- EPSS 38.88%
- Veröffentlicht 05.05.2008 17:20:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The init_request_info function in sapi/cgi/cgi_main.c in PHP before 5.2.6 does not properly consider operator precedence when calculating the length of PATH_TRANSLATED, which might allow remote attackers to execute arbitrary code via a crafted URI.
CVE-2008-1375
- EPSS 0.07%
- Veröffentlicht 02.05.2008 16:05:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Race condition in the directory notification subsystem (dnotify) in Linux kernel 2.6.x before 2.6.24.6, and 2.6.25 before 2.6.25.1, allows local users to cause a denial of service (OOPS) and possibly gain privileges via unspecified vectors.
CVE-2008-1567
- EPSS 0.04%
- Veröffentlicht 31.03.2008 22:44:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
phpMyAdmin before 2.11.5.1 stores the MySQL (1) username and (2) password, and the (3) Blowfish secret key, in cleartext in a Session file under /tmp, which allows local users to obtain sensitive information.
CVE-2008-0062
- EPSS 16.26%
- Veröffentlicht 19.03.2008 10:44:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
KDC in MIT Kerberos 5 (krb5kdc) does not set a global variable for some krb4 message types, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted messages that trigger a NULL pointer derefe...
CVE-2008-0063
- EPSS 4.9%
- Veröffentlicht 19.03.2008 10:44:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The Kerberos 4 support in KDC in MIT Kerberos 5 (krb5kdc) does not properly clear the unused portion of a buffer when generating an error message, which might allow remote attackers to obtain sensitive information, aka "Uninitialized stack values."
- EPSS 59.85%
- Veröffentlicht 04.03.2008 23:44:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
Directory traversal vulnerability in WEBrick in Ruby 1.8 before 1.8.5-p115 and 1.8.6-p114, and 1.9 through 1.9.0-1, when running on systems that support backslash (\) path separators or case-insensitive file names, allows remote attackers to access a...
CVE-2008-0595
- EPSS 0.06%
- Veröffentlicht 29.02.2008 19:44:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
dbus-daemon in D-Bus before 1.0.3, and 1.1.x before 1.1.20, recognizes send_interface attributes in allow directives in the security policy only for fully qualified method calls, which allows local users to bypass intended access restrictions via a m...
CVE-2007-6427
- EPSS 4.24%
- Veröffentlicht 18.01.2008 23:00:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The XInput extension in X.Org Xserver before 1.4.1 allows context-dependent attackers to execute arbitrary code via requests related to byte swapping and heap corruption within multiple functions, a different vulnerability than CVE-2007-4990.
CVE-2008-0005
- EPSS 2.65%
- Veröffentlicht 12.01.2008 00:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
mod_proxy_ftp in Apache 2.2.x before 2.2.7-dev, 2.0.x before 2.0.62-dev, and 1.3.x before 1.3.40-dev does not define a charset, which allows remote attackers to conduct cross-site scripting (XSS) attacks using UTF-7 encoding.
CVE-2007-6601
- EPSS 0.71%
- Veröffentlicht 09.01.2008 21:46:00
- Zuletzt bearbeitet 09.04.2025 00:30:58
The DBLink module in PostgreSQL 8.2 before 8.2.6, 8.1 before 8.1.11, 8.0 before 8.0.15, 7.4 before 7.4.19, and 7.3 before 7.3.21, when local trust or ident authentication is used, allows remote attackers to gain privileges via unspecified vectors. N...