unquoted software vulnerabilities
vulnerabilities.aspcode.net
Searching unquoted software vulnerabilities
Unquoted Windows search path vulnerability in M
vulnerability
|
Musicmatch
|
Unquoted
|
Jukebox
|
Windows
|
search
|
path
|
Unquoted Windows search path vulnerability in Musicmatch Jukebox 10.00.2047 and earlier allows local users to gain privileges via a malicious C:\program.exe file, which is run by MMFWLaunch.exe when it attempts to execute launch.exe.
Unquoted Windows search path vulnerability in B
vulnerability
|
BitDefender
|
malicious
|
starting
|
Unquoted
|
creating
|
prevent
|
Windows
|
allows
|
search
|
users
|
local
|
path
|
Unquoted Windows search path vulnerability in BitDefender 8 allows local users to prevent BitDefender from starting by creating a malicious C:\program.exe, possibly due to the lack of quoting of the full pathname when executing a process.
Unquoted Windows search path vulnerability in M
vulnerability
|
AntiSpyware
|
malicious
|
Microsoft
|
Unquoted
|
execute
|
Windows
|
search
|
users
|
local
|
might
|
allow
|
path
|
code
|
via
|
Unquoted Windows search path vulnerability in Microsoft AntiSpyware might allow local users to execute code via a malicious c:\program.exe file, which is run by AntiSpywareMain.exe when it attempts to execute gsasDtServ.exe. NOTE: it is not clear whether this overlaps CVE-2005-2940.
Unquoted Windows search path vulnerability in R
vulnerability
|
RealNetworks
|
RealPlayer
|
Unquoted
|
Windows
|
search
|
path
|
Unquoted Windows search path vulnerability in RealNetworks RealPlayer 10.5 6.0.12.1040 through 6.0.12.1348, RealPlayer 10, RealOne Player v2, RealOne Player v1, and RealPlayer 8 before Wednesday, March 22, 2006 might allow local users to gain privileges via a malicious C:\program.exe file.
Unquoted Windows search path vulnerability in i
iTunesHelperexe
|
vulnerability
|
Unquoted
|
Windows
|
search
|
iTunes
|
path
|
Unquoted Windows search path vulnerability in iTunesHelper.exe in iTunes 4.7.1.30 and iTunes 5 for Windows might allow local users to gain privileges via a malicious C:\program.exe file.
Unquoted Windows search path vulnerability in V
vulnerability
|
Workstation
|
Unquoted
|
Windows
|
VMWare
|
search
|
path
|
Unquoted Windows search path vulnerability in VMWare Workstation 5.0.0 build-13124 might allow local users to gain privileges via a malicious "program.exe" file in the C: folder.
Unquoted Windows search path vulnerability in M
vulnerability
|
Antispyware
|
Microsoft
|
Unquoted
|
Windows
|
search
|
path
|
Unquoted Windows search path vulnerability in Microsoft Antispyware 1.0.509 (Beta 1) might allow local users to gain privileges via a malicious "program.exe" file in the C: folder, involving the programs (1) GIANTAntiSpywareMain.exe, (2) gcASNotice.exe, (3) gcasServ.exe, (4) gcasSWUpdater.exe, or (5) GIANTAntiSpywareUpdater.exe. NOTE: it is not clear whether this overlaps CVE-2005-2935.
Unquoted Windows search path vulnerability in K
vulnerability
|
"programexe"
|
Anti-Virus
|
privileges
|
malicious
|
Kaspersky
|
Unquoted
|
Windows
|
search
|
users
|
allow
|
might
|
local
|
path
|
gain
|
file
|
via
|
Unquoted Windows search path vulnerability in Kaspersky Anti-Virus 5.0 might allow local users to gain privileges via a malicious "program.exe" file in the C: folder.
Unquoted Windows search path vulnerability in W
vulnerability
|
"programexe"
|
privileges
|
Wehntrust
|
malicious
|
Unquoted
|
Windows
|
search
|
users
|
allow
|
might
|
local
|
path
|
gain
|
file
|
via
|
Unquoted Windows search path vulnerability in Wehntrust might allow local users to gain privileges via a malicious "program.exe" file in the C: folder, which is run when Wehntrust creates the autostart key.
Unquoted Windows search path vulnerability in C
vulnerability
|
"programexe"
|
SecureClient
|
privileges
|
malicious
|
Unquoted
|
Windows
|
search
|
local
|
users
|
allow
|
Point
|
Check
|
might
|
VPN-1
|
path
|
gain
|
file
|
via
|
Unquoted Windows search path vulnerability in Check Point VPN-1 SecureClient might allow local users to gain privileges via a malicious "program.exe" file in the C: folder, which is run when SecureClient attempts to launch the Sr_GUI.exe program.
SQL injection vulnerability in index.php in Php
Phpclanwebsite
|
vulnerability
|
injection
|
indexphp
|
SQL
|
SQL injection vulnerability in index.php in Phpclanwebsite (aka PCW) 1.23.1 allows remote attackers to execute arbitrary SQL commands via the (1) par parameter in the post function on the forum page and possibly the (2) poll_id parameter on the poll page. NOTE: the poll_id vector can also allow resultant cross-site scripting (XSS) from an unquoted error message for invalid SQL syntax.
Unquoted Windows search path vulnerability in (
vulnerability
|
Unquoted
|
Windows
|
search
|
path
|
Unquoted Windows search path vulnerability in (1) snsmcon.exe, (2) the autostartup mechanism, and (3) an unspecified installation component in StarForce Safe'n'Sec Personal + Anti-Spyware 2.0 and earlier, and possibly other StarForce Safe'n'Sec products, might allow local users to gain privileges via a malicious "program" file in the C: folder.
Unquoted Windows search path vulnerability in m
Client/Server/Connector
|
vulnerability
|
including
|
multiple
|
products
|
Unquoted
|
Windows
|
search
|
Tectia
|
path
|
SSH
|
Unquoted Windows search path vulnerability in multiple SSH Tectia products, including Client/Server/Connector 5.0.0 and 5.0.1 and Client/Server before 4.4.5, and Manager 2.12 and earlier, when running on Windows, might allow local users to gain privileges via a malicious program file under "Program Files" or its subdirectories.
Multiple unquoted Windows search path vulnerabi
vulnerabilities
|
unquoted
|
Multiple
|
Friends
|
Windows
|
Apache
|
search
|
XAMPP
|
path
|
Multiple unquoted Windows search path vulnerabilities in Apache Friends XAMPP 1.5.2 might allow local users to gain privileges via a malicious program file in %SYSTEMDRIVE%, which is run when XAMPP attempts to execute (1) FileZillaServer.exe, (2) mysqld-nt.exe, (3) Perl.exe, or (4) xamppcontrol.exe with an unquoted "Program Files" pathname.
Unquoted Windows search path vulnerability in E
vulnerability
|
Workstation
|
Unquoted
|
Windows
|
VMware
|
before
|
search
|
path
|
EMC
|
Unquoted Windows search path vulnerability in EMC VMware Workstation before 5.5.5 Build 56455 and 6.x before 6.0.1 Build 55017, Player before 1.0.5 Build 56455 and Player 2 before 2.0.1 Build 55017, ACE before 1.0.3 Build 54075, and Server before 1.0.4 Build 56528 allows local users to gain privileges unspecified vectors, possibly involving a malicious "program.exe" file in the C: folder.
Software vulnerabilities results 1 to 16 of 16
Page:
1