows remote attackers to execute arbitrary SQL commands via the member parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 28 Oct 2008
    7.5
    High

    CVE-2008-4765

    Last Modified: 23 Apr 2026

    SQL injection vulnerability in pollBooth.php in osCommerce Poll Booth Add-On 2.0 allows remote attackers to execute arbitrary SQL commands via the pollID parameter in a results operation. NOTE: this issue was disclosed by an unreliable researcher, so it might be incorrect.

    Published: 28 Oct 2008
    2.6
    Low

    CVE-2008-5519

    Last Modified: 23 Apr 2026

    The JK Connector (aka mod_jk) 1.2.0 through 1.2.26 in Apache Tomcat allows remote attackers to obtain sensitive information via an arbitrary request from an HTTP client, in opportunistic circumstances involving (1) a request from a different client that included a Content-Length header but no POST data or (2) a rapid series of requests, related to noncompliance with the AJP protocol's requirements for requests containing Content-Length headers.

    Published: 28 Oct 2008