Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Emule X Ray HIGH 9.3
CVE-2008-2503

Buffer overflow in Uploadlist in eMule X-Ray before 1.4 has unknown impact and remote attack vectors.

No fix yet
Fix from $1,950 2008-05-29
Web Slider HIGH 7.5
CVE-2008-2298

Admin.php in Web Slider 0.6 allows remote attackers to bypass authentication and gain privileges by setting the admin cookie to 1.

No fix yet
Fix from $1,950 2008-05-18
Phpmyclub MEDIUM 5.8
CVE-2008-0501

Directory traversal vulnerability in phpMyClub 0.0.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the p…

No fix yet
Fix from $1,600 2008-01-30
Creammonkey MEDIUM 6.4
CVE-2007-6640

Creammonkey 0.9 through 1.1 and GreaseKit 1.2 through 1.3 does not properly prevent access to dangerous functions, which allows remote attackers to r…

Mitigation only
Fix from $1,600 2008-01-04
Jgbbs MEDIUM 6.8
CVE-2007-1572

SQL injection vulnerability in search.asp in JGBBS 3.0 Beta 1 and earlier allows remote attackers to execute arbitrary SQL commands via the title par…

Fix: after 3.0
Fix from $1,600 2007-03-21
Wordperfect Document Importer Exporter MEDIUM 6.8
CVE-2007-1466

Integer overflow in the WP6GeneralTextPacket::_readContents function in WordPerfect Document importer/exporter (libwpd) before 0.8.9 allows user-assi…

Fix: after 0.8.8
Fix from $1,600 2007-03-16
Webmplayer MEDIUM 6.8
CVE-2007-1135

Multiple SQL injection vulnerabilities in WebMplayer before 0.6.1-Alpha allow remote attackers to execute arbitrary SQL commands via the (1) strid pa…

Fix: after 0.6.1-alpha
Fix from $1,600 2007-03-02
Putmail MEDIUM 5.0
CVE-2007-1137

putmail.py in Putmail before 1.4 does not detect when a user attempts to use TLS with a server that does not support it, which causes putmail.py to s…

Mitigation only
Fix from $1,600 2007-03-02
Newsdaemon HIGH 7.5
CVE-2001-0234

NewsDaemon before 0.21b allows remote attackers to execute arbitrary SQL queries and gain privileges via a malformed user_username parameter.

Patch available
Fix from $1,950 2001-05-03