go gnome software vulnerabilities
vulnerabilities.aspcode.net
Searching go gnome software vulnerabilities
The Disney Go Express Search allows remote atta
information
|
connecting
|
attackers
|
Express
|
system
|
user's
|
server
|
modify
|
Disney
|
allows
|
Search
|
access
|
remote
|
users
|
HTTP
|
The Disney Go Express Search allows remote attackers to access and modify search information for users by connecting to an HTTP server on the user's system.
Buffer overflow in GNOME libraries 1.0.8 allows
libraries
|
overflow
|
Buffer
|
GNOME
|
Buffer overflow in GNOME libraries 1.0.8 allows local user to gain root access via a long --espeaker argument in programs such as nethack.
ORBit and gnome-session in Red Hat Linux 6.1 al
gnome-session
|
attackers
|
program
|
remote
|
allows
|
crash
|
ORBit
|
Linux
|
Red
|
Hat
|
ORBit and gnome-session in Red Hat Linux 6.1 allows remote attackers to crash a program.
Format string vulnerability in Eye Of Gnome (EO
vulnerability
|
Format
|
string
|
Gnome
|
Eye
|
Format string vulnerability in Eye Of Gnome (EOG) allows attackers to execute arbitrary code via format string specifiers in a command line argument for the file to display.
Buffer overflow in gbnserver for Gnome Batalla
gbnserver
|
overflow
|
Batalla
|
Buffer
|
Naval
|
Gnome
|
Buffer overflow in gbnserver for Gnome Batalla Naval 1.0.4 allows remote attackers to execute arbitrary code via a long connection string.
Multiple extfs backend scripts for GNOME virtua
Multiple
|
scripts
|
virtual
|
backend
|
system
|
extfs
|
GNOME
|
file
|
Multiple extfs backend scripts for GNOME virtual file system (VFS) before 1.0.1 may allow remote attackers to perform certain unauthorized actions via a gnome-vfs URI.
gnome-pty-helper in GNOME libzvt2 and libvte4 a
gnome-pty-helper
|
environment
|
hostname
|
variable
|
modified
|
DISPLAY
|
libzvt2
|
libvte4
|
allows
|
users
|
local
|
GNOME
|
logon
|
spoof
|
via
|
gnome-pty-helper in GNOME libzvt2 and libvte4 allows local users to spoof the logon hostname via a modified DISPLAY environment variable. NOTE: the severity of this issue has been disputed.
Mozilla Thunderbird 1.0 and Firefox 1.0.6 allow
Thunderbird
|
Firefox
|
Mozilla
|
Mozilla Thunderbird 1.0 and Firefox 1.0.6 allows remote attackers to obfuscate URIs via a long URI, which causes the address bar to go blank and could facilitate phishing attacks.
Multiple format string vulnerabilities in the G
vulnerabilities
|
Multiple
|
library
|
Access
|
GNOME2
|
string
|
format
|
GNOME
|
Data
|
Multiple format string vulnerabilities in the GNOME Data Access library for GNOME2 (libgda2) 1.2.1 and earlier allow attackers to execute arbitrary code.
Buffer overflow in GO-Global for Windows 3.1.0.
GO-Global
|
overflow
|
Windows
|
Buffer
|
Buffer overflow in GO-Global for Windows 3.1.0.3270 and earlier allows remote attackers to execute arbitrary code via a data block that is longer than the specified data block size.
The proxy server feature in go-pear.php in PHP
go-pearphp
|
feature
|
server
|
proxy
|
PEAR
|
PHP
|
The proxy server feature in go-pear.php in PHP PEAR 0.2.2, as used in Apache2Triad, allows remote attackers to execute arbitrary PHP code by redirecting go-pear.php to a malicious proxy server that provides a modified version of Tar.php with a malicious extractModify function.
Cross-site scripting vulnerability in index.php
vulnerability
|
Cross-site
|
attackers
|
arbitrary
|
parameter
|
scripting
|
indexphp
|
M-Phorum
|
script
|
allows
|
remote
|
inject
|
HTML
|
web
|
via
|
Cross-site scripting vulnerability in index.php in M-Phorum 0.2 allows remote attackers to inject arbitrary web script or HTML via the go parameter.
gnome screensaver before 2.14, when running on
screensaver
|
before
|
gnome
|
gnome screensaver before 2.14, when running on an X server with AllowDeactivateGrabs and AllowClosedownGrabs enabled, allows attackers with physical access to cause the screensaver to crash and access the session via the Ctl+Alt+Keypad-Multiply keyboard sequence, which removes the grab from gnome.
** DISPUTED ** Multiple PHP remote file inclus
vulnerabilities
|
inclusion
|
ISPConfig
|
DISPUTED
|
Multiple
|
remote
|
file
|
PHP
|
** DISPUTED ** Multiple PHP remote file inclusion vulnerabilities in ISPConfig 2.2.3 allow remote attackers to execute arbitrary PHP code via a URL in the (1) go_info[isp][classes_root] parameter in (a) server.inc.php, and the (2) go_info[server][classes_root] parameter in (b) app.inc.php, (c) login.php, and (d) trylogin.php. NOTE: this issue has been disputed by the vendor, who states that the original researcher "reviewed the installation tarball that is not identical with the resulting system after installtion. The file, where the $go_info array is declared ... is created by the installer."
Multiple SQL injection vulnerabilities in links
vulnerabilities
|
injection
|
linksphp
|
Multiple
|
ssLinks
|
SQL
|
Multiple SQL injection vulnerabilities in links.php in ssLinks 1.22 allow remote attackers to execute arbitrary SQL commands via the (1) go parameter and (2) id parameter in a rate action.
SQL injection vulnerability in mods.php in GNUT
vulnerability
|
parameter
|
attackers
|
injection
|
arbitrary
|
commands
|
execute
|
modsphp
|
"Forum"
|
earlier
|
GNUTurk
|
allows
|
remote
|
t_id
|
SQL
|
via
|
SQL injection vulnerability in mods.php in GNUTurk 2G and earlier allows remote attackers to execute arbitrary SQL commands via the t_id parameter when the go parameter is "Forum."
Multiple SQL injection vulnerabilities in index
vulnerabilities
|
injection
|
attackers
|
arbitrary
|
commands
|
Multiple
|
indexphp
|
execute
|
remote
|
dev4u
|
allow
|
via
|
SQL
|
CMS
|
Multiple SQL injection vulnerabilities in index.php in dev4u CMS allow remote attackers to execute arbitrary SQL commands via the (1) seite_id, (2) gruppe_id.php, and (3) go_target parameters.
Multiple cross-site scripting (XSS) vulnerabili
cross-site
|
scripting
|
Multiple
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in dev4u CMS allow remote attackers to inject arbitrary web script or HTML via the (1) user_name, (2) passwort, and (3) go_target parameters.
Multiple cross-site scripting (XSS) vulnerabili
cross-site
|
scripting
|
Multiple
|
Multiple cross-site scripting (XSS) vulnerabilities in index.php in AbleDesign MyCalendar allow remote attackers to inject arbitrary web script or HTML via (1) the go parameter, (2) the keyword parameter in the search menu (go=search), or (3) the username or (4) the password in a go=Login action.
Directory traversal vulnerability in go/_files
vulnerability
|
SOTEeSKLEP
|
attackers
|
arbitrary
|
Directory
|
traversal
|
go/_files
|
remote
|
before
|
allows
|
files
|
read
|
via
|
Directory traversal vulnerability in go/_files in SOTEeSKLEP before 4.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.
Software vulnerabilities results 1 to 20 of 49
Page:
1
2
3
►