send review software vulnerabilities
vulnerabilities.aspcode.net
Searching send review software vulnerabilities
WebTV email client allows remote attackers to f
attackers
|
knowledge
|
without
|
remote
|
user's
|
client
|
allows
|
email
|
WebTV
|
force
|
HTML
|
send
|
via
|
WebTV email client allows remote attackers to force the client to send email without the user's knowledge via HTML.
FileMaker Pro 5 Web Companion allows remote att
Companion
|
attackers
|
anonymous
|
FileMaker
|
forged
|
remote
|
allows
|
email
|
send
|
Pro
|
Web
|
FileMaker Pro 5 Web Companion allows remote attackers to send anonymous or forged email.
FormMail.pl in FormMail 1.6 and earlier allows
FormMailpl
|
anonymous
|
attacker
|
FormMail
|
earlier
|
allows
|
remote
|
email
|
send
|
FormMail.pl in FormMail 1.6 and earlier allows a remote attacker to send anonymous email (spam) by modifying the recipient and message parameters.
The sendmail.jsp sample page in Oracle 9i Appli
Application
|
sendmailjsp
|
Oracle
|
sample
|
Server
|
page
|
The sendmail.jsp sample page in Oracle 9i Application Server (9iAS) allows remote attackers to send arbitrary emails.
Cross-site request forgery (CSRF) vulnerability
Cross-site
|
forgery
|
request
|
Cross-site request forgery (CSRF) vulnerability in compose.php in SquirrelMail before 1.2.3 allows remote attackers to send email as other users via an IMG URL with modified send_to and subject parameters.
Buffer overflow in the Oracle Applications Web
Applications
|
overflow
|
Report
|
Review
|
Oracle
|
Buffer
|
Web
|
Buffer overflow in the Oracle Applications Web Report Review (FNDWRR) CGI program (FNDWRR.exe) of Oracle E-Business Suite 11.0 and 11.5.1 through 11.5.8 may allow remote attackers to execute arbitrary code via a long URL.
The format_send_to_gui function in formats.c fo
format_send_to_gui
|
formatsc
|
function
|
before
|
irssi
|
The format_send_to_gui function in formats.c for irssi before 0.8.9 allows remote IRC users to cause a denial of service (crash).
The communications protocol for the Report Revi
communications
|
protocol
|
Review
|
Report
|
Agent
|
The communications protocol for the Report Review Agent (RRA), aka FND File Server (FNDFS) program, in Oracle E-Business Suite 10.7, 11.0, and 11.5.1 to 11.5.8 allows remote attackers to bypass authentication and obtain sensitive information from the Oracle Applications Concurrent Manager by spoofing requests to the TNS Listener.
Directory traversal vulnerability in PJreview_N
PJreview_Neocgi
|
vulnerability
|
arbitrary
|
attackers
|
traversal
|
Directory
|
remote
|
allows
|
review
|
files
|
read
|
via
|
Neo
|
CGI
|
Directory traversal vulnerability in PJreview_Neo.cgi in PJ CGI Neo review allows remote attackers to read arbitrary files via a .. (dot dot) in the p parameter.
The preview_review function in the Reviews modu
preview_review
|
information
|
sensitive
|
attackers
|
generates
|
parameter
|
function
|
PHP-Nuke
|
Reviews
|
Windows
|
invalid
|
message
|
systems
|
running
|
obtain
|
remote
|
allows
|
module
|
error
|
which
|
date
|
via
|
The preview_review function in the Reviews module in PHP-Nuke 6.0 to 7.3, when running on Windows systems, allows remote attackers to obtain sensitive information via an invalid date parameter, which generates an error message.
ReviewPost PHP Pro before 2.84 allows remote at
ReviewPost
|
before
|
Pro
|
PHP
|
ReviewPost PHP Pro before 2.84 allows remote attackers to upload and execute arbitrary PHP files by posting a review file with multiple extensions, which bypasses the intended restrictions.
Cross-site scripting (XSS) vulnerability in ind
Cross-site
|
scripting
|
Cross-site scripting (XSS) vulnerability in index.php in Comdev eCommerce 3.0 and 3.1 allows remote attackers to inject arbitrary web script or HTML via Javascript in the onMouseOver event of an "A" tag in a review message.
The send-private-message functionality (send-pr
send-private-message
|
functionality
|
The send-private-message functionality (send-private-message.asp) in PD9 Software MegaBBS 2.1 allows remote attackers to read private messages of other users via a modified replyid parameter.
Kadu 0.4.3 allows remote attackers to cause a d
Kadu
|
Kadu 0.4.3 allows remote attackers to cause a denial of service (application crash) via a large number of image send requests.
PHP remote file inclusion vulnerability in movi
vulnerability
|
movie_clsphp
|
parameter
|
attackers
|
full_path
|
arbitrary
|
inclusion
|
Built2Go
|
execute
|
earlier
|
remote
|
Review
|
allows
|
Movie
|
code
|
file
|
PHP
|
via
|
URL
|
PHP remote file inclusion vulnerability in movie_cls.php in Built2Go PHP Movie Review 2B and earlier allows remote attackers to execute arbitrary PHP code via a URL in the full_path parameter.
Multiple cross-site scripting (XSS) vulnerabili
cross-site
|
scripting
|
Multiple
|
Multiple cross-site scripting (XSS) vulnerabilities in 5 Star Review allow remote attackers to inject arbitrary web script or HTML via the (1) sort parameter in index2.php, (2) item_id parameter in report.php, (3) search_term parameter (aka the "search box") in search_reviews.php, (4) the profile field in usercp/profile_edit1.php, and the (5) review field in review_form.php.
Cross-site scripting (XSS) vulnerability in Ama
Cross-site
|
scripting
|
Cross-site scripting (XSS) vulnerability in Amazing Flash AFCommerce Shopping Cart allows remote attackers to inject arbitrary web script or HTML via the "new review" text box.
** DISPUTED ** Microsoft Windows NT 4.0, Windo
Microsoft
|
DISPUTED
|
Windows
|
** DISPUTED ** Microsoft Windows NT 4.0, Windows 2000, Windows XP, and Windows Small Business Server 2003 allow remote attackers to cause a denial of service (IP stack hang) via a continuous stream of packets on TCP port 135 that have incorrect TCP header checksums and random numbers in certain TCP header fields, as demonstrated by the Achilles Windows Attack Tool. NOTE: the researcher reports that the Microsoft Security Response Center has stated "Our investigation which has included code review, review of the TCPDump, and attempts on reproing the issue on multiple fresh installs of various Windows Operating Systems have all resulted in non confirmation."
Cross-site scripting (XSS) vulnerability in sea
Cross-site
|
scripting
|
Cross-site scripting (XSS) vulnerability in search in High 5 Review Site allows remote attackers to inject arbitrary web script or HTML via the q parameter (aka the search box).
Directory traversal vulnerability in Motorola T
vulnerability
|
traversal
|
Directory
|
Timbuktu
|
Motorola
|
before
|
Pro
|
Directory traversal vulnerability in Motorola Timbuktu Pro before 8.6.5 for Windows allows remote attackers to create or delete arbitrary files via a .. (dot dot) in a Send request, probably related to the (1) Send and (2) Exchange services.
Software vulnerabilities results 1 to 20 of 177
Page:
1
2
3
4
5
...
9
►