upon software vulnerabilities
vulnerabilities.aspcode.net
Searching upon software vulnerabilities
MySQL 3.23.55 and earlier creates world-writeab
MySQL
|
MySQL 3.23.55 and earlier creates world-writeable files and allows mysql users to gain root privileges by using the "SELECT * INFO OUTFILE" operator to overwrite a configuration file and cause mysql to run as root upon restart, as demonstrated by modifying my.cnf.
Direct static code injection vulnerability in s
vulnerability
|
setcookiephp
|
injection
|
Direct
|
PBLang
|
static
|
code
|
Direct static code injection vulnerability in setcookie.php in PBLang 4.65, and possibly earlier versions, allows remote attackers to execute arbitrary PHP code via the username (u parameter), which is directly injected into a file that is later executed upon login.
Michael Scholz and Sebastian Stein Contineo 2.0
Sebastian
|
attribute
|
attackers
|
displays
|
password
|
Contineo
|
address
|
Michael
|
warning
|
account
|
Scholz
|
e-mail
|
remote
|
reload
|
allow
|
might
|
which
|
Stein
|
lacks
|
admin
|
view
|
hash
|
upon
|
page
|
Michael Scholz and Sebastian Stein Contineo 2.0, when the admin account lacks an e-mail address attribute, displays the password hash in a warning upon page reload, which might allow remote attackers to view the hash.
phpCOIN 1.2.3 and earlier stores messages based
phpCOIN
|
phpCOIN 1.2.3 and earlier stores messages based upon e-mail addresses, which allows remote authenticated users to read messages for other users by adding the sender's e-mail address as an "additional contact".
** DISPUTED ** The Task scheduler (at.exe) on M
scheduler
|
DISPUTED
|
Task
|
** DISPUTED ** The Task scheduler (at.exe) on Microsoft Windows XP spawns each scheduled process with SYSTEM permissions, which allows local users to gain privileges. NOTE: this issue has been disputed by third parties, who state that the Task scheduler is limited to the Administrators group by default upon installation.
Unspecified vulnerability related to a "design
vulnerability
|
Unspecified
|
Graphics
|
Internet
|
Service
|
related
|
"design
|
flaw"
|
SAP
|
Unspecified vulnerability related to a "design flaw" in SAP Internet Graphics Service (IGS) 6.40 and earlier and 7.00 and earlier allows remote attackers to cause a denial of service (service shutdown) via certain HTTP requests. NOTE: This information is based upon a vague initial disclosure. Details will be updated after the grace period has ended.
IBM Lotus Domino Web Access (DWA) 7.0.1 does no
Domino
|
Access
|
Lotus
|
IBM
|
Web
|
IBM Lotus Domino Web Access (DWA) 7.0.1 does not expire a client's Lightweight Third-Party Authentication token (LtpaToken) upon logout, which allows remote attackers to obtain a user's privileges by intercepting the LtpaToken cookie.
IBM Client Security Password Manager stores and
distributes
|
credentials
|
passwords
|
attackers
|
Password
|
username
|
Security
|
changing
|
Manager
|
website
|
remote
|
allows
|
Client
|
obtain
|
stores
|
based
|
saved
|
which
|
title
|
HTML
|
page
|
upon
|
IBM
|
IBM Client Security Password Manager stores and distributes saved passwords based upon the title of a website, which allows remote attackers to obtain username and password credentials by changing the title of an HTML page.
Cross-site scripting (XSS) vulnerability in @Ma
Cross-site
|
scripting
|
Cross-site scripting (XSS) vulnerability in @Mail WebMail allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: This information is based upon a vague initial disclosure. Details will be updated after the grace period has ended.
The Perforce client does not restrict the set o
overwrites
|
arbitrary
|
overwrite
|
attackers
|
receiving
|
modifying
|
operating
|
malicious
|
restrict
|
Perforce
|
request
|
remote
|
config
|
allows
|
server
|
client
|
files
|
which
|
file
|
does
|
upon
|
set
|
not
|
The Perforce client does not restrict the set of files that it overwrites upon receiving a request from the server, which allows remote attackers to overwrite arbitrary files by modifying the client config file on the server, or by operating a malicious server.
DiskManagementTool in the DiskManagement.framew
DiskManagementframework
|
DiskManagementTool
|
DiskManagementTool in the DiskManagement.framework 92.29 on Mac OS X 10.4.8 does not properly validate Bill of Materials (BOM) files, which allows attackers to gain privileges via a BOM file under /Library/Receipts/, which triggers arbitrary file permission changes upon execution of a diskutil permission repair operation.
Kaspersky Labs Antivirus Engine 6.0 for Windows
Antivirus
|
Kaspersky
|
Windows
|
before
|
Engine
|
Linux
|
55-10
|
Labs
|
Kaspersky Labs Antivirus Engine 6.0 for Windows and 5.5-10 for Linux before Tuesday, January 02, 2007 enter an infinite loop upon encountering an invalid NumberOfRvaAndSizes value in the Optional Windows Header of a portable executable (PE) file, which allows remote attackers to cause a denial of service (CPU consumption) by scanning a crafted PE file.
Unspecified vulnerability in Publisher 2007 in
vulnerability
|
Unspecified
|
Publisher
|
Unspecified vulnerability in Publisher 2007 in Microsoft Office 2007 allows remote attackers to execute arbitrary code via unspecified vectors, related to a "file format vulnerability." NOTE: this information is based upon a vague pre-advisory with no actionable information. However, the advisory is from a reliable source.
** DISPUTED ** Directory traversal vulnerabili
vulnerability
|
osCommerce
|
arbitrary
|
attackers
|
traversal
|
Directory
|
DISPUTED
|
indexphp
|
execute
|
include
|
remote
|
allows
|
local
|
files
|
Point
|
Sale
|
via
|
PHP
|
** DISPUTED ** Directory traversal vulnerability in index.php in PHP Point Of Sale for osCommerce 1.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the cfg_language parameter. NOTE: this issue has been disputed by CVE, since the cfg_language variable is configured upon proper product installation.
Heap-based buffer overflow in the kernel in Net
Heap-based
|
operating
|
versions
|
possibly
|
overflow
|
unknown
|
systems
|
derived
|
OpenBSD
|
certain
|
FreeBSD
|
buffer
|
allows
|
kernel
|
impact
|
NetBSD
|
users
|
other
|
local
|
have
|
BSD
|
Heap-based buffer overflow in the kernel in NetBSD 3.0, certain versions of FreeBSD and OpenBSD, and possibly other BSD derived operating systems allows local users to have an unknown impact. NOTE: this information is based upon a vague pre-advisory with no actionable information. Details will be updated after Thursday, March 29, 2007.
Microsoft Windows Vista establishes a Teredo ad
documentation
|
establishes
|
communicate
|
connection
|
increases
|
attackers
|
Microsoft
|
Internet
|
inactive
|
contrary
|
without
|
address
|
surface
|
Windows
|
attack
|
allows
|
remote
|
action
|
Teredo
|
Vista
|
which
|
upon
|
user
|
via
|
Microsoft Windows Vista establishes a Teredo address without user action upon connection to the Internet, contrary to documentation that Teredo is inactive without user action, which increases the attack surface and allows remote attackers to communicate via Teredo.
Multiple unspecified vulnerabilities in the G/P
vulnerabilities
|
unspecified
|
Multiple
|
G/PGP
|
Multiple unspecified vulnerabilities in the G/PGP (GPG) Plugin 2.1 for Squirrelmail allow remote attackers to execute arbitrary commands via unspecified vectors. NOTE: this information is based upon a vague pre-advisory from a reliable researcher.
Multiple buffer overflows in Google Picasa have
unspecified
|
overflows
|
Multiple
|
vectors
|
impact
|
attack
|
Google
|
buffer
|
Picasa
|
have
|
Multiple buffer overflows in Google Picasa have unspecified attack vectors and impact. NOTE: this information is based upon a vague pre-advisory.
Multiple cross-application scripting (XAS) vuln
cross-application
|
scripting
|
Multiple
|
Multiple cross-application scripting (XAS) vulnerabilities in Google Picasa have unspecified attack vectors and impact. NOTE: this information is based upon a vague pre-advisory.
Google Picasa allows remote attackers to read i
unspecified
|
attackers
|
involving
|
vectors
|
Google
|
stored
|
remote
|
allows
|
Picasa
|
image
|
files
|
read
|
via
|
Google Picasa allows remote attackers to read image files stored by Picasa via unspecified vectors involving a picasa:// URI. NOTE: this information is based upon a vague pre-advisory.
Software vulnerabilities results 1 to 20 of 47
Page:
1
2
3
►