<?xml version='1.0' encoding='UTF-8'?>
<nvd xmlns="http://nvd.nist.gov/feeds/cve/1.2" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" nvd_xml_version="1.2" pub_date="2009-11-23" xsi:schemaLocation="http://nvd.nist.gov/feeds/cve/1.2 http://nvd.nist.gov/schema/nvdcve.xsd">
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0061" seq="2008-0061" severity="Medium" type="CVE" published="2008-01-03" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">MaraDNS 1.0 before 1.0.41, 1.2 before 1.2.12.08, and 1.3 before 1.3.07.04 allows remote attackers to cause a denial of service via a crafted DNS packet that prevents an authoritative name (CNAME) record from resolving, aka "improper rotation of resource records."</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="http://www.maradns.org/changelog.html">http://www.maradns.org/changelog.html</ref>
            <ref source="CONFIRM" url="http://maradns.blogspot.com/2007/08/maradns-update-all-versions.html">http://maradns.blogspot.com/2007/08/maradns-update-all-versions.html</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27124">27124</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0026">ADV-2008-0026</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2008/dsa-1445">DSA-1445</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200801-16.xml">GLSA-200801-16</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28650">28650</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28334">28334</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28329">28329</ref>
            <ref source="CONFIRM" url="http://bugs.gentoo.org/show_bug.cgi?id=204351">http://bugs.gentoo.org/show_bug.cgi?id=204351</ref>
        </refs>
        <vuln_soft>
            <prod vendor="maradns" name="maradns">
                <vers num="1.0.00" />
                <vers num="1.0.01" />
                <vers num="1.0.02" />
                <vers num="1.0.03" />
                <vers num="1.0.04" />
                <vers num="1.0.05" />
                <vers num="1.0.06" />
                <vers num="1.0.07" />
                <vers num="1.0.08" />
                <vers num="1.0.09" />
                <vers num="1.0.10" />
                <vers num="1.0.11" />
                <vers num="1.0.12" />
                <vers num="1.0.13" />
                <vers num="1.0.14" />
                <vers num="1.0.15" />
                <vers num="1.0.16" />
                <vers num="1.0.17" />
                <vers num="1.0.18" />
                <vers num="1.0.19" />
                <vers num="1.0.20" />
                <vers num="1.0.21" />
                <vers num="1.0.22" />
                <vers num="1.0.23" />
                <vers num="1.0.24" />
                <vers num="1.0.25" />
                <vers num="1.0.26" />
                <vers num="1.0.27" />
                <vers num="1.0.28" />
                <vers num="1.0.29" />
                <vers num="1.0.30" />
                <vers num="1.0.31" />
                <vers num="1.0.32" />
                <vers num="1.0.33" />
                <vers num="1.0.34" />
                <vers num="1.0.35" />
                <vers num="1.0.36" />
                <vers num="1.0.37" />
                <vers num="1.0.38" />
                <vers num="1.0.39" />
                <vers num="1.2.12.01" />
                <vers num="1.2.12.02" />
                <vers num="1.2.12.03" />
                <vers num="1.2.12.04" />
                <vers num="1.2.12.05" />
                <vers num="1.2.12.06" />
                <vers num="1.2.12.07" />
                <vers num="1.3.01" />
                <vers num="1.3.02" />
                <vers num="1.3.03" />
                <vers num="1.3.04" />
                <vers num="1.3.05" />
                <vers num="1.3.06" />
                <vers num="1.3.07" />
                <vers num="1.3.07.01" />
                <vers num="1.3.07.02" />
                <vers num="1.3.07.03" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0089" seq="2008-0089" severity="High" type="CVE" published="2008-01-03" CVSS_version="2.0" CVSS_score="7.5" modified="2009-09-11">
        <desc>
            <descript source="cve">SQL injection vulnerability in uprofile.php in ClipShare allows remote attackers to execute arbitrary SQL commands via the UID parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27108">27108</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4830">4830</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28313">28313</ref>
            <ref source="OSVDB" url="http://osvdb.org/40077">40077</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39364">clipshare-uprofile-sql-injection(39364)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="clip-share" name="clipshare">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0090" seq="2008-0090" severity="Medium" type="CVE" published="2008-01-03" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">A certain ActiveX control in npUpload.dll in DivX Player 6.6.0 allows remote attackers to cause a denial of service (Internet Explorer 7 crash) via a long argument to the SetPassword method.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27106">27106</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4829">4829</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39386">divxwebplayer-npUpload-dos(39386)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="divx" name="divx_player">
                <vers num="6.6.0" />
            </prod>
            <prod vendor="microsoft" name="ie">
                <vers num="7" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:N)" CVSS_base_score="6.4" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="4.9" name="CVE-2008-0091" seq="2008-0091" severity="Medium" type="CVE" published="2008-01-03" CVSS_version="2.0" CVSS_score="6.4" modified="2008-09-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in download2.php in AGENCY4NET WEBFTP 1 allows remote attackers to read and delete arbitrary files via a .. (dot dot) in the file parameter.</descript>
        </desc>
        <loss_types>
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27092">27092</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4828">4828</ref>
            <ref source="VIM" url="http://www.attrition.org/pipermail/vim/2008-January/001865.html">20080104 true: AGENCY4NET WEBFTP directory traversal; deletion possible</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39343">agency4net-download2-directory-traversal(39343)</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0051">ADV-2008-0051</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28309">28309</ref>
        </refs>
        <vuln_soft>
            <prod vendor="agency4net" name="webftp">
                <vers num="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0092" seq="2008-0092" severity="Medium" type="CVE" published="2008-01-03" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in index.php in the search module in Appalachian State University phpWebSite 1.4.0 allows remote attackers to inject arbitrary web script or HTML via the search parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27090">27090</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485704/100/0/threaded">20080101 Cross-Site Scripting (XSS) in phpWebSite 1.4.0 search</ref>
            <ref source="CONFIRM" url="http://phpwebsite.appstate.edu/blog/2143">http://phpwebsite.appstate.edu/blog/2143</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39391">phpwebsite-search-xss(39391)</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3511">3511</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28303">28303</ref>
        </refs>
        <vuln_soft>
            <prod vendor="phpwebsite" name="phpwebsite">
                <vers num="1.4.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0093" seq="2008-0093" severity="Medium" type="CVE" published="2008-01-07" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in newticket.php in eTicket 1.5.5.2, and 1.5.6 RC2 and RC3, allow remote attackers to inject arbitrary web script or HTML via the (1) Name and (2) Subject parameters.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="MISC" url="http://www.digitrustgroup.com/advisories/web-application-security-eticket.html">http://www.digitrustgroup.com/advisories/web-application-security-eticket.html</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28331" adv="1">28331</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39400">eticket-name-subject-xss(39400)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27130">27130</ref>
        </refs>
        <vuln_soft>
            <prod vendor="eticket" name="eticket">
                <vers num="1.5.5.2" />
                <vers num="1.5.6_rc2" />
                <vers num="1.5.6_rc3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:N)" CVSS_base_score="6.4" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="4.9" name="CVE-2008-0094" seq="2008-0094" severity="Medium" type="CVE" published="2008-01-07" CVSS_version="2.0" CVSS_score="6.4" modified="2008-10-11">
        <desc>
            <descript source="cve">Multiple directory traversal vulnerabilities in MODx Content Management System 0.9.6.1 allow remote attackers to (1) include and execute arbitrary local files via a .. (dot dot) in the as_language parameter to assets/snippets/AjaxSearch/AjaxSearch.php, reached through index-ajax.php; and (2) read arbitrary local files via a .. (dot dot) in the file parameter to assets/js/htcmime.php.</descript>
        </desc>
        <loss_types>
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SECUNIA" patch="1" url="http://secunia.com/advisories/28220" adv="1">28220</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39352">modx-ajaxsearch-file-include(39352)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27097">27097</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27096">27096</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485707/100/0/threaded">20080102 MODx CMS Source code disclosure, local file inclusion</ref>
            <ref source="CONFIRM" url="http://modxcms.com/forums/index.php/topic,21290.0.html">http://modxcms.com/forums/index.php/topic,21290.0.html</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3522">3522</ref>
        </refs>
        <vuln_soft>
            <prod vendor="modxcms" name="modxcms">
                <vers num="0.9.6.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0095" seq="2008-0095" severity="Medium" type="CVE" published="2008-01-07" CVSS_version="2.0" CVSS_score="5.0" modified="2009-09-11">
        <desc>
            <descript source="cve">The SIP channel driver in Asterisk Open Source 1.4.x before 1.4.17, Business Edition before C.1.0-beta8, AsteriskNOW before beta7, Appliance Developer Kit before Asterisk 1.4 revision 95946, and Appliance s800i 1.0.x before 1.0.3.4 allows remote attackers to cause a denial of service (daemon crash) via a BYE message with an Also (Also transfer) header, which triggers a NULL pointer dereference.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27110">27110</ref>
            <ref source="SECUNIA" patch="1" url="http://secunia.com/advisories/28312" adv="1">28312</ref>
            <ref source="CONFIRM" patch="1" url="http://downloads.digium.com/pub/security/AST-2008-001.html">http://downloads.digium.com/pub/security/AST-2008-001.html</ref>
            <ref source="MISC" patch="1" url="http://bugs.digium.com/view.php?id=11637">http://bugs.digium.com/view.php?id=11637</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00167.html">FEDORA-2008-0199</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00166.html">FEDORA-2008-0198</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39361">asterisk-bye-also-dos(39361)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019152">1019152</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485727/100/0/threaded">20080102 AST-2008-001: Crash from transfer using BYE with Also header</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0019" adv="1">ADV-2008-0019</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28299">28299</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3520">3520</ref>
        </refs>
        <vuln_soft>
            <prod vendor="asterisk" name="asterisk_appliance_developer_kit">
                <vers num="1.4_revision_95945" prev="1" />
            </prod>
            <prod vendor="asterisk" name="asterisk_business_edition">
                <vers num="c.1.0beta7" prev="1" />
            </prod>
            <prod vendor="asterisk" name="asterisknow">
                <vers num="beta_6" prev="1" />
            </prod>
            <prod vendor="asterisk" name="open_source">
                <vers num="1.4.16" prev="1" />
            </prod>
            <prod vendor="asterisk" name="s800i">
                <vers num="1.0.3.3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0096" seq="2008-0096" severity="High" type="CVE" published="2008-01-07" CVSS_version="2.0" CVSS_score="7.5" modified="2009-09-15">
        <desc>
            <descript source="cve">Multiple buffer overflows in Georgia SoftWorks SSH2 Server (GSW_SSHD) 7.01.0003 and earlier allow remote attackers to execute arbitrary code via a (1) a long username, which triggers an overflow in the log function; or (2) a long password.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27103">27103</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485725/100/0/threaded">20080102 Multiple vulnerabilities in Georgia SoftWorks SSH2 Server 7.01.0003</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28307">28307</ref>
            <ref source="MISC" url="http://aluigi.altervista.org/adv/gswsshit-adv.txt">http://aluigi.altervista.org/adv/gswsshit-adv.txt</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3517">3517</ref>
        </refs>
        <vuln_soft>
            <prod vendor="georgia_softworks" name="ssh2_server">
                <vers num="7.01.0003" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0097" seq="2008-0097" severity="High" type="CVE" published="2008-01-07" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Format string vulnerability in the log function in Georgia SoftWorks SSH2 Server (GSW_SSHD) 7.01.0003 and earlier allows remote attackers to execute arbitrary code via format string specifiers in the username field, as demonstrated by a certain LoginPassword message.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485725/100/0/threaded">20080102 Multiple vulnerabilities in Georgia SoftWorks SSH2 Server 7.01.0003</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28307" adv="1">28307</ref>
            <ref source="MISC" url="http://aluigi.altervista.org/adv/gswsshit-adv.txt">http://aluigi.altervista.org/adv/gswsshit-adv.txt</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3517">3517</ref>
        </refs>
        <vuln_soft>
            <prod vendor="georgia_softworks" name="ssh2_server">
                <vers num="7.01.0003" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0098" seq="2008-0098" severity="High" type="CVE" published="2008-01-07" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Buffer overflow in RealPlayer 11 build 6.0.14.748 allows remote attackers to execute arbitrary code via unspecified vectors.  NOTE: As of 20080103, this disclosure has no actionable information. However, because the VulnDisco Pack author is a reliable researcher, the issue is being assigned a CVE identifier for tracking purposes.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" url="http://www.us-cert.gov/current/index.html#public_exploit_code_for_realplayer">http://www.us-cert.gov/current/index.html#public_exploit_code_for_realplayer</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27091">27091</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0016" adv="1">ADV-2008-0016</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28276" adv="1">28276</ref>
            <ref source="MLIST" url="http://lists.immunitysec.com/pipermail/dailydave/2008-January/004811.html">[Dailydave] 20080101 0day RealPlayer exploit demo</ref>
            <ref source="MISC" url="http://gleg.net/realplayer11.html">http://gleg.net/realplayer11.html</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019153">1019153</ref>
        </refs>
        <vuln_soft>
            <prod vendor="real" name="realplayer">
                <vers num="11_build_6.0.14.748" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0099" seq="2008-0099" severity="Medium" type="CVE" published="2008-01-07" CVSS_version="2.0" CVSS_score="6.8" modified="2009-09-16">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in MyPHP Forum 3.0 and earlier allow remote attackers to execute arbitrary SQL commands via the searchtext parameter to search.php, and unspecified other vectors.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27118">27118</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4831">4831</ref>
        </refs>
        <vuln_soft>
            <prod vendor="myphp_forum" name="myphp_forum">
                <vers num="3.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0100" seq="2008-0100" severity="High" type="CVE" published="2008-01-07" CVSS_version="2.0" CVSS_score="7.5" modified="2008-10-11">
        <desc>
            <descript source="cve">Stack-based buffer overflow in the Scene::errorf function in Scene.cpp in White_Dune 0.29 beta791 and earlier allows remote attackers to execute arbitrary code via a long string in a .WRL file.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27102">27102</ref>
            <ref source="SECUNIA" patch="1" url="http://secunia.com/advisories/28287" adv="1">28287</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39385">whitedune-sceneerrorf-bo(39385)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485724/100/0/threaded">20080102 Buffer-overflow and format string in White_Dune 0.29beta791</ref>
            <ref source="CONFIRM" url="http://vrml.cip.ica.uni-stuttgart.de/dune/news.html">http://vrml.cip.ica.uni-stuttgart.de/dune/news.html</ref>
            <ref source="MISC" url="http://aluigi.altervista.org/adv/whitedunboffs-adv.txt">http://aluigi.altervista.org/adv/whitedunboffs-adv.txt</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3516">3516</ref>
        </refs>
        <vuln_soft>
            <prod vendor="white_dune" name="white_dune">
                <vers num="0.29beta791" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0101" seq="2008-0101" severity="High" type="CVE" published="2008-01-07" CVSS_version="2.0" CVSS_score="7.5" modified="2008-10-11">
        <desc>
            <descript source="cve">Format string vulnerability in the swDebugf function in DuneApp.cpp in White_Dune 0.29 beta791 and earlier allows remote attackers to execute arbitrary code via format string specifiers in a .WRL file.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27102">27102</ref>
            <ref source="SECUNIA" patch="1" url="http://secunia.com/advisories/28287">28287</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39388">whitedune-swdegugf-format-string(39388)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485724/100/0/threaded">20080102 Buffer-overflow and format string in White_Dune 0.29beta791</ref>
            <ref source="CONFIRM" url="http://vrml.cip.ica.uni-stuttgart.de/dune/news.html">http://vrml.cip.ica.uni-stuttgart.de/dune/news.html</ref>
            <ref source="MISC" url="http://aluigi.altervista.org/adv/whitedunboffs-adv.txt">http://aluigi.altervista.org/adv/whitedunboffs-adv.txt</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3516">3516</ref>
        </refs>
        <vuln_soft>
            <prod vendor="white_dune" name="white_dune">
                <vers num="0.29beta791" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0129" seq="2008-0129" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in starnet/addons/slideshow_full.php in Site@School 2.3.10 and earlier allows remote attackers to execute arbitrary SQL commands via the album_name parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4832">4832</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39417">siteatschool-slideshowfull-sql-injection(39417)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27120">27120</ref>
        </refs>
        <vuln_soft>
            <prod vendor="siteatschool" name="siteatschool">
                <vers num="2.3.10" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0130" seq="2008-0130" severity="High" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="7.5" modified="2008-11-15">
        <desc>
            <descript source="cve">SQL injection vulnerability in login_form.asp in Instant Softwares Dating Site allows remote attackers to execute arbitrary SQL commands via the Username parameter, a different vulnerability than CVE-2007-6671.  NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39326">dating-site-login-sql-injection(39326)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28283" adv="1">28283</ref>
            <ref source="OSVDB" url="http://osvdb.org/39766">39766</ref>
        </refs>
        <vuln_soft>
            <prod vendor="instantsoftwares" name="dating_site">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0131" seq="2008-0131" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="4.3" modified="2009-09-15">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in login_form.asp in Instant Softwares Dating Site allows remote attackers to inject arbitrary web script or HTML via the msg parameter, a different product than CVE-2006-6022.  NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27121">27121</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28283" adv="1">28283</ref>
        </refs>
        <vuln_soft>
            <prod vendor="instantsoftwares" name="dating_site">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0132" seq="2008-0132" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Pragma FortressSSH 5.0 Build 4 Revision 293 and earlier handles long input to sshd.exe by creating an error-message window and waiting for the administrator to click in this window before terminating the sshd.exe process, which allows remote attackers to cause a denial of service (connection slot exhaustion) via a flood of SSH connections with long data objects, as demonstrated by (1) a long list of keys and (2) a long username.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39354">fortressssh-sshd-dos(39354)</ref>
            <ref source="MISC" url="http://aluigi.org/poc/pragmassh.zip">http://aluigi.org/poc/pragmassh.zip</ref>
            <ref source="MISC" url="http://aluigi.altervista.org/adv/pragmassh-adv.txt">http://aluigi.altervista.org/adv/pragmassh-adv.txt</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27141">27141</ref>
            <ref source="BUGTRAQ" url="http://marc.info/?l=bugtraq&amp;m=119947184730448&amp;w=2">20080104 Some DoS in some telnet servers</ref>
        </refs>
        <vuln_soft>
            <prod vendor="pragma_systems" name="fortressssh">
                <vers num="5.0_build_4_r_293" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0133" seq="2008-0133" severity="High" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in Tribisur 2.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to cat_main.php and the (2) cat parameter to forum.php in a liste action.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27149">27149</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4840">4840</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28362">28362</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39443">tribisur-catmain-forum-sql-injection(39443)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="thomas_perez" name="tribisur">
                <vers num="2.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0134" seq="2008-0134" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="4.3" modified="2009-09-11">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in Forums/setup.asp in Snitz Forums 2000 3.4.06 and earlier allows remote attackers to inject arbitrary web script or HTML via the MAIL parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27162">27162</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485836/100/200/threaded">20080107 [HSC] Snitz Forums Multiple Vulnerabilities</ref>
            <ref source="MISC" url="http://www.packetstormsecurity.org/0801-exploits/snitz-multi.txt">http://www.packetstormsecurity.org/0801-exploits/snitz-multi.txt</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28284" adv="1">28284</ref>
            <ref source="MISC" url="http://hackerscenter.com/archive/view.asp?id=28145">http://hackerscenter.com/archive/view.asp?id=28145</ref>
        </refs>
        <vuln_soft>
            <prod vendor="snitz_forums_2000" name="snitz_forums">
                <vers num="3.4.06" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0135" seq="2008-0135" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="5.0" modified="2009-09-11">
        <desc>
            <descript source="cve">Snitz Forums 2000 3.4.06 and earlier stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for forum/snitz_forums_2000.mdb.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485894/100/200/threaded">20080107 RE: [HSC] Snitz Forums Multiple Vulnerabilities</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485836/100/200/threaded">20080107 [HSC] Snitz Forums Multiple Vulnerabilities</ref>
            <ref source="MISC" url="http://www.packetstormsecurity.org/0801-exploits/snitz-multi.txt">http://www.packetstormsecurity.org/0801-exploits/snitz-multi.txt</ref>
            <ref source="MISC" url="http://hackerscenter.com/archive/view.asp?id=28145">http://hackerscenter.com/archive/view.asp?id=28145</ref>
        </refs>
        <vuln_soft>
            <prod vendor="snitz_forums_2000" name="snitz_forums">
                <vers num="3.4.06" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0136" seq="2008-0136" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="5.0" modified="2009-09-11">
        <desc>
            <descript source="cve">Snitz Forums 2000 3.4.05 allows remote attackers to obtain sensitive information via a direct request to forum/whereami.asp, which reveals the database path.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485894/100/200/threaded">20080107 RE: [HSC] Snitz Forums Multiple Vulnerabilities</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485836/100/200/threaded">20080107 [HSC] Snitz Forums Multiple Vulnerabilities</ref>
            <ref source="MISC" url="http://www.packetstormsecurity.org/0801-exploits/snitz-multi.txt">http://www.packetstormsecurity.org/0801-exploits/snitz-multi.txt</ref>
            <ref source="MISC" url="http://hackerscenter.com/archive/view.asp?id=28145">http://hackerscenter.com/archive/view.asp?id=28145</ref>
        </refs>
        <vuln_soft>
            <prod vendor="snitz_forums_2000" name="snitz_forums">
                <vers num="3.4.05" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0137" seq="2008-0137" severity="High" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">PHP remote file inclusion vulnerability in config.inc.php in SNETWORKS PHP CLASSIFIEDS 5.0 allows remote attackers to execute arbitrary PHP code via a URL in the path_escape parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4838">4838</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0053" adv="1">ADV-2008-0053</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39468">snetworks-configinc-file-include(39468)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="snetworks" name="php_classifieds">
                <vers num="5.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0138" seq="2008-0138" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">PHP remote file inclusion vulnerability in xoopsgallery/init_basic.php in the mod_gallery module for XOOPS, when register_globals is disabled, allows remote attackers to execute arbitrary PHP code via a URL in the GALLERY_BASEDIR parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39461">xoops-modgallery-zendhashkey-file-include(39461)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27155">27155</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4847">4847</ref>
        </refs>
        <vuln_soft>
            <prod vendor="xoops" name="xoopsgallery_module">
                <vers num="1.3.3_9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0139" seq="2008-0139" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Eval injection vulnerability in loudblog/inc/parse_old.php in Loudblog 0.8.0 and earlier allows remote attackers to execute arbitrary PHP code via the template parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27157">27157</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28336" adv="1">28336</ref>
            <ref source="MILW0RM" url="http://milw0rm.com/exploits/4849">4849</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39445">loudblog-template-code-execution(39445)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="loudblog" name="loudblog">
                <vers num="0.8.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:N)" CVSS_base_score="6.4" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="4.9" name="CVE-2008-0140" seq="2008-0140" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="6.4" modified="2008-10-22">
        <desc>
            <descript source="cve">Directory traversal vulnerability in error.php in Uebimiau Webmail 2.7.10 and 2.7.2 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the selected_theme parameter, a different vector than CVE-2007-3172.</descript>
        </desc>
        <loss_types>
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39460">uebimiau-webmail-error-directory-traversal(39460)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27154">27154</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4846">4846</ref>
            <ref source="VIM" url="http://www.attrition.org/pipermail/vim/2008-January/001867.html">20080107 Uebimiau Web-Mail 2.7.10/2.7.2 Remote File Disclosure Vulnerability</ref>
        </refs>
        <vuln_soft>
            <prod vendor="uebimiau" name="webmail">
                <vers num="2.7.10" />
                <vers num="2.7.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0141" seq="2008-0141" severity="High" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">actions.php in WebPortal CMS 0.6-beta generates predictable passwords containing only the time of day, which makes it easier for remote attackers to obtain access to any account via a lostpass action.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27145">27145</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4835">4835</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39486">webportal-action-weak-security(39486)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="webportal" name="webportal_cms">
                <vers num="0.6_beta" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0142" seq="2008-0142" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in WebPortal CMS 0.6-beta allow remote attackers to execute arbitrary SQL commands via the user_name parameter to actions.php, and unspecified other vectors.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4835">4835</ref>
        </refs>
        <vuln_soft>
            <prod vendor="webportal" name="webportal_cms">
                <vers num="0.6_beta" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0143" seq="2008-0143" severity="High" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">PHP remote file inclusion vulnerability in common/db.php in samPHPweb, possibly 4.2.2 and others, as provided with SAM Broadcaster, allows remote attackers to execute arbitrary PHP code via a URL in the commonpath parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39397">samPHPweb-db-file-include(39397)</ref>
            <ref source="CONFIRM" url="http://www.spacialaudio.com/news/index.html">http://www.spacialaudio.com/news/index.html</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27137">27137</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4834">4834</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28355" adv="1">28355</ref>
        </refs>
        <vuln_soft>
            <prod vendor="spacial_audio_solutions" name="sam_broadcaster">
                <vers num="" />
            </prod>
            <prod vendor="spacial_audio_solutions" name="samphpweb">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0144" seq="2008-0144" severity="High" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="7.5" modified="2009-09-15">
        <desc>
            <descript source="cve">PHP remote file inclusion vulnerability in index.php in NetRisk 1.9.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.  NOTE: this can also be leveraged for local file inclusion using directory traversal sequences.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39419">netrisk-index-file-include(39419)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27136">27136</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4833">4833</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28328">28328</ref>
            <ref source="BUGTRAQ" url="http://marc.info/?l=bugtraq&amp;m=119955114428283&amp;w=2">20080105 NetRisk 1.9.7 Remote File Inclusion Vulnerability</ref>
        </refs>
        <vuln_soft>
            <prod vendor="phprisk" name="netrisk">
                <vers num="1.9.7" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0145" seq="2008-0145" severity="High" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="7.5" modified="2009-09-16">
        <desc>
            <descript source="cve">Unspecified vulnerability in glob in PHP before 4.4.8, when open_basedir is enabled, has unknown impact and attack vectors.  NOTE: this issue reportedly exists because of a regression related to CVE-2007-4663.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39401">php-glob-openbasedir-security-bypass(39401)</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2008/0059">ADV-2008-0059</ref>
            <ref source="CONFIRM" url="http://www.php.net/releases/4_4_8.php">http://www.php.net/releases/4_4_8.php</ref>
            <ref source="CONFIRM" url="http://www.php.net/ChangeLog-4.php">http://www.php.net/ChangeLog-4.php</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28318">28318</ref>
            <ref source="CONFIRM" url="http://bugs.php.net/bug.php?id=41655">http://bugs.php.net/bug.php?id=41655</ref>
            <ref source="SLACKWARE" url="http://slackware.com/security/viewer.php?l=slackware-security&amp;y=2008&amp;m=slackware-security.335136">SSA:2008-045-03</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28936">28936</ref>
        </refs>
        <vuln_soft>
            <prod vendor="php" name="php">
                <vers num="4.4.7" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0146" seq="2008-0146" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="4.3" modified="2009-09-15">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in the error page in W3-mSQL allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the top-level URI.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27116">27116</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485736/100/0/threaded">20080103 xss in w3-msql error page</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28294" adv="1">28294</ref>
            <ref source="OSVDB" url="http://osvdb.org/51235">51235</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3521">3521</ref>
        </refs>
        <vuln_soft>
            <prod vendor="hughes_technologies" name="w3-msql">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0003" seq="2008-0003" severity="High" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="10.0" modified="2009-02-21">
        <desc>
            <descript source="cve">Stack-based buffer overflow in the PAMBasicAuthenticator::PAMCallback function in OpenPegasus CIM management server (tog-pegasus), when compiled to use PAM and without PEGASUS_USE_PAM_STANDALONE_PROC defined, might allow remote attackers to execute arbitrary code via unknown vectors, a different vulnerability than CVE-2007-5360.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27188">27188</ref>
            <ref source="REDHAT" patch="1" url="http://www.redhat.com/support/errata/RHSA-2008-0002.html">RHSA-2008:0002</ref>
            <ref source="VUPEN" patch="1" url="http://www.frsirt.com/english/advisories/2008/0063" adv="1">ADV-2008-0063</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00480.html">FEDORA-2008-0572</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00424.html">FEDORA-2008-0506</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=426578">https://bugzilla.redhat.com/show_bug.cgi?id=426578</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39527">openpegasus-pambasic-bo(39527)</ref>
            <ref source="CONFIRM" url="http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&amp;ID=4129">http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&amp;ID=4129</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27172">27172</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/490917/100/0/threaded">20080416 VMSA-2008-0007 Moderate Updated Service Console packages pcre, net-snmp, and OpenPegasus</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/1391/references" adv="1">ADV-2008-1391</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/1234/references" adv="1">ADV-2008-1234</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0638" adv="1">ADV-2008-0638</ref>
            <ref source="VIM" url="http://www.attrition.org/pipermail/vim/2008-January/001879.html">20080115 vuldb confusion between OpenPegasus issues</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019159">1019159</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29986" adv="1">29986</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29785" adv="1">29785</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29056" adv="1">29056</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28462" adv="1">28462</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28338" adv="1">28338</ref>
            <ref source="OSVDB" url="http://osvdb.org/40082">40082</ref>
            <ref source="MLIST" url="http://lists.vmware.com/pipermail/security-announce/2008/000014.html">[Security-announce] 20080415 VMSA-2008-0007 Moderate Updated Service Console packages pcre, net-snmp, and OpenPegasus</ref>
            <ref source="HP" url="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01438409">SSRT080000</ref>
        </refs>
        <vuln_soft>
            <prod vendor="openpegasus" name="management_server">
                <vers num="2.6.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0147" seq="2008-0147" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.php in SmallNuke 2.0.4 and earlier, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via (1) the user_email parameter and possibly (2) username parameter in a Members action.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27180">27180</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4863">4863</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28301" adv="1">28301</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39525">smallnuke-index-sql-injection(39525)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="smallnuke" name="smallnuke">
                <vers num="2.0.4" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0148" seq="2008-0148" severity="High" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">TUTOS 1.3 does not restrict access to php/admin/cmd.php, which allows remote attackers to execute arbitrary shell commands via the cmd parameter in a direct request.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28291" adv="1">28291</ref>
            <ref source="MILW0RM" url="http://milw0rm.com/exploits/4861">4861</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39531">tutos-cmd-command-execution(39531)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="tutos" name="tutos">
                <vers num="1.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0149" seq="2008-0149" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">TUTOS 1.3 allows remote attackers to read system information via a direct request to php/admin/phpinfo.php, which calls the phpinfo function.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28291" adv="1">28291</ref>
            <ref source="MILW0RM" url="http://milw0rm.com/exploits/4861">4861</ref>
        </refs>
        <vuln_soft>
            <prod vendor="tutos" name="tutos">
                <vers num="1.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0150" seq="2008-0150" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the LDAP authentication feature in Aruba Mobility Controller 2.3.6.15, 2.5.2.11, 2.5.4.25, 2.5.5.7, 3.1.1.3, and 2.4.8.11-FIPS or earlier allows remote attackers to bypass authentication mechanisms and obtain management or VPN interface access.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27144">27144</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485831/100/0/threaded">20080104 Aruba Mobility Controller User Authentication Vulnerability - Aruba Advisory ID: AID-122207</ref>
            <ref source="CONFIRM" url="http://www.arubanetworks.com/support/alerts/aid-122207.asc">http://www.arubanetworks.com/support/alerts/aid-122207.asc</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28357" adv="1">28357</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3529">3529</ref>
        </refs>
        <vuln_soft>
            <prod vendor="aruba_networks" name="aruba_mobility_controllers">
                <vers num="2.3.6.15" />
                <vers num="2.4.8.11-fips" prev="1" />
                <vers num="2.5.2.11" />
                <vers num="2.5.4.25" />
                <vers num="2.5.5.7" />
                <vers num="3.1.1.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0151" seq="2008-0151" severity="High" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="10.0" modified="2009-08-25">
        <desc>
            <descript source="cve">Heap-based buffer overflow in Foxit WAC Server 2.1.0.910, 2.0 Build 3503, and earlier allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a Telnet request with long options.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39427">wacserver-option-dos(39427)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27142">27142</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/488366/100/200/threaded">20080219 Two heap overflow in Foxit WAC Server 2.0 Build 3503</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485812/100/0/threaded">20080104 Some DoS in some telnet servers</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3525">3525</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28272" adv="1">28272</ref>
            <ref source="MISC" url="http://aluigi.altervista.org/adv/wachof-adv.txt">http://aluigi.altervista.org/adv/wachof-adv.txt</ref>
            <ref source="MISC" url="http://aluigi.altervista.org/adv/waccaz-adv.txt">http://aluigi.altervista.org/adv/waccaz-adv.txt</ref>
        </refs>
        <vuln_soft>
            <prod vendor="foxitsoftware" name="wac_server">
                <vers num="2.0" />
                <vers num="2.1.0.910" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:P)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0152" seq="2008-0152" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">SLnet.exe in SeattleLab SLNet RF Telnet Server 4.1.1.3758 and earlier allows user-assisted remote attackers to cause a denial of service (crash) via unpsecified telnet options, which triggers a NULL pointer dereference.  NOTE: the crash is not user-assisted when the server is running in debug mode.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27134">27134</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28316">28316</ref>
            <ref source="BUGTRAQ" url="http://marc.info/?l=bugtraq&amp;m=119947184730448&amp;w=2">20080104 Some DoS in some telnet servers</ref>
            <ref source="MISC" url="http://aluigi.altervista.org/adv/slnetmsg-adv.txt">http://aluigi.altervista.org/adv/slnetmsg-adv.txt</ref>
        </refs>
        <vuln_soft>
            <prod vendor="seattle_lab_software" name="slnet_rf_telnet_server">
                <vers num="4.1.1.3758" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0153" seq="2008-0153" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="5.0" modified="2008-10-11">
        <desc>
            <descript source="cve">telnetd.exe in Pragma TelnetServer 7.0.4.589 allows remote attackers to cause a denial of service (process crash and resource exhaustion) via a crafted TELOPT PRAGMA LOGON telnet option, which triggers a NULL pointer dereference.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39353">pragmatelnetserver-telnetd-dos(39353)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27143">27143</ref>
            <ref source="BUGTRAQ" url="http://marc.info/?l=bugtraq&amp;m=119947184730448&amp;w=2">20080104 Some DoS in some telnet servers</ref>
            <ref source="MISC" url="http://aluigi.altervista.org/adv/pragmatel-adv.txt">http://aluigi.altervista.org/adv/pragmatel-adv.txt</ref>
        </refs>
        <vuln_soft>
            <prod vendor="pragma_systems" name="pragma_telnetserver">
                <vers num="7.0.4.589" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0154" seq="2008-0154" severity="High" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="7.5" modified="2009-09-15">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.php in EvilBoard 0.1a (Alpha) allows remote attackers to execute arbitrary SQL commands the c parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39529">evilboard-index-sql-injection(39529)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27190">27190</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4865">4865</ref>
        </refs>
        <vuln_soft>
            <prod vendor="evilboard" name="evilboard">
                <vers num="0.1a" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0155" seq="2008-0155" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="4.3" modified="2009-09-15">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in index.php in EvilBoard 0.1a (Alpha) allows remote attackers to inject arbitrary web script or HTML via the c parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27190">27190</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4865">4865</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39526">evilboard-index-xss(39526)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="evilboard" name="evilboard">
                <vers num="0.1a" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0156" seq="2008-0156" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Absolute path traversal vulnerability in index.php in Million Dollar Script 2.0.14 allows remote attackers to read arbitrary files via encoded "/" (%2F) sequences in the link parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39492">milliondollarscript-index-dir-traversal(39492)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27174">27174</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485882/100/0/threaded">20080107 Million Dollar Script 2.0.14 Remote File Disclosure Vulnerability.</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3524">3524</ref>
        </refs>
        <vuln_soft>
            <prod vendor="million_dollar_script" name="million_dollar_script">
                <vers num="2.0.14" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0157" seq="2008-0157" severity="High" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in FlexBB 0.6.3 and earlier allows remote attackers to execute arbitrary SQL commands via the flexbb_temp_id parameter in a cookie.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39475">flexbb-flexbbtempid-sql-injection(39475)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27164">27164</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4858">4858</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28373">28373</ref>
        </refs>
        <vuln_soft>
            <prod vendor="flexbb" name="flexbb">
                <vers num="0.6.3" prev="1" />
                <vers num="1.0_10005_beta_release_1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0158" seq="2008-0158" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in index.php in Shop-Script 2.0 and possibly other versions allows remote attackers to read arbitrary files via a .. (dot dot) in the aux_page parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39449">shopscript-index-directory-traversal(39449)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27165">27165</ref>
            <ref source="MISC" url="http://packetstormsecurity.org/0801-exploits/shopscript-disclose.txt">http://packetstormsecurity.org/0801-exploits/shopscript-disclose.txt</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4855">4855</ref>
        </refs>
        <vuln_soft>
            <prod vendor="shop-script" name="shop-script">
                <vers num="2.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0159" seq="2008-0159" severity="Medium" type="CVE" published="2008-01-08" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.php in eggBlog 3.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the eggblogpassword parameter in a cookie.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39473">eggblog-eggblogmail-sql-injection(39473)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27168">27168</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4860">4860</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28371">28371</ref>
        </refs>
        <vuln_soft>
            <prod vendor="eggblog" name="eggblog">
                <vers num="3.1.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:N)" CVSS_base_score="6.4" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="4.9" name="CVE-2008-0184" seq="2008-0184" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="6.4" modified="2008-09-05">
        <desc>
            <descript source="cve">Absolute path traversal vulnerability in index.php in Sys-Hotel on Line System allows remote attackers to read arbitrary files via an encoded "/" ("%2F") in the file parameter.</descript>
        </desc>
        <loss_types>
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27184">27184</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485940/100/0/threaded">20080108 sysHotel On Line Remote File Disclosure Vulnerability.</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3528">3528</ref>
        </refs>
        <vuln_soft>
            <prod vendor="prenotazioni_on_line" name="syshotel_on_line_system">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0185" seq="2008-0185" severity="High" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="7.5" modified="2009-09-11">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.php in NetRisk 1.9.7 and possibly earlier versions allows remote attackers to execute arbitrary SQL commands via the pid parameter in a profile page (possibly profile.php).</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27161">27161</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4852">4852</ref>
            <ref source="MISC" url="http://sourceforge.net/project/shownotes.php?release_id=551208&amp;group_id=129681">http://sourceforge.net/project/shownotes.php?release_id=551208&amp;group_id=129681</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28328" adv="1">28328</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485834/100/0/threaded">20080106 netrisk 1.9.7 Multiple Remote Vulnerabilities (sql injection/xss)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="netrisk" name="netrisk">
                <vers num="1.9.7" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0186" seq="2008-0186" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2009-09-11">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in index.php in NetRisk 1.9.7 and possibly earlier allows remote attackers to inject arbitrary web script or HTML via the page parameter, possibly related to CVE-2008-0144.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27161">27161</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4852">4852</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485834/100/0/threaded">20080106 netrisk 1.9.7 Multiple Remote Vulnerabilities (sql injection/xss)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28369">28369</ref>
        </refs>
        <vuln_soft>
            <prod vendor="phprisk" name="netrisk">
                <vers num="1.9.7" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0187" seq="2008-0187" severity="High" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in songinfo.php in SAM Broadcaster samPHPweb, possibly 4.2.2 and earlier, allows remote attackers to execute arbitrary SQL commands via the songid parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39463">sambroadcaster-songinfo-sql-injection(39463)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27147">27147</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4836">4836</ref>
        </refs>
        <vuln_soft>
            <prod vendor="spacial_audio_solutions" name="samphpweb">
                <vers num="4.2.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0190" seq="2008-0190" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in templates/example_template.php in AwesomeTemplateEngine allow remote attackers to inject arbitrary web script or HTML via the (1) data[title], (2) data[message], (3) data[table][1][item], (4) data[table][1][url], or (5) data[poweredby] parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39396">awesometemplateengine-multiple-xss(39396)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27125">27125</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1694/">http://websecurity.com.ua/1694/</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument784.html">http://securityvulns.ru/Sdocument784.html</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="awesometemplateengine" name="awesometemplateengine">
                <vers num="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0191" seq="2008-0191" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">WordPress 2.2.x and 2.3.x allows remote attackers to obtain sensitive information via an invalid p parameter in an rss2 action to the default URI, which reveals the full path and the SQL database structure.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39423">wordpress-p-path-disclosure(39423)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1634/">http://websecurity.com.ua/1634/</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument663.html">http://securityvulns.ru/Sdocument663.html</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wordpress" name="wordpress">
                <vers num="2.2" />
                <vers num="2.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0192" seq="2008-0192" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in WordPress 2.0.9 and earlier allow remote attackers to inject arbitrary web script or HTML via the popuptitle parameter to (1) wp-admin/post.php or (2) wp-admin/page-new.php.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39426">wordpress-popuptitle-xss(39426)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27123">27123</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1658/">http://websecurity.com.ua/1658/</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument714.html">http://securityvulns.ru/Sdocument714.html</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wordpress" name="wordpress">
                <vers num="2.0.9" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0193" seq="2008-0193" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in wp-db-backup.php in WordPress 2.0.11 and earlier, and possibly 2.1.x through 2.3.x, allows remote attackers to inject arbitrary web script or HTML via the backup parameter in a wp-db-backup.php action to wp-admin/edit.php.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27123">27123</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1676/">http://websecurity.com.ua/1676/</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument755.html">http://securityvulns.ru/Sdocument755.html</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2008/dsa-1502">DSA-1502</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29014">29014</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wordpress" name="wordpress">
                <vers num="2.0.11" prev="1" />
                <vers num="2.1" />
                <vers num="2.1.1" />
                <vers num="2.1.2" />
                <vers num="2.1.3" />
                <vers num="2.1.3_rc1" />
                <vers num="2.1.3_rc2" />
                <vers num="2.2" />
                <vers num="2.2.0" />
                <vers num="2.2.1" />
                <vers num="2.2.2" />
                <vers num="2.2.3" />
                <vers num="2.2_revision5002" />
                <vers num="2.2_revision5003" />
                <vers num="2.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0194" seq="2008-0194" severity="High" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in wp-db-backup.php in WordPress 2.0.3 and earlier allows remote attackers to read arbitrary files, delete arbitrary files, and cause a denial of service via a .. (dot dot) in the backup parameter in a wp-db-backup.php action to wp-admin/edit.php.  NOTE: this might be the same as CVE-2006-5705.1.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1676/">http://websecurity.com.ua/1676/</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument755.html">http://securityvulns.ru/Sdocument755.html</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2008/dsa-1502">DSA-1502</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29014">29014</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wordpress" name="wordpress">
                <vers num="2.0.3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0195" seq="2008-0195" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">WordPress 2.0.11 and earlier allows remote attackers to obtain sensitive information via an empty value of the page parameter to certain PHP scripts under wp-admin/, which reveals the path in various error messages.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1687/">http://websecurity.com.ua/1687/</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1686/">http://websecurity.com.ua/1686/</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1683/">http://websecurity.com.ua/1683/</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1679/">http://websecurity.com.ua/1679/</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument773.html">http://securityvulns.ru/Sdocument773.html</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument772.html">http://securityvulns.ru/Sdocument772.html</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument768.html">http://securityvulns.ru/Sdocument768.html</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument762.html">http://securityvulns.ru/Sdocument762.html</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wordpress" name="wordpress">
                <vers num="2.0.11" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0196" seq="2008-0196" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple directory traversal vulnerabilities in WordPress 2.0.11 and earlier allow remote attackers to read arbitrary files via a .. (dot dot) in (1) the page parameter to certain PHP scripts under wp-admin/ or (2) the import parameter to wp-admin/admin.php, as demonstrated by discovering the full path via a request for the \..\..\wp-config pathname; and allow remote attackers to modify arbitrary files via a .. (dot dot) in the file parameter to wp-admin/templates.php.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1687/">http://websecurity.com.ua/1687/</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1686/">http://websecurity.com.ua/1686/</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1683/">http://websecurity.com.ua/1683/</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1679/">http://websecurity.com.ua/1679/</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument773.html">http://securityvulns.ru/Sdocument773.html</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument772.html">http://securityvulns.ru/Sdocument772.html</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument768.html">http://securityvulns.ru/Sdocument768.html</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument762.html">http://securityvulns.ru/Sdocument762.html</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wordpress" name="wordpress">
                <vers num="2.0.11" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0197" seq="2008-0197" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in wp-contact-form/options-contactform.php in the WP-ContactForm 1.5 alpha and earlier plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) wpcf_email, (2) wpcf_subject, (3) wpcf_question, (4) wpcf_answer, (5) wpcf_success_msg, (6) wpcf_error_msg, or (7) wpcf_msg parameter to wp-admin/admin.php, or (8) the SRC attribute of an IFRAME element.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1641/">http://websecurity.com.ua/1641/</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1600/">http://websecurity.com.ua/1600/</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument667.html">http://securityvulns.ru/Sdocument667.html</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument546.html">http://securityvulns.ru/Sdocument546.html</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wordpress" name="wp-contactform">
                <vers num="1.5_alpha" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0198" seq="2008-0198" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple cross-site request forgery (CSRF) vulnerabilities in wp-contact-form/options-contactform.php in the WP-ContactForm 1.5 alpha and earlier plugin for WordPress allow remote attackers to perform actions as administrators via the (1) wpcf_question, (2) wpcf_success_msg, or (3) wpcf_error_msg parameter to wp-admin/admin.php.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1641/">http://websecurity.com.ua/1641/</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1600/">http://websecurity.com.ua/1600/</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument667.html">http://securityvulns.ru/Sdocument667.html</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument546.html">http://securityvulns.ru/Sdocument546.html</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wordpress" name="wordpress">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0199" seq="2008-0199" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">PRO-Search 0.17 and earlier allows remote attackers to cause a denial of service via certain values of the show_page and time parameters to the default URI.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1259/">http://websecurity.com.ua/1259/</ref>
            <ref source="MISC" url="http://sourceforge.net/project/shownotes.php?release_id=563784&amp;group_id=149797">http://sourceforge.net/project/shownotes.php?release_id=563784&amp;group_id=149797</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument731.html">http://securityvulns.ru/Sdocument731.html</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="pro_search" name="pro_search">
                <vers num="0.16" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0200" seq="2008-0200" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2009-09-11">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in account/index.html in RotaBanner Local 3 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) user or (2) drop parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27138">27138</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1442/">http://websecurity.com.ua/1442/</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument625.html">http://securityvulns.ru/Sdocument625.html</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="medialand" name="rotabanner_local">
                <vers num="3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0201" seq="2008-0201" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2008-10-22">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in index.php in ExpressionEngine 1.2.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the URL parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39442">expressionengine-index-xss(39442)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27128">27128</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1454/">http://websecurity.com.ua/1454/</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument472.html">http://securityvulns.ru/Sdocument472.html</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="expressionengine" name="expressionengine">
                <vers num="1.2.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0202" seq="2008-0202" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2008-10-22">
        <desc>
            <descript source="cve">CRLF injection vulnerability in index.php in ExpressionEngine 1.2.1 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via the URL parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27128">27128</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1454/">http://websecurity.com.ua/1454/</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument472.html">http://securityvulns.ru/Sdocument472.html</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="expressionengine" name="expressionengine">
                <vers num="1.2.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0203" seq="2008-0203" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in cryptographp/admin.php in the Cryptographp 1.2 and earlier plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) cryptwidth, (2) cryptheight, (3) bgimg, (4) charR, (5) charG, (6) charB, (7) charclear, (8) tfont, (9) charel, (10) charelc, (11) charelv, (12) charnbmin, (13) charnbmax, (14) charspace, (15) charsizemin, (16) charsizemax, (17) charanglemax, (18) noisepxmin, (19) noisepxmax, (20) noiselinemin, (21) noiselinemax, (22) nbcirclemin, (23) nbcirclemax, or (24) brushsize parameter to wp-admin/options-general.php.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1596/">http://websecurity.com.ua/1596/</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wordpress" name="cryptographp">
                <vers num="1.2" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0204" seq="2008-0204" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in math-comment-spam-protection.php in the Math Comment Spam Protection 2.1 and earlier plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) mcsp_opt_msg_no_answer or (2) mcsp_opt_msg_wrong_answer parameter to wp-admin/options-general.php.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1576/">http://websecurity.com.ua/1576/</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wordpress" name="math_comment_spam_protection_plugin">
                <vers num="2.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0205" seq="2008-0205" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple cross-site request forgery (CSRF) vulnerabilities in math-comment-spam-protection.php in the Math Comment Spam Protection 2.1 and earlier plugin for WordPress allow remote attackers to perform actions as administrators via the (1) mcsp_opt_msg_no_answer or (2) mcsp_opt_msg_wrong_answer parameter to wp-admin/options-general.php.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1576/">http://websecurity.com.ua/1576/</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wordpress" name="math_comment_spam_protection_plugin">
                <vers num="2.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0206" seq="2008-0206" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in captcha\captcha.php in the Captcha! 2.5d and earlier plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) captcha_ttffolder, (2) captcha_numchars, (3) captcha_ttfrange, or (4) captcha_secret parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1588/">http://websecurity.com.ua/1588/</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wordpress" name="captcha">
                <vers num="2.5d" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0207" seq="2008-0207" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in PRO-Search 0.17 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) prot, (2) host, (3) path, (4) name, (5) ext, (6) size, (7) search_days, or (8) show_page parameter to the default URI.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27126">27126</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485786/100/0/threaded">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="MISC" url="http://websecurity.com.ua/1259/">http://websecurity.com.ua/1259/</ref>
            <ref source="MISC" url="http://sourceforge.net/project/shownotes.php?release_id=563784&amp;group_id=149797">http://sourceforge.net/project/shownotes.php?release_id=563784&amp;group_id=149797</ref>
            <ref source="MISC" url="http://securityvulns.ru/Sdocument731.html">http://securityvulns.ru/Sdocument731.html</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28335" adv="1">28335</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059439.html">20080103 securityvulns.com russian vulnerabilities digest</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3539">3539</ref>
        </refs>
        <vuln_soft>
            <prod vendor="pro_search" name="pro_search">
                <vers num="0.17" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0208" seq="2008-0208" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="4.3" modified="2009-09-11">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in login.asp in Snitz Forums 2000 3.4.05 and earlier allows remote attackers to inject arbitrary web script or HTML via the target parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27162">27162</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485836/100/200/threaded">20080107 [HSC] Snitz Forums Multiple Vulnerabilities</ref>
            <ref source="MISC" url="http://www.packetstormsecurity.org/0801-exploits/snitz-multi.txt">http://www.packetstormsecurity.org/0801-exploits/snitz-multi.txt</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28284">28284</ref>
            <ref source="MISC" url="http://hackerscenter.com/archive/view.asp?id=28145">http://hackerscenter.com/archive/view.asp?id=28145</ref>
        </refs>
        <vuln_soft>
            <prod vendor="snitz_forums_2000" name="snitz_forums">
                <vers num="3.4.05" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:N)" CVSS_base_score="5.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="4.9" name="CVE-2008-0209" seq="2008-0209" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="5.8" modified="2009-09-11">
        <desc>
            <descript source="cve">Open redirect vulnerability in Forums/login.asp in Snitz Forums 2000 3.4.06 and earlier allows remote attackers to redirect users to arbitrary web sites via a URL in the target parameter.</descript>
        </desc>
        <loss_types>
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485836/100/200/threaded">20080107 [HSC] Snitz Forums Multiple Vulnerabilities</ref>
            <ref source="MISC" url="http://www.packetstormsecurity.org/0801-exploits/snitz-multi.txt">http://www.packetstormsecurity.org/0801-exploits/snitz-multi.txt</ref>
            <ref source="MISC" url="http://hackerscenter.com/archive/view.asp?id=28145">http://hackerscenter.com/archive/view.asp?id=28145</ref>
        </refs>
        <vuln_soft>
            <prod vendor="snitz_forums_2000" name="snitz_forums">
                <vers num="3.4.06" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:N)" CVSS_base_score="6.4" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="4.9" name="CVE-2008-0210" seq="2008-0210" severity="Medium" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="6.4" modified="2008-09-05">
        <desc>
            <descript source="cve">Uebimiau Webmail 2.7.10 and 2.7.2 does not protect authentication state variables from being set through HTTP requests, which allows remote attackers to bypass authentication via a sess[auth]=1 parameter settting.  NOTE: this can be leveraged to conduct directory traversal attacks without authentication by using CVE-2008-0140.</descript>
        </desc>
        <loss_types>
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27154">27154</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4846">4846</ref>
        </refs>
        <vuln_soft>
            <prod vendor="uebimiau" name="webmail">
                <vers num="2.7.10" />
                <vers num="2.7.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:C/A:C)" CVSS_base_score="8.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="9.2" name="CVE-2008-0127" seq="2008-0127" severity="High" type="CVE" published="2008-01-09" CVSS_version="2.0" CVSS_score="8.8" modified="2008-09-05">
        <desc>
            <descript source="cve">The administration interface in McAfee E-Business Server 8.5.2 and earlier allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a long initial authentication packet.</descript>
        </desc>
        <loss_types>
            <avail />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27197">27197</ref>
            <ref source="BUGTRAQ" patch="1" url="http://www.securityfocus.com/archive/1/archive/1/486035/100/0/threaded">20080109 [INFIGO-2008-01-06]: McAfee E-Business Server Remote Preauth Code Execution / DoS - Corrected</ref>
            <ref source="BUGTRAQ" patch="1" url="http://www.securityfocus.com/archive/1/archive/1/485992/100/0/threaded">20080109 [INFIGO 2008-01-06]: McAfee E-Business Server Remote Preauth Code Execution / DoS</ref>
            <ref source="CONFIRM" url="https://knowledge.mcafee.com/SupportSite/dynamickc.do?externalId=614472&amp;sliceId=SAL_Public&amp;command=show&amp;forward=nonthreadedKC&amp;kcId=614472">https://knowledge.mcafee.com/SupportSite/dynamickc.do?externalId=614472&amp;sliceId=SAL_Public&amp;command=show&amp;forward=nonthreadedKC&amp;kcId=614472</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39563">mcafee-ebusiness-packet-code-execution(39563)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39561">mcafee-ebusiness-authentication-packet-dos(39561)</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4878">4878</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0087">ADV-2008-0087</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019170">1019170</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3530">3530</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28408">28408</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mcafee" name="e-business_server">
                <vers num="8.5.2" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0218" seq="2008-0218" severity="Medium" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in admin/index.html in Merak IceWarp Mail Server allows remote attackers to inject arbitrary web script or HTML via the message parameter.  NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39564">icewarpmailserver-index-xss(39564)</ref>
            <ref source="MISC" url="http://www.securityfocus.com/data/vulnerabilities/exploits/27189.html">http://www.securityfocus.com/data/vulnerabilities/exploits/27189.html</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27189">27189</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0135">ADV-2008-0135</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28460">28460</ref>
        </refs>
        <vuln_soft>
            <prod vendor="merak" name="icewarp_mail_server">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0219" seq="2008-0219" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="7.5" modified="2008-10-11">
        <desc>
            <descript source="cve">SQL injection vulnerability in soporte_horizontal_w.php in PHP Webquest 2.6 allows remote attackers to execute arbitrary SQL commands via the id_actividad parameter, a different vector than CVE-2007-4920.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39560">webquest-soportehorizontalw-sql-injection(39560)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27192">27192</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4867">4867</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/26821" adv="1">26821</ref>
        </refs>
        <vuln_soft>
            <prod vendor="php_webquest" name="php_webquest">
                <vers num="2.6" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0220" seq="2008-0220" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="7.5" modified="2009-09-15">
        <desc>
            <descript source="cve">Multiple stack-based buffer overflows in the WebLaunch.WeblaunchCtl.1 (aka CWebLaunchCtl) ActiveX control in weblaunch.ocx 1.0.0.1 in Gateway Weblaunch allow remote attackers to execute arbitrary code via a long string in the (1) second or (2) fourth argument to the DoWebLaunch method.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT-VN" url="http://www.kb.cert.org/vuls/id/735441">VU#735441</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27193">27193</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4982">4982</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4869">4869</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0077">ADV-2008-0077</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28379" adv="1">28379</ref>
            <ref source="FULLDISC" url="http://marc.info/?l=full-disclosure&amp;m=119984138526735&amp;w=2">20080109 Gateway WebLaunch ActiveX Control Insecure Method</ref>
        </refs>
        <vuln_soft>
            <prod vendor="gateway" name="cweblaunchctl_activex_control">
                <vers num="1.0.0.1" />
            </prod>
            <prod vendor="gateway" name="weblaunch">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2008-0221" seq="2008-0221" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="9.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in the WebLaunch.WeblaunchCtl.1 (aka CWebLaunchCtl) ActiveX control in weblaunch.ocx 1.0.0.1 in Gateway Weblaunch allows remote attackers to execute arbitrary programs via a ..\ (dot dot backslash) in the second argument to the DoWebLaunch method.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4869">4869</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0077" adv="1">ADV-2008-0077</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28379" adv="1">28379</ref>
            <ref source="FULLDISC" url="http://marc.info/?l=full-disclosure&amp;m=119984138526735&amp;w=2">20080109 Gateway WebLaunch ActiveX Control Insecure Method</ref>
        </refs>
        <vuln_soft>
            <prod vendor="gateway" name="weblaunch">
                <vers num="1.0.0.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0222" seq="2008-0222" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Unrestricted file upload vulnerability in ajaxfilemanager.php in the Wp-FileManager 1.2 plugin for WordPress allows remote attackers to upload and execute arbitrary PHP code via unspecified vectors.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39462">wordpress-wpfilemanager-file-upload(39462)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27151">27151</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4844">4844</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wordpress" name="filemanager">
                <vers num="1.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2008-0223" seq="2008-0223" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="9.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Buffer overflow in JustSystems JSFC.DLL, as used in multiple JustSystems products such as Ichitaro, allows remote attackers to execute arbitrary code via a crafted .JTD file.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39501">justsystems-jsfc-bo(39501)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019168">1019168</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27153">27153</ref>
            <ref source="CONFIRM" url="http://www.justsystems.com/jp/info/pd8001.html">http://www.justsystems.com/jp/info/pd8001.html</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0045" adv="1">ADV-2008-0045</ref>
            <ref source="MISC" url="http://www.fourteenforty.jp/research/advisory.cgi?FFRRA-20080107">http://www.fourteenforty.jp/research/advisory.cgi?FFRRA-20080107</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28275" adv="1">28275</ref>
            <ref source="JVN" url="http://jvn.jp/jp/JVN%2308237857/index.html">JVN#08237857</ref>
        </refs>
        <vuln_soft>
            <prod vendor="justsystem" name="ichitaro">
                <vers num="11.0" />
                <vers num="12.0" />
                <vers num="13.0" />
                <vers num="2004" />
                <vers num="2005" />
                <vers num="2006" />
                <vers num="2007" />
                <vers num="linux" />
            </prod>
            <prod vendor="justsystem" name="ichitaro_lite2">
                <vers num="" />
            </prod>
            <prod vendor="justsystem" name="ichitaro_viewer">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0224" seq="2008-0224" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.php in the Newbb_plus 0.92 and earlier module in RunCMS 1.6.1 allows remote attackers to execute arbitrary SQL commands via the Client-Ip parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39478">runcms-newbb-client-sql-injection(39478)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27152">27152</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28340" adv="1">28340</ref>
            <ref source="MILW0RM" url="http://milw0rm.com/exploits/4845">4845</ref>
        </refs>
        <vuln_soft>
            <prod vendor="runcms" name="runcms">
                <vers num="1.5.3" />
                <vers num="1.6" />
                <vers num="1.6.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:N)" CVSS_base_score="6.4" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="4.9" name="CVE-2008-0225" seq="2008-0225" severity="Medium" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="6.4" modified="2008-09-10">
        <desc>
            <descript source="cve">Heap-based buffer overflow in the rmff_dump_cont function in input/libreal/rmff.c in xine-lib 1.1.9 and earlier allows remote attackers to execute arbitrary code via the SDP Abstract attribute in an RTSP session, related to the rmff_dump_header function and related to disregarding the max field.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00592.html">FEDORA-2008-0718</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=428620">https://bugzilla.redhat.com/show_bug.cgi?id=428620</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/usn-635-1">USN-635-1</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27198">27198</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0163" adv="1">ADV-2008-0163</ref>
            <ref source="CONFIRM" url="http://sourceforge.net/project/shownotes.php?release_id=567872">http://sourceforge.net/project/shownotes.php?release_id=567872</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/31393">31393</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28489">28489</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28384" adv="1">28384</ref>
            <ref source="MISC" url="http://aluigi.altervista.org/adv/xinermffhof-adv.txt">http://aluigi.altervista.org/adv/xinermffhof-adv.txt</ref>
            <ref source="SUSE" url="http://www.novell.com/linux/security/advisories/suse_security_summary_report.html">SUSE-SR:2008:002</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2008:045">MDVSA-2008:045</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2008:020">MDVSA-2008:020</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2008/dsa-1472">DSA-1472</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200801-12.xml">GLSA-200801-12</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28955">28955</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28674">28674</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28636">28636</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28507">28507</ref>
            <ref source="CONFIRM" url="http://bugs.gentoo.org/show_bug.cgi?id=205197">http://bugs.gentoo.org/show_bug.cgi?id=205197</ref>
        </refs>
        <vuln_soft>
            <prod vendor="xine" name="xine-lib">
                <vers num="1.1.9" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0226" seq="2008-0226" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="7.5" modified="2008-10-23">
        <desc>
            <descript source="cve">Multiple buffer overflows in yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allow remote attackers to execute arbitrary code via (1) the ProcessOldClientHello function in handshake.cpp or (2) "input_buffer&amp; operator>>" in yassl_imp.cpp.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39431">yassl-inputbufferoperator-bo(39431)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39429">yassl-processoldclienthello-bo(39429)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/31681">31681</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27140">27140</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485811/100/0/threaded">20080104 Pre-auth buffer-overflow in mySQL through yaSSL</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485810/100/0/threaded">20080104 Multiple vulnerabilities in yaSSL 1.7.5</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2008:150">MDVSA-2008:150</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/2780">ADV-2008-2780</ref>
            <ref source="CONFIRM" url="http://support.apple.com/kb/HT3216">http://support.apple.com/kb/HT3216</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/32222">32222</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28324" adv="1">28324</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2008/Oct/msg00001.html">APPLE-SA-2008-10-09</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/usn-588-1">USN-588-1</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0560/references">ADV-2008-0560</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2008/dsa-1478">DSA-1478</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3531">3531</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29443">29443</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28597">28597</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28419">28419</ref>
            <ref source="CONFIRM" url="http://dev.mysql.com/doc/refman/5.1/en/news-5-1-23.html">http://dev.mysql.com/doc/refman/5.1/en/news-5-1-23.html</ref>
            <ref source="CONFIRM" url="http://bugs.mysql.com/33814">http://bugs.mysql.com/33814</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mysql" name="mysql">
                <vers num="" />
            </prod>
            <prod vendor="yassl" name="yassl">
                <vers num="1.7.5" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0227" seq="2008-0227" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="7.5" modified="2008-10-23">
        <desc>
            <descript source="cve">yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allows remote attackers to cause a denial of service (crash) via a Hello packet containing a large size value, which triggers a buffer over-read in the HASHwithTransform::Update function in hash.cpp.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39433">yassl-hashwithtransformupdate-dos(39433)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/31681">31681</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27140">27140</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485810/100/0/threaded">20080104 Multiple vulnerabilities in yaSSL 1.7.5</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2008:150">MDVSA-2008:150</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/2780">ADV-2008-2780</ref>
            <ref source="CONFIRM" url="http://support.apple.com/kb/HT3216">http://support.apple.com/kb/HT3216</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/32222">32222</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28324" adv="1">28324</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2008/Oct/msg00001.html">APPLE-SA-2008-10-09</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/usn-588-1">USN-588-1</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0560/references">ADV-2008-0560</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2008/dsa-1478">DSA-1478</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3531">3531</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29443">29443</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28597">28597</ref>
            <ref source="CONFIRM" url="http://dev.mysql.com/doc/refman/5.1/en/news-5-1-23.html">http://dev.mysql.com/doc/refman/5.1/en/news-5-1-23.html</ref>
            <ref source="CONFIRM" url="http://bugs.mysql.com/33814">http://bugs.mysql.com/33814</ref>
        </refs>
        <vuln_soft>
            <prod vendor="yassl" name="yassl">
                <vers num="1.7.5" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2008-0228" seq="2008-0228" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="9.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site request forgery (CSRF) vulnerability in apply.cgi in the Linksys WRT54GL Wireless-G Broadband Router with firmware 4.30.9 allows remote attackers to perform actions as administrators.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39502">linksys-apply-csrf(39502)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485853/100/0/threaded">20080107 Linksys WRT54 GL - Session riding (CSRF)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28364" adv="1">28364</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486362/100/0/threaded">20080115 Re: Linksys WRT54 GL - Session riding (CSRF)</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3534">3534</ref>
        </refs>
        <vuln_soft>
            <prod vendor="linksys" name="wrt54gl">
                <vers num="4.30.9" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0229" seq="2008-0229" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">The telnet service in LevelOne WBR-3460 4-Port ADSL 2/2+ Wireless Modem Router with firmware 1.00.11 and 1.00.12 does not require authentication, which allows remote attackers on the local or wireless network to obtain administrative access.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019162">1019162</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27183">27183</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485935/100/0/threaded">20080108 Level-One WBR-3460A Grants Root Access</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3533">3533</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28397">28397</ref>
        </refs>
        <vuln_soft>
            <prod vendor="level_one" name="wbr-3460a">
                <vers num="1.0.11" />
                <vers num="1.0.12" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0230" seq="2008-0230" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">PHP remote file inclusion vulnerability in php121db.php in osDate 2.0.8 and possibly earlier versions allows remote attackers to execute arbitrary PHP code via a URL in the php121dir parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39567">osdate-php121db-file-include(39567)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27208">27208</ref>
            <ref source="MISC" url="http://packetstormsecurity.org/0801-exploits/osdata-lfi.txt">http://packetstormsecurity.org/0801-exploits/osdata-lfi.txt</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4870">4870</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28420">28420</ref>
        </refs>
        <vuln_soft>
            <prod vendor="osdate" name="osdate">
                <vers num="2.0.8" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0231" seq="2008-0231" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple directory traversal vulnerabilities in index.php in Tuned Studios (1) Subwoofer, (2) Freeze Theme, (3) Orange Cutout, (4) Lonely Maple, (5) Endless, (6) Classic Theme, and (7) Music Theme webpage templates allow remote attackers to include and execute arbitrary files via ".." sequences in the page parameter.  NOTE: this can be leveraged for remote file inclusion when running in some PHP 5 environments.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39555">tunedstudiostemplates-index-file-include(39555)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27196">27196</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485991/100/0/threaded">20080109 LFI in Tuned Studios Templates</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4876">4876</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3532">3532</ref>
        </refs>
        <vuln_soft>
            <prod vendor="tuned_studios" name="classic_theme">
                <vers num="" />
            </prod>
            <prod vendor="tuned_studios" name="endless">
                <vers num="" />
            </prod>
            <prod vendor="tuned_studios" name="freeze_theme">
                <vers num="" />
            </prod>
            <prod vendor="tuned_studios" name="lonely_maple">
                <vers num="" />
            </prod>
            <prod vendor="tuned_studios" name="music_theme">
                <vers num="" />
            </prod>
            <prod vendor="tuned_studios" name="orange_cutout">
                <vers num="" />
            </prod>
            <prod vendor="tuned_studios" name="subwoofer">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0232" seq="2008-0232" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in Zero CMS 1.0 Alpha allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to index.php, or the (2) f or t parameters to forums/index.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39530">zerocms-index-sql-injection(39530)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27186">27186</ref>
            <ref source="MISC" url="http://packetstormsecurity.org/0801-exploits/zerocms-sql.txt">http://packetstormsecurity.org/0801-exploits/zerocms-sql.txt</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4864">4864</ref>
        </refs>
        <vuln_soft>
            <prod vendor="zero_cms" name="zero_cms">
                <vers num="1.0_alpha" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0233" seq="2008-0233" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Unrestricted file upload vulnerability in Zero CMS 1.0 Alpha and earlier allows remote attackers to bypass intended access restrictions and upload and execute arbitrary files by uploading an avatar file with an accepted Content-Type such as image/jpeg.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" url="http://packetstormsecurity.org/0801-exploits/zerocms-sql.txt">http://packetstormsecurity.org/0801-exploits/zerocms-sql.txt</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4864">4864</ref>
        </refs>
        <vuln_soft>
            <prod vendor="zero_cms" name="zero_cms">
                <vers num="1.0_alpha" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2008-0234" seq="2008-0234" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="9.3" modified="2009-02-26">
        <desc>
            <descript source="cve">Buffer overflow in Apple Quicktime Player 7.3.1.70 and other versions before 7.4.1, when RTSP tunneling is enabled, allows remote attackers to execute arbitrary code via a long Reason-Phrase response to an rtsp:// request, as demonstrated using a 404 error message.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CERT-VN" url="http://www.kb.cert.org/vuls/id/112179">VU#112179</ref>
            <ref source="VUPEN" patch="1" url="http://www.frsirt.com/english/advisories/2008/2064/references" adv="1">ADV-2008-2064</ref>
            <ref source="VUPEN" patch="1" url="http://www.frsirt.com/english/advisories/2008/0107" adv="1">ADV-2008-0107</ref>
            <ref source="APPLE" patch="1" url="http://lists.apple.com/archives/security-announce/2008//Jul/msg00000.html" adv="1">APPLE-SA-2008-07-10</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39601">quicktime-rtsp-responses-bo(39601)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019178">1019178</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27225">27225</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486268/100/0/threaded">20080112 Re: Buffer-overflow in Quicktime Player 7.3.1.70</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486241/100/0/threaded">20080112 Re: Re: Buffer-overflow in Quicktime Player 7.3.1.70</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486238/100/0/threaded">20080114 Re: [Full-disclosure] Buffer-overflow in Quicktime Player 7.3.1.70</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486174/100/0/threaded">20080111 Re: Buffer-overflow in Quicktime Player 7.3.1.70</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486161/100/0/threaded">20080111 Re: Re: Buffer-overflow in Quicktime Player 7.3.1.70</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486114/100/0/threaded">20080110 Re: Buffer-overflow in Quicktime Player 7.3.1.70</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486091/100/0/threaded">20080110 Buffer-overflow in Quicktime Player 7.3.1.70</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4906">4906</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4885">4885</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3537">3537</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/31034" adv="1">31034</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28423" adv="1">28423</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2008/Feb/msg00001.html">APPLE-SA-2008-02-06</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="quicktime">
                <vers num="7.3.1.70" />
                <vers num="7.4" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0235" seq="2008-0235" severity="High" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">The Microsoft VFP_OLE_Server ActiveX control allows remote attackers to execute arbitrary code by invoking the foxcommand method.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39559">microsoft-vfpoleserver-command-execution(39559)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27199">27199</ref>
            <ref source="MISC" url="http://shinnai.altervista.org/exploits/txt/TXT_rNowA1916DKFNUF48NyS.html">http://shinnai.altervista.org/exploits/txt/TXT_rNowA1916DKFNUF48NyS.html</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4875">4875</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28417">28417</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="vfp_ole_server_activex_control">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:N)" CVSS_base_score="5.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="4.9" name="CVE-2008-0236" seq="2008-0236" severity="Medium" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="5.8" modified="2008-09-05">
        <desc>
            <descript source="cve">An ActiveX control for Microsoft Visual FoxPro (vfp6r.dll 6.0.8862.0) allows remote attackers to execute arbitrary commands by invoking the DoCmd method.</descript>
        </desc>
        <loss_types>
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39558">microsoft-foxserver-command-execution(39558)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27205">27205</ref>
            <ref source="MISC" url="http://shinnai.altervista.org/exploits/txt/TXT_DiWu9j82RCq4zpaQAoxn.html">http://shinnai.altervista.org/exploits/txt/TXT_DiWu9j82RCq4zpaQAoxn.html</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4873">4873</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28417">28417</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="visual_foxpro">
                <vers num="6.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0237" seq="2008-0237" severity="Medium" type="CVE" published="2008-01-10" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">The Microsoft Rich Textbox ActiveX Control (RICHTX32.OCX) 6.1.97.82 allows remote attackers to execute arbitrary commands by invoking the insecure SaveFile method.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39557">microsoft-richtextbox-file-overwrite(39557)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27201">27201</ref>
            <ref source="MISC" url="http://shinnai.altervista.org/exploits/txt/TXT_DZVN8CwCha0I2fI3NeEs.html">http://shinnai.altervista.org/exploits/txt/TXT_DZVN8CwCha0I2fI3NeEs.html</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4874">4874</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="rich_textbox_control">
                <vers num="6.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0238" seq="2008-0238" severity="High" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-10">
        <desc>
            <descript source="cve">Multiple heap-based buffer overflows in the rmff_dump_cont function in input/libreal/rmff.c in xine-lib 1.1.9 allow remote attackers to execute arbitrary code via the SDP (1) Title, (2) Author, or (3) Copyright attribute, related to the rmff_dump_header function, different vectors than CVE-2008-0225.  NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.</descript>
        </desc>
        <sols>
            <sol source="nvd">Please see the following link for more information regarding the exploit:

http://aluigi.altervista.org/adv/xinermffhof-adv.txt</sol>
        </sols>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/usn-635-1">USN-635-1</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/31393">31393</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28384" adv="1">28384</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2008:045">MDVSA-2008:045</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2008:020">MDVSA-2008:020</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200801-12.xml">GLSA-200801-12</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28955">28955</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28674">28674</ref>
            <ref source="CONFIRM" url="http://bugs.gentoo.org/show_bug.cgi?id=205197">http://bugs.gentoo.org/show_bug.cgi?id=205197</ref>
        </refs>
        <vuln_soft>
            <prod vendor="xine" name="xine-lib">
                <vers num="1.1.9" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0239" seq="2008-0239" severity="Medium" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="4.3" modified="2008-11-19">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allow remote attackers to inject arbitrary HTML or web script via the (1) cntry or lang parameters to /idm/login.jsp, (2) resultsForm parameter to /idm/account/findForSelect.jsp, or (3) activeControl parameter to /idm/user/main.jsp.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" patch="1" url="http://www.securityfocus.com/archive/1/archive/1/486076/100/0/threaded">20080110 PR07-06, PR07-07, PR07-08, PR07-09, PR07-10, PR07-12: Several XSS, Cross-domain Redirection and Frame Injection on Sun Java System Identity Manager</ref>
            <ref source="MISC" patch="1" url="http://www.procheckup.com/Vulnerability_PR07-08.php">http://www.procheckup.com/Vulnerability_PR07-08.php</ref>
            <ref source="MISC" patch="1" url="http://www.procheckup.com/Vulnerability_PR07-07.php">http://www.procheckup.com/Vulnerability_PR07-07.php</ref>
            <ref source="MISC" patch="1" url="http://www.procheckup.com/Vulnerability_PR07-06.php">http://www.procheckup.com/Vulnerability_PR07-06.php</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39583">sun-identity-main-xss(39583)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39582">sun-identity-resultsform-xss(39582)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39581">sun-identity-lang-xss(39581)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39580">sun-identity-login-xss(39580)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27214">27214</ref>
            <ref source="MISC" url="http://www.procheckup.com/Vulnerability_PR07-09.php">http://www.procheckup.com/Vulnerability_PR07-09.php</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0089" adv="1">ADV-2008-0089</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-103180-1">103180</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28356" adv="1">28356</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019175">1019175</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-200558-1">200558</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3535">3535</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="java_system_identity_manager">
                <vers edition="sp1" num="6.0" />
                <vers edition="sp2" num="6.0" />
                <vers edition="sp3" num="6.0" />
                <vers num="7.0" />
                <vers num="7.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0240" seq="2008-0240" severity="Medium" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">/idm/help/index.jsp in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allows remote attackers to inject frames from arbitrary web sites and conduct phishing attacks via the helpUrl parameter, aka "frame injection."</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="MISC" patch="1" url="http://www.procheckup.com/Vulnerability_PR07-10.php">http://www.procheckup.com/Vulnerability_PR07-10.php</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39586">sun-identity-index-frame-injection(39586)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27214">27214</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486076/100/0/threaded">20080110 PR07-06, PR07-07, PR07-08, PR07-09, PR07-10, PR07-12: Several XSS, Cross-domain Redirection and Frame Injection on Sun Java System Identity Manager</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0089" adv="1">ADV-2008-0089</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-103180-1">103180</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28356" adv="1">28356</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-200558-1">200558</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3535">3535</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="java_system_identity_manager">
                <vers edition="sp1" num="6.0" />
                <vers edition="sp2" num="6.0" />
                <vers edition="sp3" num="6.0" />
                <vers num="7.0" />
                <vers num="7.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:P)" CVSS_base_score="5.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="4.9" name="CVE-2008-0241" seq="2008-0241" severity="Medium" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="5.8" modified="2009-02-04">
        <desc>
            <descript source="cve">Open redirect vulnerability in /idm/user/login.jsp in Sun Java System Identity Manager 6.0 SP1 through SP3, 7.0, and 7.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the nextPage parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="MISC" patch="1" url="http://www.procheckup.com/Vulnerability_PR07-12.php">http://www.procheckup.com/Vulnerability_PR07-12.php</ref>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-200558-1" adv="1">200558</ref>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-103180-1" adv="1">103180</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39590">sun-identity-login-security-bypass(39590)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27214">27214</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486076/100/0/threaded">20080110 PR07-06, PR07-07, PR07-08, PR07-09, PR07-10, PR07-12: Several XSS, Cross-domain Redirection and Frame Injection on Sun Java System Identity Manager</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0089" adv="1">ADV-2008-0089</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3535">3535</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28356" adv="1">28356</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="java_system_identity_manager">
                <vers edition="sp1" num="6.0" />
                <vers edition="sp2" num="6.0" />
                <vers edition="sp3" num="6.0" />
                <vers num="7.0" />
                <vers num="7.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0005" seq="2008-0005" severity="Medium" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="4.3" modified="2009-10-31">
        <desc>
            <descript source="cve">mod_proxy_ftp in Apache 2.2.x before 2.2.7-dev, 2.0.x before 2.0.62-dev, and 1.3.x before 1.3.40-dev does not define a charset, which allows remote attackers to conduct cross-site scripting (XSS) attacks using UTF-7 encoding.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-February/msg00562.html">FEDORA-2008-1695</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-February/msg00541.html">FEDORA-2008-1711</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39615">apache-modproxyftp-utf7-xss(39615)</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/usn-575-1">USN-575-1</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019185">1019185</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27234">27234</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/505990/100/0/threaded">20090821 VMSA-2009-0010 VMware Hosted products update libpng and Apache HTTP Server</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486167/100/0/threaded">20080110 SecurityReason - Apache (mod_proxy_ftp) Undefined Charset UTF-7 XSS Vulnerability</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2008-0009.html">RHSA-2008:0009</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2008-0008.html">RHSA-2008:0008</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2008-0007.html">RHSA-2008:0007</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2008-0006.html">RHSA-2008:0006</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2008-0005.html">RHSA-2008:0005</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2008-0004.html">RHSA-2008:0004</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2008:016">MDVSA-2008:016</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2008:015">MDVSA-2008:015</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2008:014">MDVSA-2008:014</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/1875/references">ADV-2008-1875</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0924/references">ADV-2008-0924</ref>
            <ref source="CONFIRM" url="http://support.avaya.com/elmodocs2/security/ASA-2008-032.htm">http://support.avaya.com/elmodocs2/security/ASA-2008-032.htm</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3526">3526</ref>
            <ref source="SREASONRES" url="http://securityreason.com/achievement_securityalert/49">20080110 Apache (mod_proxy_ftp) Undefined Charset UTF-7 XSS Vulnerability</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200803-19.xml">GLSA-200803-19</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/35650">35650</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/30732">30732</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29640">29640</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29420">29420</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29348">29348</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28977">28977</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28749">28749</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28607">28607</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28526">28526</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28471">28471</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28467">28467</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=125631037611762&amp;w=2">SSRT090192</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=125631037611762&amp;w=2">SSRT090192</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=124654546101607&amp;w=2">SSRT090085</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=124654546101607&amp;w=2">SSRT090085</ref>
            <ref source="MLIST" url="http://lists.vmware.com/pipermail/security-announce/2009/000062.html">[security-announce] 20090820 VMSA-2009-0010 VMware Hosted products update libpng and Apache HTTP Server</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2008-04/msg00004.html">SUSE-SA:2008:021</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.html">APPLE-SA-2008-03-18</ref>
            <ref source="CONFIRM" url="http://docs.info.apple.com/article.html?artnum=307562">http://docs.info.apple.com/article.html?artnum=307562</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apache" name="http_server">
                <vers num="1.3" />
                <vers num="2.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0123" seq="2008-0123" severity="Medium" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in install.php for Moodle 1.8.3, and possibly other versions before 1.8.4, allows remote attackers to inject arbitrary web script or HTML via the dbname parameter.  NOTE: this issue only exists until the installation is complete.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="MISC" url="http://int21.de/cve/CVE-2008-0123-moodle.html">http://int21.de/cve/CVE-2008-0123-moodle.html</ref>
            <ref source="FULLDISC" url="http://archives.neohapsis.com/archives/fulldisclosure/2008-01/0202.html">20080111 Cross site scripting (XSS) in Moodle 1.8.3</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39630">moodle-install-xss(39630)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27259">27259</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486198/100/0/threaded">20080111 Cross site scripting (XSS) in Moodle 1.8.3</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0164">ADV-2008-0164</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28838">28838</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2008-02/msg00003.html">SUSE-SR:2008:003</ref>
        </refs>
        <vuln_soft>
            <prod vendor="moodle" name="moodle">
                <vers num="1.8.3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="7.2" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="10.0" name="CVE-2008-0242" seq="2008-0242" severity="High" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="7.2" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in libdevinfo in Sun Solaris 10 allows local users to access files and gain privileges via unknown vectors, related to login device permissions.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-103165-1">103165</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39629">solaris-libdevinfo-privilege-escalation(39629)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019187">1019187</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27253">27253</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0131">ADV-2008-0131</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-200641-1">200641</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28493">28493</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5211" sig="1">oval:org.mitre.oval:def:5211</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="solaris">
                <vers edition="" num="10.0" />
                <vers edition=":x86" num="10.0" />
                <vers edition=":sparc" num="10.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="7.8" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.9" name="CVE-2008-0243" seq="2008-0243" severity="High" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="7.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in Lotus Domino 7.0.2 before Fix Pack 3 allows attackers to cause a denial of service via unknown vectors.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39588">lotus-domino-unspecified-dos(39588)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27215">27215</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0086" adv="1">ADV-2008-0086</ref>
            <ref source="CONFIRM" url="http://www-1.ibm.com/support/docview.wss?uid=swg27011539">http://www-1.ibm.com/support/docview.wss?uid=swg27011539</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28411" adv="1">28411</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="lotus_domino">
                <vers num="7.0" />
                <vers num="7.0.1" />
                <vers edition="" num="7.0.2" />
                <vers edition=":fp1" num="7.0.2" />
                <vers edition=":fp2" num="7.0.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0244" seq="2008-0244" severity="High" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">SAP MaxDB 7.6.03 build 007 and earlier allows remote attackers to execute arbitrary commands via "&amp;&amp;" and other shell metacharacters in exec_sdbinfo and other unspecified commands, which are executed when MaxDB invokes cons.exe.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39573">maxdb-system-command-execution(39573)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019171">1019171</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27206">27206</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486039/100/0/threaded">20080109 Pre-auth remote commands execution in SAP MaxDB 7.6.03.07</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4877">4877</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0104" adv="1">ADV-2008-0104</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28409" adv="1">28409</ref>
            <ref source="MISC" url="http://aluigi.altervista.org/adv/sapone-adv.txt">http://aluigi.altervista.org/adv/sapone-adv.txt</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3536">3536</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sap" name="maxdb">
                <vers num="7.6.3_build_007" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0245" seq="2008-0245" severity="High" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">admin.php in UploadImage 1.0 does not check for the original password before making a change to a new password, which allows remote attackers to gain administrator privileges via the pass parameter in a nopass (Set Password) action.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39571">uploadimage-admin-command-execution(39571)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27203">27203</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4871">4871</ref>
        </refs>
        <vuln_soft>
            <prod vendor="uploadscript" name="uploadimage">
                <vers num="1.0" />
            </prod>
            <prod vendor="uploadscript" name="uploadscript">
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0246" seq="2008-0246" severity="High" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">admin.php in UploadScript 1.0 does not check for the original password before making a change to a new password, which allows remote attackers to gain administrator privileges via the pass parameter in a nopass (Set Password) action.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39570">uploadscript-admin-command-execution(39570)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27203">27203</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4871">4871</ref>
        </refs>
        <vuln_soft>
            <prod vendor="uploadscript" name="uploadimage">
                <vers num="1.0" />
            </prod>
            <prod vendor="uploadscript" name="uploadscript">
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0247" seq="2008-0247" severity="High" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Heap-based buffer overflow in the Express Backup Server service (dsmsvc.exe) in IBM Tivoli Storage Manager (TSM) Express 5.3 before 5.3.7.3 allows remote attackers to execute arbitrary code via a packet with a large length value.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27235">27235</ref>
            <ref source="CONFIRM" patch="1" url="http://www-1.ibm.com/support/docview.wss?uid=swg21291536">http://www-1.ibm.com/support/docview.wss?uid=swg21291536</ref>
            <ref source="SECUNIA" patch="1" url="http://secunia.com/advisories/28440" adv="1">28440</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39604">ibm-tsmexpressserver-bo(39604)</ref>
            <ref source="MISC" url="http://www.zerodayinitiative.com/advisories/ZDI-08-001.html">http://www.zerodayinitiative.com/advisories/ZDI-08-001.html</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019182">1019182</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486270/100/0/threaded">20080114 ZDI-08-001: IBM Tivoli Storage Manager Express Backup Server Heap Overflow Vulnerability</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0106" adv="1">ADV-2008-0106</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="tivoli_storage_manager_express">
                <vers num="5.3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2008-0248" seq="2008-0248" severity="High" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="9.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Buffer overflow in an ActiveX control in ccpm_0237.dll for StreamAudio ChainCast ProxyManager allows remote attackers to execute arbitrary code via a long URL argument to the InternalTuneIn method.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39622">streamaudio-chaincastproxymanager-bo(39622)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27247">27247</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4894">4894</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059572.html">20080111 StreamAudio ChainCast ProxyManager ccpm_0237.dll Buffer Overflow</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0133">ADV-2008-0133</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28461">28461</ref>
        </refs>
        <vuln_soft>
            <prod vendor="streamaudio" name="chaincast_proxymanager_activex_control">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0249" seq="2008-0249" severity="Medium" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">PHP Webquest 2.6 allows remote attackers to retrieve database credentials via a direct request to admin/backup_phpwebquest.php, which leaks the credentials in an error message if a call to /usr/bin/mysqldump fails.  NOTE: this might only be an issue in limited environments.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39572">phpwebquest-backup-information-disclosure(39572)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27202">27202</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4872">4872</ref>
        </refs>
        <vuln_soft>
            <prod vendor="phpwebquest" name="phpwebquest">
                <vers num="2.6" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2008-0250" seq="2008-0250" severity="High" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="9.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Buffer overflow in Microsoft Visual InterDev 6.0 (SP6) allows user-assisted attackers to execute arbitrary code via a Studio Solution (.SLN) file with a long Project line.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27250">27250</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4892">4892</ref>
            <ref source="MISC" url="http://shinnai.altervista.org/exploits/txt/TXT_PoEOrFM8py30PXrDF7IY.html">http://shinnai.altervista.org/exploits/txt/TXT_PoEOrFM8py30PXrDF7IY.html</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/41826">visualinterdev-sln-project-bo(41826)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28482">28482</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="visual_interdev">
                <vers edition="sp6" num="6.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0251" seq="2008-0251" severity="High" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Unrestricted file upload vulnerability in PhotoPost vBGallery before 2.4.2 allows remote attackers to upload and execute arbitrary files via unknown vectors.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39621">vbgallery-unspecified-code-execution(39621)</ref>
            <ref source="CONFIRM" url="http://www.photopost.com/forum/showthread.php?t=134910">http://www.photopost.com/forum/showthread.php?t=134910</ref>
            <ref source="CONFIRM" url="http://www.photopost.com/forum/showthread.php?t=134909">http://www.photopost.com/forum/showthread.php?t=134909</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28430" adv="1">28430</ref>
        </refs>
        <vuln_soft>
            <prod vendor="photopost" name="photopost_vbgallery">
                <vers num="2.4.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0252" seq="2008-0252" severity="High" type="CVE" published="2008-01-11" CVSS_version="2.0" CVSS_score="7.5" modified="2008-10-17">
        <desc>
            <descript source="cve">Directory traversal vulnerability in the _get_file_path function in (1) lib/sessions.py in CherryPy 3.0.x up to 3.0.2, (2) filter/sessionfilter.py in CherryPy 2.1, and (3) filter/sessionfilter.py in CherryPy 2.x allows remote attackers to create or delete arbitrary files, and possibly read and write portions of arbitrary files, via a crafted session id in a cookie.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="VUPEN" patch="1" url="http://www.frsirt.com/english/advisories/2008/0039" adv="1">ADV-2008-0039</ref>
            <ref source="CONFIRM" patch="1" url="http://www.cherrypy.org/changeset/1775">http://www.cherrypy.org/changeset/1775</ref>
            <ref source="CONFIRM" patch="1" url="http://www.cherrypy.org/changeset/1774">http://www.cherrypy.org/changeset/1774</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00297.html">FEDORA-2008-0333</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00240.html">FEDORA-2008-0299</ref>
            <ref source="CONFIRM" url="https://bugs.gentoo.org/show_bug.cgi?id=204829">https://bugs.gentoo.org/show_bug.cgi?id=204829</ref>
            <ref source="CONFIRM" url="http://www.cherrypy.org/ticket/744">http://www.cherrypy.org/ticket/744</ref>
            <ref source="CONFIRM" url="http://www.cherrypy.org/changeset/1776">http://www.cherrypy.org/changeset/1776</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28354" adv="1">28354</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28353">28353</ref>
            <ref source="CONFIRM" url="https://issues.rpath.com/browse/RPL-2127">https://issues.rpath.com/browse/RPL-2127</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27181">27181</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/487001/100/0/threaded">20080124 rPSA-2008-0030-1 CherryPy</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2008/dsa-1481">DSA-1481</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200801-11.xml">GLSA-200801-11</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28769">28769</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28620">28620</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28611">28611</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cherrypy" name="cherrypy">
                <vers num="2.1.0" prev="1" />
                <vers num="3.0.2" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0253" seq="2008-0253" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in full_text.php in Binn SBuilder allows remote attackers to execute arbitrary SQL commands via the nid parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27264">27264</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4904">4904</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39634">binnsbuilder-fulltext-sql-injection(39634)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486265/100/0/threaded">20080114 Binn SBuilder (nid) Remote Blind Sql Injection Vulnerabily</ref>
        </refs>
        <vuln_soft>
            <prod vendor="binn" name="sbuilder">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0254" seq="2008-0254" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in activate.php in TutorialCMS (aka Photoshop Tutorials) 1.02, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the userName parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27263">27263</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4901">4901</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28446" adv="1">28446</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39642">tutorialcms-activate-sql-injection(39642)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wavelink_media" name="tutorialcms">
                <vers num="1.02" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0255" seq="2008-0255" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in archive.php in iGaming 1.5, and 1.3.1 and earlier, allows remote attackers to execute arbitrary SQL commands via the section parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39598">igamingcms-archive-sql-injection(39598)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27230">27230</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4886">4886</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28426" adv="1">28426</ref>
        </refs>
        <vuln_soft>
            <prod vendor="igamingcms" name="igaming_cms">
                <vers num="1.3.1" prev="1" />
                <vers num="1.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0256" seq="2008-0256" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in Matteo Binda ASP Photo Gallery 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to (a) Imgbig.asp, (b) thumb.asp, and (c) thumbricerca.asp and the (2) ricerca parameter to (d) thumbricerca.asp.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27262">27262</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4900">4900</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28447" adv="1">28447</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39646">aspphotogallery-multiple-sql-injection(39646)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="matteo_binda" name="asp_photo_gallery">
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0257" seq="2008-0257" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in search.pl in Dansie Search Engine 2.7 allows remote attackers to inject arbitrary web script or HTML via the keywords parameter.  NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28465" adv="1">28465</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39636">dansiesearchengine-search-xss(39636)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27269">27269</ref>
        </refs>
        <vuln_soft>
            <prod vendor="dansie" name="search_engine">
                <vers num="2.7" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0258" seq="2008-0258" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in index.php in PHP Running Management (phpRunMan) before 1.0.3 allows remote attackers to inject arbitrary web script or HTML via the message parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27268">27268</ref>
            <ref source="CONFIRM" patch="1" url="http://sourceforge.net/project/shownotes.php?release_id=568237&amp;group_id=103505">http://sourceforge.net/project/shownotes.php?release_id=568237&amp;group_id=103505</ref>
            <ref source="SECUNIA" patch="1" url="http://secunia.com/advisories/28474" adv="1">28474</ref>
            <ref source="CONFIRM" url="http://sourceforge.net/tracker/index.php?func=detail&amp;aid=1204199&amp;group_id=103505&amp;atid=634992">http://sourceforge.net/tracker/index.php?func=detail&amp;aid=1204199&amp;group_id=103505&amp;atid=634992</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39639">phprunningmanagement-index-xss(39639)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="php_running_management" name="phprunman">
                <vers num="1.0.2" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:N)" CVSS_base_score="6.4" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="4.9" name="CVE-2008-0259" seq="2008-0259" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="6.4" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple directory traversal vulnerabilities in _mg/php/mg_thumbs.php in minimal Gallery 0.8 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) thumbcat and (2) thumb parameters.</descript>
        </desc>
        <loss_types>
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27265">27265</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4902">4902</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28391" adv="1">28391</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39649">minimalgallery-mgthumbs-file-include(39649)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="minimal_design" name="minimal_gallery">
                <vers num="0.8" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0260" seq="2008-0260" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">minimal Gallery 0.8 allows remote attackers to obtain configuration information via a direct request to php_info.php, which calls the phpinfo function.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4902">4902</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28391" adv="1">28391</ref>
        </refs>
        <vuln_soft>
            <prod vendor="minimal_design" name="minimal_gallery">
                <vers num="0.8" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0261" seq="2008-0261" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the search component and module in Mambo 4.5.x and 4.6.x allows remote attackers to cause a denial of service (query flood) via unspecified vectors.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27239">27239</ref>
            <ref source="SECUNIA" patch="1" url="http://secunia.com/advisories/28392" adv="1">28392</ref>
            <ref source="CONFIRM" patch="1" url="http://forum.mambo-foundation.org/showthread.php?t=9651">http://forum.mambo-foundation.org/showthread.php?t=9651</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39613">mambo-search-dos(39613)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mambo" name="mambo_open_source">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0262" seq="2008-0262" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in includes/articleblock.php in Agares PhpAutoVideo 2.21 allows remote attackers to execute arbitrary SQL commands via the articlecat parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39641">agares-articleblock-sql-injection(39641)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27258">27258</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4905">4905</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4898">4898</ref>
        </refs>
        <vuln_soft>
            <prod vendor="agares_media" name="phpautovideo">
                <vers num="2.21" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0263" seq="2008-0263" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="5.0" modified="2008-11-15">
        <desc>
            <descript source="cve">The SIP module in Ingate Firewall before 4.6.1 and SIParator before 4.6.1 does not reuse SIP media ports in unspecified call hold and send-only stream scenarios, which allows remote attackers to cause a denial of service (port exhaustion) via unspecified vectors.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019177">1019177</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019176">1019176</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27222">27222</ref>
            <ref source="CONFIRM" url="http://www.ingate.com/relnote-461.php" adv="1">http://www.ingate.com/relnote-461.php</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0108">ADV-2008-0108</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28394" adv="1">28394</ref>
            <ref source="OSVDB" url="http://osvdb.org/40365">40365</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ingate" name="firewall">
                <vers num="4.6" prev="1" />
            </prod>
            <prod vendor="ingate" name="ingate_siparator">
                <vers num="4.6" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0264" seq="2008-0264" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the Meta Tags (aka Nodewords) 5.x-1.6 module for Drupal, when images are permitted in node bodies, allows remote authenticated users to execute arbitrary code via unspecified vectors involving creation of a node.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://drupal.org/node/209759">http://drupal.org/node/209759</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0129" adv="1">ADV-2008-0129</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28478" adv="1">28478</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39638">drupal-metatags-code-execution(39638)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="drupal" name="meta_tags_module">
                <vers num="5.x-1.6" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0265" seq="2008-0265" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in the Search function in the web management interface in F5 BIG-IP 9.4.3 allow remote attackers to inject arbitrary web script or HTML via the SearchString parameter to (1) list_system.jsp, (2) list_pktfilter.jsp, (3) list_ltm.jsp, (4) resources_audit.jsp, and (5) list_asm.jsp in tmui/Control/jspmap/tmui/system/log/; and (6) list.jsp in certain directories.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39632">f5bigip-searchstring-xss(39632)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019190">1019190</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27272">27272</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486217/100/0/threaded">20080114 F5 BIG-IP Web Management List Search XSS</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0181" adv="1">ADV-2008-0181</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28505" adv="1">28505</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3545">3545</ref>
        </refs>
        <vuln_soft>
            <prod vendor="f5" name="big-ip">
                <vers num="9.4.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:H/Au:N/C:N/I:P/A:N)" CVSS_base_score="2.6" CVSS_exploit_subscore="4.9" CVSS_impact_subscore="2.9" name="CVE-2008-0266" seq="2008-0266" severity="Low" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="2.6" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site request forgery (CSRF) vulnerability in admin.php in eTicket 1.5.5.2 allows remote attackers to change the administrative password and possibly perform other administrative tasks.  NOTE: either the old password must be known, or the attacker must leverage a separate SQL injection vulnerability.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39490">eticket-admin-csrf(39490)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27173">27173</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485835/100/0/threaded">20080106 eTicket 1.5.5.2 Multiple Vulnerabilities</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28331" adv="1">28331</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3542">3542</ref>
        </refs>
        <vuln_soft>
            <prod vendor="eticket" name="eticket">
                <vers num="1.5.5.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0267" seq="2008-0267" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="7.5" modified="2009-09-15">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in eTicket 1.5.5.2 allow remote authenticated users to execute arbitrary SQL commands via the (1) status, (2) sort, and (3) way parameters to search.php; and allow remote authenticated administrators to execute arbitrary SQL commands via the (4) msg and (5) password parameters to admin.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39489">eticket-search-sql-injection(39489)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39487">eticket-admin-sql-injection(39487)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27173">27173</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485835/100/0/threaded">20080106 eTicket 1.5.5.2 Multiple Vulnerabilities</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28331" adv="1">28331</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3542">3542</ref>
        </refs>
        <vuln_soft>
            <prod vendor="eticket" name="eticket">
                <vers num="1.5.5.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:P)" CVSS_base_score="5.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="4.9" name="CVE-2008-0268" seq="2008-0268" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="5.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in view.php in eTicket 1.5.5.2 allows remote attackers to inject arbitrary web script or HTML via the s parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39488">eticket-view-xss(39488)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27173">27173</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485835/100/0/threaded">20080106 eTicket 1.5.5.2 Multiple Vulnerabilities</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28331" adv="1">28331</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3542">3542</ref>
        </refs>
        <vuln_soft>
            <prod vendor="eticket" name="eticket">
                <vers num="1.5.5.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="4.9" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.9" name="CVE-2008-0269" seq="2008-0269" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="4.9" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the dotoprocs function in Sun Solaris 10 allows local users to cause a denial of service (panic) via unspecified vectors.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-103188-1">103188</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39631">solaris-dotoprocs-dos(39631)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019186">1019186</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27260">27260</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0130">ADV-2008-0130</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-66-201513-1">201513</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28491">28491</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5400" sig="1">oval:org.mitre.oval:def:5400</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="solaris">
                <vers num="10" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:S/C:P/I:P/A:P)" CVSS_base_score="6.0" CVSS_exploit_subscore="6.8" CVSS_impact_subscore="6.4" name="CVE-2008-0270" seq="2008-0270" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="6.0" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.php in TaskFreak! 0.6.1 and earlier allows remote authenticated users to execute arbitrary SQL commands via the sContext parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4899">4899</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39645">taskfreak-index-sql-injection(39645)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27257">27257</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28448">28448</ref>
        </refs>
        <vuln_soft>
            <prod vendor="taskfreak" name="taskfreak">
                <vers num="0.6.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0271" seq="2008-0271" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">The editor deletion form in BUEditor 4.7.x before 4.7.x-1.0 and 5.x before 5.x-1.1, a module for Drupal, does not follow Drupal's Forms API submission model, which allows remote attackers to conduct cross-site request forgery (CSRF) attacks and delete custom editor interfaces.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="SECUNIA" patch="1" url="http://secunia.com/advisories/28418" adv="1">28418</ref>
            <ref source="CONFIRM" patch="1" url="http://drupal.org/node/208534">http://drupal.org/node/208534</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39614">drupal-bueditor-csrf(39614)</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0128">ADV-2008-0128</ref>
        </refs>
        <vuln_soft>
            <prod vendor="drupal" name="bueditor">
                <vers num="4.7.x-1.0" prev="1" />
                <vers num="5.x-1.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0272" seq="2008-0272" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="4.3" modified="2009-09-15">
        <desc>
            <descript source="cve">Cross-site request forgery (CSRF) vulnerability in the aggregator module in Drupal 4.7.x before 4.7.11 and 5.x before 5.6 allows remote attackers to delete items from a feed as privileged users.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27238">27238</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39617">drupal-aggregator-csrf(39617)</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2008/0134">ADV-2008-0134</ref>
            <ref source="CONFIRM" url="http://www.vbdrupal.org/forum/showthread.php?t=1349">http://www.vbdrupal.org/forum/showthread.php?t=1349</ref>
            <ref source="CONFIRM" url="http://www.vbdrupal.org/forum/showthread.php?p=6878">http://www.vbdrupal.org/forum/showthread.php?p=6878</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28486">28486</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28422" adv="1">28422</ref>
            <ref source="CONFIRM" url="http://drupal.org/node/208562">http://drupal.org/node/208562</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0127">ADV-2008-0127</ref>
        </refs>
        <vuln_soft>
            <prod vendor="drupal" name="drupal">
                <vers num="4.0.0" />
                <vers num="4.1.0" />
                <vers num="4.2.0_rc" />
                <vers num="4.4" />
                <vers num="4.4.1" />
                <vers num="4.4.2" />
                <vers num="4.4.3" />
                <vers num="4.5" />
                <vers num="4.5.1" />
                <vers num="4.5.2" />
                <vers num="4.5.3" />
                <vers num="4.5.4" />
                <vers num="4.5.5" />
                <vers num="4.5.6" />
                <vers num="4.5.7" />
                <vers num="4.5.8" />
                <vers num="4.6" />
                <vers num="4.6.1" />
                <vers num="4.6.10" />
                <vers num="4.6.11" />
                <vers num="4.6.2" />
                <vers num="4.6.3" />
                <vers num="4.6.4" />
                <vers num="4.6.5" />
                <vers num="4.6.6" />
                <vers num="4.6.7" />
                <vers num="4.6.8" />
                <vers num="4.6.9" />
                <vers num="4.7" />
                <vers num="4.7.1" />
                <vers num="4.7.10" />
                <vers num="4.7.2" />
                <vers num="4.7.3" />
                <vers num="4.7.4" />
                <vers num="4.7.5" />
                <vers num="4.7.6" />
                <vers num="4.7.7" />
                <vers num="4.7.8" />
                <vers num="4.7.9" />
                <vers num="4.7_rev_1.15" />
                <vers num="4.7_rev_1.2" />
                <vers num="5.0" />
                <vers num="5.1" />
                <vers num="5.1_rev1.1" />
                <vers num="5.2" />
                <vers num="5.3" />
                <vers num="5.4" />
                <vers num="5.5." />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0273" seq="2008-0273" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="4.3" modified="2009-09-15">
        <desc>
            <descript source="cve">Interpretation conflict in Drupal 4.7.x before 4.7.11 and 5.x before 5.6, when Internet Explorer 6 is used, allows remote attackers to conduct cross-site scripting (XSS) attacks via invalid UTF-8 byte sequences, which are not processed as UTF-8 by Drupal's HTML filtering, but are processed as UTF-8 by Internet Explorer, effectively removing characters from the document and defeating the HTML protection mechanism.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27238">27238</ref>
            <ref source="SECUNIA" patch="1" url="http://secunia.com/advisories/28422">28422</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39619">drupal-utf8-xss(39619)</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2008/0134">ADV-2008-0134</ref>
            <ref source="CONFIRM" url="http://www.vbdrupal.org/forum/showthread.php?t=1349">http://www.vbdrupal.org/forum/showthread.php?t=1349</ref>
            <ref source="CONFIRM" url="http://www.vbdrupal.org/forum/showthread.php?p=6878">http://www.vbdrupal.org/forum/showthread.php?p=6878</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28486">28486</ref>
            <ref source="CONFIRM" url="http://drupal.org/node/208564">http://drupal.org/node/208564</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0127">ADV-2008-0127</ref>
        </refs>
        <vuln_soft>
            <prod vendor="drupal" name="drupal">
                <vers num="4.0.0" />
                <vers num="4.1.0" />
                <vers num="4.2.0_rc" />
                <vers num="4.4" />
                <vers num="4.4.1" />
                <vers num="4.4.2" />
                <vers num="4.4.3" />
                <vers num="4.5" />
                <vers num="4.5.1" />
                <vers num="4.5.2" />
                <vers num="4.5.3" />
                <vers num="4.5.4" />
                <vers num="4.5.5" />
                <vers num="4.5.6" />
                <vers num="4.5.7" />
                <vers num="4.5.8" />
                <vers num="4.6" />
                <vers num="4.6.1" />
                <vers num="4.6.10" />
                <vers num="4.6.11" />
                <vers num="4.6.2" />
                <vers num="4.6.3" />
                <vers num="4.6.4" />
                <vers num="4.6.5" />
                <vers num="4.6.6" />
                <vers num="4.6.7" />
                <vers num="4.6.8" />
                <vers num="4.6.9" />
                <vers num="4.7" />
                <vers num="4.7.1" />
                <vers num="4.7.10" />
                <vers num="4.7.2" />
                <vers num="4.7.3" />
                <vers num="4.7.4" />
                <vers num="4.7.5" />
                <vers num="4.7.6" />
                <vers num="4.7.7" />
                <vers num="4.7.8" />
                <vers num="4.7.9" />
                <vers num="4.7_rev_1.15" />
                <vers num="4.7_rev_1.2" />
                <vers num="5.0" />
                <vers num="5.1" />
                <vers num="5.1_rev1.1" />
                <vers num="5.2" />
                <vers num="5.3" />
                <vers num="5.4" />
                <vers num="5.5." />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:H/Au:N/C:N/I:P/A:N)" CVSS_base_score="2.6" CVSS_exploit_subscore="4.9" CVSS_impact_subscore="2.9" name="CVE-2008-0274" seq="2008-0274" severity="Low" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="2.6" modified="2009-09-15">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in Drupal 4.7.x and 5.x, when certain .htaccess protections are disabled, allows remote attackers to inject arbitrary web script or HTML via crafted links involving theme .tpl.php files.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27238">27238</ref>
            <ref source="SECUNIA" patch="1" url="http://secunia.com/advisories/28422">28422</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39605">drupal-theme-xss(39605)</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2008/0134">ADV-2008-0134</ref>
            <ref source="CONFIRM" url="http://www.vbdrupal.org/forum/showthread.php?t=1349">http://www.vbdrupal.org/forum/showthread.php?t=1349</ref>
            <ref source="CONFIRM" url="http://www.vbdrupal.org/forum/showthread.php?p=6878">http://www.vbdrupal.org/forum/showthread.php?p=6878</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28486">28486</ref>
            <ref source="CONFIRM" url="http://drupal.org/node/208565">http://drupal.org/node/208565</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0127">ADV-2008-0127</ref>
        </refs>
        <vuln_soft>
            <prod vendor="drupal" name="drupal">
                <vers num="4.7" />
                <vers num="5.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0275" seq="2008-0275" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">The Atom 4.7 before 4.7.x-1.0 and 5.x before 5.x-1.0 module for Drupal does not properly manage permissions for node (1) titles, (2) teasers, and (3) bodies, which might allow remote attackers to gain access to syndicated content.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39607">drupal-atom-security-bypass(39607)</ref>
            <ref source="CONFIRM" url="http://drupal.org/node/208527">http://drupal.org/node/208527</ref>
        </refs>
        <vuln_soft>
            <prod vendor="drupal" name="atom_module">
                <vers num="4.7" prev="1" />
                <vers num="5.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0276" seq="2008-0276" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in the Devel module before 5.x-0.1 for Drupal allows remote attackers to inject arbitrary web script or HTML via a site variable, related to lack of escaping of the variable table.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39606">drupal-devel-variable-xss(39606)</ref>
            <ref source="CONFIRM" url="http://drupal.org/node/208524">http://drupal.org/node/208524</ref>
        </refs>
        <vuln_soft>
            <prod vendor="drupal" name="drupal">
                <vers num="4.0.0" />
                <vers num="4.1.0" />
                <vers num="4.2.0_rc" />
                <vers num="4.4" />
                <vers num="4.4.1" />
                <vers num="4.4.2" />
                <vers num="4.4.3" />
                <vers num="4.5" />
                <vers num="4.5.1" />
                <vers num="4.5.2" />
                <vers num="4.5.3" />
                <vers num="4.5.4" />
                <vers num="4.5.5" />
                <vers num="4.5.6" />
                <vers num="4.5.7" />
                <vers num="4.5.8" />
                <vers num="4.6" />
                <vers num="4.6.1" />
                <vers num="4.6.10" />
                <vers num="4.6.11" />
                <vers num="4.6.2" />
                <vers num="4.6.3" />
                <vers num="4.6.4" />
                <vers num="4.6.5" />
                <vers num="4.6.6" />
                <vers num="4.6.7" />
                <vers num="4.6.8" />
                <vers num="4.6.9" />
                <vers num="4.7" />
                <vers num="4.7.1" />
                <vers num="4.7.10" />
                <vers num="4.7.2" />
                <vers num="4.7.3" />
                <vers num="4.7.4" />
                <vers num="4.7.5" />
                <vers num="4.7.6" />
                <vers num="4.7.7" />
                <vers num="4.7.8" />
                <vers num="4.7.9" />
                <vers num="4.7_rev_1.15" />
                <vers num="4.7_rev_1.2" />
                <vers num="5.0" />
                <vers num="5.1" />
                <vers num="5.1_rev1.1" />
                <vers num="5.2" />
                <vers num="5.3" />
                <vers num="5.4" />
                <vers num="5.5." />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:S/C:C/I:C/A:C)" CVSS_base_score="8.5" CVSS_exploit_subscore="6.8" CVSS_impact_subscore="10.0" name="CVE-2008-0277" seq="2008-0277" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="8.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the Fileshare module for Drupal allows remote authenticated users with node-creation privileges to execute arbitrary code via unspecified vectors.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39609">drupal-fileshare-code-execution(39609)</ref>
            <ref source="CONFIRM" url="http://drupal.org/node/208537">http://drupal.org/node/208537</ref>
        </refs>
        <vuln_soft>
            <prod vendor="drupal" name="fileshare_module">
                <vers num="4.7.x" />
                <vers num="5.x" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:S/C:P/I:P/A:P)" CVSS_base_score="6.0" CVSS_exploit_subscore="6.8" CVSS_impact_subscore="6.4" name="CVE-2008-0278" seq="2008-0278" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="6.0" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.php in X7 Chat 2.0.5 and possibly earlier allows remote attackers to execute arbitrary SQL commands via the day parameter in a sm_window action.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39656">x7chatday-sql-injection(39656)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27277">27277</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4907">4907</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28503" adv="1">28503</ref>
        </refs>
        <vuln_soft>
            <prod vendor="x7_group" name="x7_chat">
                <vers num="2.0.5" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0279" seq="2008-0279" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in liretopic.php in Xforum 1.4 and possibly others allows remote attackers to execute arbitrary SQL commands via the topic parameter.  NOTE: the categorie parameter might also be affected.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39654">xforum-liretopic-sql-injection(39654)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27278">27278</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4908">4908</ref>
        </refs>
        <vuln_soft>
            <prod vendor="xforum" name="xforum">
                <vers num="1.4" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0173" seq="2008-0173" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in Gforge 4.6.99 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified parameters, related to RSS exports.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="DEBIAN" patch="1" url="http://www.debian.org/security/2008/dsa-1459">DSA-1459</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27266">27266</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0115" adv="1">ADV-2008-0115</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39666">gforge-multiple-sql-injection(39666)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28451">28451</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28395">28395</ref>
        </refs>
        <vuln_soft>
            <prod vendor="gforge" name="gforge">
                <vers num="4.6.99" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:P/A:P)" CVSS_base_score="3.6" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="4.9" name="CVE-2008-0001" seq="2008-0001" severity="Low" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="3.6" modified="2008-09-10">
        <desc>
            <descript source="cve">VFS in the Linux kernel before 2.6.22.16, and 2.6.23.x before 2.6.23.14, performs tests of access mode by using the flag variable instead of the acc_mode variable, which might allow local users to bypass intended permissions and remove directories.</descript>
        </desc>
        <loss_types>
            <avail />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27280">27280</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00828.html">FEDORA-2008-0748</ref>
            <ref source="CONFIRM" url="https://issues.rpath.com/browse/RPL-2146">https://issues.rpath.com/browse/RPL-2146</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39672">linux-directory-security-bypass(39672)</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/usn-578-1">USN-578-1</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/usn-574-1">USN-574-1</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486485/100/0/threaded">20080117 rPSA-2008-0021-1 kernel</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2008-0089.html">RHSA-2008:0089</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2008:112">MDVSA-2008:112</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2008:044">MDVSA-2008:044</ref>
            <ref source="CONFIRM" url="http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.23.14">http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.23.14</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0151" adv="1">ADV-2008-0151</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2008/dsa-1479">DSA-1479</ref>
            <ref source="CONFIRM" url="http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0021">http://wiki.rpath.com/wiki/Advisories:rPSA-2008-0021</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019289">1019289</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29245" adv="1">29245</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28971" adv="1">28971</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28806" adv="1">28806</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28748" adv="1">28748</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28706" adv="1">28706</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28664" adv="1">28664</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28643" adv="1">28643</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28628" adv="1">28628</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28626" adv="1">28626</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28558" adv="1">28558</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28485" adv="1">28485</ref>
            <ref source="REDHAT" url="http://rhn.redhat.com/errata/RHSA-2008-0055.html">RHSA-2008:0055</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2008-03/msg00002.html">SUSE-SA:2008:013</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2008-02/msg00002.html">SUSE-SA:2008:006</ref>
            <ref source="CONFIRM" url="http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.22.16">http://kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.22.16</ref>
            <ref source="CONFIRM" url="http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=974a9f0b47da74e28f68b9c8645c3786aa5ace1a">http://git.kernel.org/?p=linux/kernel/git/torvalds/linux-2.6.git;a=commitdiff;h=974a9f0b47da74e28f68b9c8645c3786aa5ace1a</ref>
        </refs>
        <vuln_soft>
            <prod vendor="linux" name="linux_kernel">
                <vers num="2.6.22.16" prev="1" />
                <vers num="2.6.23.14" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0280" seq="2008-0280" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.php in MTCMS 2.0 and possibly earlier versions allows remote attackers to execute arbitrary SQL commands via the (1) a or (2) cid parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27224">27224</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486090/100/0/threaded">20080110 MTCMS &lt;=2.0 SQL Injection Vulnerbility</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4882">4882</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39597">mtcms-a-sql-injection(39597)</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3544">3544</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28428">28428</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mtcms" name="mtcms">
                <vers num="2.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0281" seq="2008-0281" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in liste.php in ID-Commerce 2.0 and earlier allows remote attackers to execute arbitrary SQL commands via the idFamille parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39594">idcommerce-liste-sql-injection(39594)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27220">27220</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059538.html">20080110 ID-Commerce Security Advisory - SLR-2007-001</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059537.html">20080110 (( PoC)) ID-Commerce Security Advisory - SLR-2007-001 (( PoC))</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059533.html">20080110 ID-Commerce Security Advisory - SLR-2007-001</ref>
        </refs>
        <vuln_soft>
            <prod vendor="id-commerce" name="id-commerce">
                <vers num="2.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0282" seq="2008-0282" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in welcome/inscription.php in DomPHP 0.81 and earlier allows remote attackers to execute arbitrary SQL commands via the mail parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39593">domphp-inscription-sql-injection(39593)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27212">27212</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4880">4880</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28393" adv="1">28393</ref>
        </refs>
        <vuln_soft>
            <prod vendor="domphp" name="domphp">
                <vers num="0.81" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0283" seq="2008-0283" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">PHP remote file inclusion vulnerability in /aides/index.php in DomPHP 0.81 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the page parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27226">27226</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4883">4883</ref>
        </refs>
        <vuln_soft>
            <prod vendor="domphp" name="domphp">
                <vers num="0.81" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0284" seq="2008-0284" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="4.3" modified="2009-09-15">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in Simple Machines Forum (SMF) 1.1.4 and earlier allows remote attackers to inject arbitrary web script or HTML via (1) Itemid or (2) topic arguments.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39585">simplemachinesforum-itemid-xss(39585)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27218">27218</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486074/100/0/threaded">20080110 Simple Machines Forum Cross-Site Scripting Vulnerabilities</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3540">3540</ref>
        </refs>
        <vuln_soft>
            <prod vendor="simple_machines" name="simple_machines_smf">
                <vers num="1.1.4" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0285" seq="2008-0285" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">ngIRCd 0.10.x before 0.10.4 and 0.11.0 before 0.11.0-pre2 allows remote attackers to cause a denial of service (crash) via crafted IRC PART message, which triggers an invalid dereference.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="http://ngircd.barton.de/doc/ChangeLog">http://ngircd.barton.de/doc/ChangeLog</ref>
            <ref source="CONFIRM" url="http://bugs.gentoo.org/show_bug.cgi?id=204834">http://bugs.gentoo.org/show_bug.cgi?id=204834</ref>
            <ref source="MISC" url="http://arthur.barton.de/cgi-bin/viewcvs.cgi/ngircd/ngircd/src/ngircd/irc-channel.c?r1=1.40&amp;r2=1.41&amp;diff_format=h">http://arthur.barton.de/cgi-bin/viewcvs.cgi/ngircd/ngircd/src/ngircd/irc-channel.c?r1=1.40&amp;r2=1.41&amp;diff_format=h</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27318">27318</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200801-13.xml">GLSA-200801-13</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28673">28673</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28425">28425</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ngircd" name="ngircd">
                <vers num="0.10.3" prev="1" />
                <vers num="0.11.0-pre1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0286" seq="2008-0286" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in admin/login.php in Article Dashboard allows remote attackers to execute arbitrary SQL commands via the (1) user or (2) password fields.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27286">27286</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486323/100/0/threaded">20080115 Article DashBoard all version SQL Injection Vulnerability</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39657">articledashboard-login-sql-injection(39657)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486646/100/0/threaded">20080116 Re: Article DashBoard all version SQL Injection Vulnerability</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3546">3546</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28495">28495</ref>
        </refs>
        <vuln_soft>
            <prod vendor="article_dashboard" name="article_dashboard">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0287" seq="2008-0287" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">PHP remote file inclusion vulnerability in VisionBurst vcart 3.3.2 allows remote attackers to execute arbitrary PHP code via a URL in the abs_path parameter to (1) index.php and (2) checkout.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39616">vcart-checkout-index-file-include(39616)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27231">27231</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4889">4889</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28424" adv="1">28424</ref>
        </refs>
        <vuln_soft>
            <prod vendor="visionburst" name="vcart">
                <vers num="3.3.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0288" seq="2008-0288" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in ImageAlbum 2.0.0b2 allow remote attackers to execute arbitrary SQL commands via the id, which is not properly handled in (1) classes/IADomain.php, (2) classes/IACollection.php, and (3) classes/IAUser.php, as demonstrated via the id parameter in a collection.imageview action.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27240">27240</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486162/100/0/threaded">20080111 ImageAlbum Remote SQL Injection Vulnerabilities</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4895">4895</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3548">3548</ref>
        </refs>
        <vuln_soft>
            <prod vendor="imagealbum" name="imagealbum">
                <vers num="2.0.0b2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0289" seq="2008-0289" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">PHP remote file inclusion vulnerability in view_func.php in Member Area System (MAS) 1.7 and possibly others allows remote attackers to execute arbitrary PHP code via a URL in the i parameter.  NOTE: a second vector might exist via the l parameter.  NOTE: as of 20080118, the vendor has disputed the set of affected versions, stating that the issue "is already fixed, for almost a year."</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39611">mas-viewfunc-file-include(39611)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27244">27244</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486618/100/0/threaded">20080118 Re: Member Area System (MAS) Remote File Include Vulnerability (view_func.php)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486172/100/0/threaded">20080111 Member Area System (MAS) Remote File Include Vulnerability (view_func.php)</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3547">3547</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mansion_productions" name="member_area_system">
                <vers num="1.7" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0290" seq="2008-0290" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in Digital Hive 2.0 RC2 and earlier allow (1) remote attackers to execute arbitrary SQL commands via the selectskin parameter to an unspecified program, or (2) remote authenticated administrators to execute arbitrary SQL commands via the user_id parameter in the gestion_membre.php page to base.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39602">digitalhive-base-sql-injection(39602)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27232">27232</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4887">4887</ref>
        </refs>
        <vuln_soft>
            <prod vendor="digitalhive" name="digitalhive">
                <vers num="2.0_rc2" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="4.6" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.4" name="CVE-2008-0034" seq="2008-0034" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="4.6" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in Passcode Lock in Apple iPhone 1.0 through 1.1.2 allows users with physical access to execute applications without entering the passcode via vectors related to emergency calls.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2008/Jan/msg00000.html">APPLE-SA-2008-01-15</ref>
            <ref source="CONFIRM" url="http://docs.info.apple.com/article.html?artnum=307302">http://docs.info.apple.com/article.html?artnum=307302</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39701">iphone-passcode-lock-security-bypass(39701)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019219">1019219</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27297">27297</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0147">ADV-2008-0147</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28497">28497</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="iphone">
                <vers num="1.0" />
                <vers num="1.0.1" />
                <vers num="1.0.2" />
                <vers num="1.02" />
                <vers num="1.1.1" />
                <vers num="1.1.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0035" seq="2008-0035" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in Foundation, as used in Apple iPhone 1.0 through 1.1.2, iPod touch 1.1 through 1.1.2, and Mac OS X 10.5 through 10.5.1, allows remote attackers to cause a denial of service (application termination) or execute arbitrary code via a crafted URL that triggers memory corruption in Safari.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA08-043B.html">TA08-043B</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39700">iphone-ipod-foundation-code-execution(39700)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019220">1019220</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27296">27296</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0147" adv="1">ADV-2008-0147</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28497" adv="1">28497</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2008/Jan/msg00000.html">APPLE-SA-2008-01-15</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2008/Feb/msg00002.html">APPLE-SA-2008-02-11</ref>
            <ref source="CONFIRM" url="http://docs.info.apple.com/article.html?artnum=307302">http://docs.info.apple.com/article.html?artnum=307302</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0495/references">ADV-2008-0495</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28891">28891</ref>
            <ref source="CONFIRM" url="http://docs.info.apple.com/article.html?artnum=307430">http://docs.info.apple.com/article.html?artnum=307430</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="safari">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:P)" CVSS_base_score="5.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="4.9" name="CVE-2008-0031" seq="2008-0031" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="5.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in Apple QuickTime before 7.4 allows remote attackers to cause a denial of service (application termination) and execurte arbitrary code via a crafted Sorenson 3 video file, which triggers memory corruption.</descript>
        </desc>
        <loss_types>
            <avail />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA08-016A.html">TA08-016A</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2008/Jan/msg00001.html">APPLE-SA-2008-01-15</ref>
            <ref source="CONFIRM" url="http://docs.info.apple.com/article.html?artnum=307301">http://docs.info.apple.com/article.html?artnum=307301</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39695">quicktime-sorenson-code-execution(39695)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019221">1019221</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27298">27298</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0148">ADV-2008-0148</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28502">28502</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="quicktime">
                <vers num="7.3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0122" seq="2008-0122" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="10.0" modified="2009-04-08">
        <desc>
            <descript source="cve">Off-by-one error in the inet_network function in libbind in ISC BIND 9.4.2 and earlier, as used in libc in FreeBSD 6.2 through 7.0-PRERELEASE, allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via crafted input that triggers memory corruption.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT-VN" url="http://www.kb.cert.org/vuls/id/203611">VU#203611</ref>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27283">27283</ref>
            <ref source="FREEBSD" patch="1" url="http://security.freebsd.org/advisories/FreeBSD-SA-08:02.libc.asc" adv="1">FreeBSD-SA-08:02</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00782.html">FEDORA-2008-0904</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00781.html">FEDORA-2008-0903</ref>
            <ref source="CONFIRM" url="https://issues.rpath.com/browse/RPL-2169">https://issues.rpath.com/browse/RPL-2169</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=429149">https://bugzilla.redhat.com/show_bug.cgi?id=429149</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39670">freebsd-inetnetwork-bo(39670)</ref>
            <ref source="CONFIRM" url="http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&amp;ID=4167">http://www14.software.ibm.com/webapp/set2/subscriptions/pqvcmjd?mode=18&amp;ID=4167</ref>
            <ref source="CONFIRM" url="http://www14.software.ibm.com/webapp/set2/subscriptions/ijhifoeblist?mode=7&amp;heading=AIX61&amp;path=/200802/SECURITY/20080227/datafile123640&amp;label=AIX%20libc%20inet_network%20buffer%20overflow">http://www14.software.ibm.com/webapp/set2/subscriptions/ijhifoeblist?mode=7&amp;heading=AIX61&amp;path=/200802/SECURITY/20080227/datafile123640&amp;label=AIX%20libc%20inet_network%20buffer%20overflow</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019189">1019189</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/487000/100/0/threaded">20080124 rPSA-2008-0029-1 bind bind-utils</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2008-0300.html">RHSA-2008:0300</ref>
            <ref source="CONFIRM" url="http://www.isc.org/index.pl?/sw/bind/bind-security.php" adv="1">http://www.isc.org/index.pl?/sw/bind/bind-security.php</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/1743/references" adv="1">ADV-2008-1743</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0703" adv="1">ADV-2008-0703</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0193" adv="1">ADV-2008-0193</ref>
            <ref source="CONFIRM" url="http://support.avaya.com/elmodocs2/security/ASA-2008-244.htm">http://support.avaya.com/elmodocs2/security/ASA-2008-244.htm</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-238493-1">238493</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/30718" adv="1">30718</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/30538" adv="1">30538</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/30313" adv="1">30313</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29323" adv="1">29323</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29161" adv="1">29161</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28579" adv="1">28579</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28487" adv="1">28487</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28429" adv="1">28429</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28367" adv="1">28367</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2008-03/msg00004.html">SUSE-SR:2008:006</ref>
        </refs>
        <vuln_soft>
            <prod vendor="isc" name="bind">
                <vers num="9.4.2" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:P/A:N)" CVSS_base_score="2.1" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="2.9" name="CVE-2008-0216" seq="2008-0216" severity="Low" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="2.1" modified="2008-09-05">
        <desc>
            <descript source="cve">The ptsname function in FreeBSD 6.0 through 7.0-PRERELEASE does not properly verify that a certain portion of a device name is associated with a pty of a user who is calling the pt_chown function, which might allow local users to read data from the pty from another user.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="FREEBSD" patch="1" url="http://security.FreeBSD.org/advisories/FreeBSD-SA-08:01.pty.asc">FreeBSD-SA-08:01</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39667">freebsd-ptsname-information-disclosure(39667)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019191">1019191</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27284">27284</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28498">28498</ref>
        </refs>
        <vuln_soft>
            <prod vendor="freebsd" name="freebsd">
                <vers edition="release" num="6.0" />
                <vers edition="stable" num="6.0" />
                <vers edition="release" num="6.1" />
                <vers edition="release_p10" num="6.1" />
                <vers edition="stable" num="6.1" />
                <vers edition="stable" num="6.2" />
                <vers num="6.3" />
                <vers edition="current" num="7.0" />
                <vers edition="pre-release" num="7.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="6.9" CVSS_exploit_subscore="3.4" CVSS_impact_subscore="10.0" name="CVE-2008-0217" seq="2008-0217" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="6.9" modified="2008-09-05">
        <desc>
            <descript source="cve">The script program in FreeBSD 5.0 through 7.0-PRERELEASE invokes openpty, which creates a pseudo-terminal with world-readable and world-writable permissions when it is not run as root, which allows local users to read data from the terminal of the user running script.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="FREEBSD" patch="1" url="http://security.FreeBSD.org/advisories/FreeBSD-SA-08:01.pty.asc">FreeBSD-SA-08:01</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39665">freebsd-openpty-information-disclosure(39665)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019191">1019191</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27284">27284</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28498">28498</ref>
        </refs>
        <vuln_soft>
            <prod vendor="freebsd" name="freebsd">
                <vers num="5.0" />
                <vers num="5.5" />
                <vers num="6.0" />
                <vers num="6.1" />
                <vers num="6.2" />
                <vers edition="pre-release" num="7.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:P)" CVSS_base_score="5.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="4.9" name="CVE-2008-0032" seq="2008-0032" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="5.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Apple QuickTime before 7.4 allows remote attackers to execute arbitrary code via a movie file containing a Macintosh Resource record with a modified length value in the resource header, which triggers heap corruption.</descript>
        </desc>
        <loss_types>
            <avail />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA08-016A.html">TA08-016A</ref>
            <ref source="IDEFENSE" patch="1" url="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=642">20080115 Apple QuickTime Macintosh Resource Processing Heap Corruption Vulnerability</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2008/Jan/msg00001.html">APPLE-SA-2008-01-15</ref>
            <ref source="CONFIRM" url="http://docs.info.apple.com/article.html?artnum=307301">http://docs.info.apple.com/article.html?artnum=307301</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39696">quicktime-macintosh-code-execution(39696)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019221">1019221</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27301">27301</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0148">ADV-2008-0148</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28502">28502</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="quicktime">
                <vers num="7.3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2008-0033" seq="2008-0033" severity="High" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="9.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in Apple QuickTime before 7.4 allows remote attackers to cause a denial of service (application termination) and execute arbitrary code via a movie file with Image Descriptor (IDSC) atoms containing an invalid atom size, which triggers memory corruption.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA08-016A.html">TA08-016A</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39697">quicktime-idsc-code-execution(39697)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019221">1019221</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486413/100/0/threaded">20080115 TPTI-08-01: Apple Quicktime Image File IDSC Atom Memory Corruption Vulnerability</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0148" adv="1">ADV-2008-0148</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28502" adv="1">28502</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2008/Jan/msg00001.html">APPLE-SA-2008-01-15</ref>
            <ref source="MISC" url="http://dvlabs.tippingpoint.com/advisory/TPTI-08-01">http://dvlabs.tippingpoint.com/advisory/TPTI-08-01</ref>
            <ref source="CONFIRM" url="http://docs.info.apple.com/article.html?artnum=307301">http://docs.info.apple.com/article.html?artnum=307301</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27299">27299</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="quicktime">
                <vers num="7.3.1.70" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0036" seq="2008-0036" severity="Medium" type="CVE" published="2008-01-15" CVSS_version="2.0" CVSS_score="6.8" modified="2009-02-26">
        <desc>
            <descript source="cve">Buffer overflow in Apple QuickTime before 7.4 allows remote attackers to execute arbitrary code via a crafted compressed PICT image, which triggers the overflow during decoding.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA08-016A.html">TA08-016A</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/2064/references">ADV-2008-2064</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/31034">31034</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2008/Jan/msg00001.html">APPLE-SA-2008-01-15</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2008//Jul/msg00000.html">APPLE-SA-2008-07-10</ref>
            <ref source="CONFIRM" url="http://docs.info.apple.com/article.html?artnum=307301">http://docs.info.apple.com/article.html?artnum=307301</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39698">quicktime-pict-bo(39698)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019221">1019221</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27300">27300</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0148">ADV-2008-0148</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28502">28502</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="quicktime">
                <vers num="7.3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0291" seq="2008-0291" severity="High" type="CVE" published="2008-01-16" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in showproduct.asp in RichStrong CMS allows remote attackers to execute arbitrary SQL commands via the cat parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27281">27281</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4910">4910</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39668">richstrongcms-showproduct-sql-injection(39668)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27310">27310</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486402/100/0/threaded">20080116 RichStrong CMS (showproduct.asp?cat=) Remote SQL Injection Exploit</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28449">28449</ref>
        </refs>
        <vuln_soft>
            <prod vendor="hangzhou_rui-qiang" name="richstrong_cms">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0292" seq="2008-0292" severity="Medium" type="CVE" published="2008-01-16" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in photo_album.pl in Dansie Photo Album 1.0 allows remote attackers to inject arbitrary web script or HTML via the search parameter.  NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39664">dansiephotoalbum-photoalbum-xss(39664)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28501">28501</ref>
        </refs>
        <vuln_soft>
            <prod vendor="dansie" name="photo_album">
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0293" seq="2008-0293" severity="Medium" type="CVE" published="2008-01-16" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in cron.php in FreeSeat before 1.1.5d, when format.php has certain modifications, allows remote attackers to bypass authentication and gain privileges via unspecified vectors related to the show_foot function.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39648">freeseat-cron-security-bypass(39648)</ref>
            <ref source="CONFIRM" url="http://sourceforge.net/project/shownotes.php?group_id=160239&amp;release_id=568374">http://sourceforge.net/project/shownotes.php?group_id=160239&amp;release_id=568374</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28459" adv="1">28459</ref>
        </refs>
        <vuln_soft>
            <prod vendor="freeseat" name="freeseat">
                <vers num="1.1.5c" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0294" seq="2008-0294" severity="Medium" type="CVE" published="2008-01-16" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the seat-locking implementation in FreeSeat before 1.1.5d allows attackers to book a seat more than once via unspecified vectors.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39647">freeseat-seatlocking-security-bypass(39647)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27270">27270</ref>
            <ref source="CONFIRM" url="http://sourceforge.net/project/shownotes.php?release_id=568374&amp;group_id=160239">http://sourceforge.net/project/shownotes.php?release_id=568374&amp;group_id=160239</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28459" adv="1">28459</ref>
        </refs>
        <vuln_soft>
            <prod vendor="freeseat" name="freeseat">
                <vers num="1.1.5c" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:S/C:C/I:C/A:C)" CVSS_base_score="8.5" CVSS_exploit_subscore="6.8" CVSS_impact_subscore="10.0" name="CVE-2008-0295" seq="2008-0295" severity="High" type="CVE" published="2008-01-16" CVSS_version="2.0" CVSS_score="8.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Heap-based buffer overflow in modules/access/rtsp/real_sdpplin.c in the Xine library, as used in VideoLAN VLC Media Player 0.8.6d and earlier, allows user-assisted remote attackers to cause a denial of service (crash) or execute arbitrary code via long Session Description Protocol (SDP) data.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27221">27221</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0105" adv="1">ADV-2008-0105</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28383" adv="1">28383</ref>
            <ref source="MISC" url="http://aluigi.altervista.org/adv/vlcxhof-adv.txt">http://aluigi.altervista.org/adv/vlcxhof-adv.txt</ref>
            <ref source="GENTOO" url="http://www.gentoo.org/security/en/glsa/glsa-200803-13.xml">GLSA-200803-13</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2008/dsa-1543">DSA-1543</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29766">29766</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29284">29284</ref>
        </refs>
        <vuln_soft>
            <prod vendor="videolan" name="vlc_media_player">
                <vers num="0.8.6d" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0296" seq="2008-0296" severity="High" type="CVE" published="2008-01-16" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Heap-based buffer overflow in the libaccess_realrtsp plugin in VideoLAN VLC Media Player 0.8.6d and earlier on Windows might allow remote RTSP servers to cause a denial of service (application crash) or execute arbitrary code via a long string.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0105" adv="1">ADV-2008-0105</ref>
            <ref source="MISC" url="http://aluigi.altervista.org/adv/vlcxhof-adv.txt">http://aluigi.altervista.org/adv/vlcxhof-adv.txt</ref>
            <ref source="GENTOO" url="http://www.gentoo.org/security/en/glsa/glsa-200803-13.xml">GLSA-200803-13</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2008/dsa-1543">DSA-1543</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29766">29766</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29284">29284</ref>
        </refs>
        <vuln_soft>
            <prod vendor="videolan" name="vlc_media_player">
                <vers num="0.8.6d" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0297" seq="2008-0297" severity="Medium" type="CVE" published="2008-01-16" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">PhotoKorn allows remote attackers to obtain database credentials via a direct request to update/update3.php, which includes the credentials in its output.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39652">photokorn-update3-information-disclosure(39652)</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4897">4897</ref>
        </refs>
        <vuln_soft>
            <prod vendor="keil_software" name="photokorn">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:P)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0298" seq="2008-0298" severity="Medium" type="CVE" published="2008-01-16" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">KHTML WebKit as used in Apple Safari 2.x allows remote attackers to cause a denial of service (browser crash) via a crafted web page, possibly involving a STYLE attribute of a DIV element.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" patch="1" url="http://xforce.iss.net/xforce/xfdb/39635">safari-khtml-webkit-dos(39635)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27261">27261</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486202/100/0/threaded">20080112 Safari 2 Denial of Service</ref>
            <ref source="MISC" url="http://www.s21sec.com/avisos/s21sec-039-en.txt">http://www.s21sec.com/avisos/s21sec-039-en.txt</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3549">3549</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apple" name="safari">
                <vers num="2.0" />
                <vers num="2.0.1" />
                <vers num="2.0.2" />
                <vers num="2.0.3" />
                <vers num="2.0.4" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0299" seq="2008-0299" severity="Medium" type="CVE" published="2008-01-16" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">common.py in Paramiko 1.7.1 and earlier, when using threads or forked processes, does not properly use RandomPool, which allows one session to obtain sensitive information from another session by predicting the state of the pool.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=428727">https://bugzilla.redhat.com/show_bug.cgi?id=428727</ref>
            <ref source="MISC" url="http://people.debian.org/~nion/nmu-diff/paramiko-1.6.4-1_1.6.4-1.1.patch">http://people.debian.org/~nion/nmu-diff/paramiko-1.6.4-1_1.6.4-1.1.patch</ref>
            <ref source="CONFIRM" url="http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=460706">http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=460706</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00594.html">FEDORA-2008-0722</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00529.html">FEDORA-2008-0644</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39749">paramiko-randompool-info-disclosure(39749)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27307">27307</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200803-07.xml">GLSA-200803-07</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29168">29168</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28510">28510</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28488">28488</ref>
        </refs>
        <vuln_soft>
            <prod vendor="python_software_foundation" name="paramiko">
                <vers num="1.7.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2008-0081" seq="2008-0081" severity="High" type="CVE" published="2008-01-16" CVSS_version="2.0" CVSS_score="9.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in Microsoft Excel 2000 SP3 through 2003 SP2, Viewer 2003, and Office 2004 for Mac allows user-assisted remote attackers to execute arbitrary code via crafted macros, aka "Macro Validation Vulnerability," a different vulnerability than CVE-2007-3490.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA08-071A.html">TA08-071A</ref>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27305">27305</ref>
            <ref source="MS" patch="1" url="http://www.microsoft.com/technet/security/bulletin/ms08-014.mspx">MS08-014</ref>
            <ref source="CONFIRM" patch="1" url="http://www.microsoft.com/technet/security/advisory/947563.mspx">http://www.microsoft.com/technet/security/advisory/947563.mspx</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39699">microsoft-excel-unspecified-code-execution(39699)</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0846/references" adv="1">ADV-2008-0846</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0146" adv="1">ADV-2008-0146</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019200">1019200</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28506" adv="1">28506</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=120585858807305&amp;w=2">SSRT080028</ref>
            <ref source="OVAL" url="http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:5546" sig="1">oval:org.mitre.oval:def:5546</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="excel">
                <vers edition="sp3" num="2000" />
                <vers num="2002" />
                <vers edition="sp2" num="2003" />
            </prod>
            <prod vendor="microsoft" name="excel_viewer">
                <vers num="2003" />
            </prod>
            <prod vendor="microsoft" name="office">
                <vers num="2004" />
            </prod>
        </vuln_soft>
    </entry>
    <entry reject="1" name="CVE-2008-0188" seq="2008-0188" type="CVE" published="2008-01-16" modified="2008-09-10">
        <desc>
            <descript source="cve">** REJECT **  DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: none.  Reason: This candidate was withdrawn by its requester.  Further investigation showed that it was not a new security issue.  Notes: none.</descript>
        </desc>
        <refs />
    </entry>
    <entry reject="1" name="CVE-2008-0189" seq="2008-0189" type="CVE" published="2008-01-16" modified="2008-09-10">
        <desc>
            <descript source="cve">** REJECT **  DO NOT USE THIS CANDIDATE NUMBER.  ConsultIDs: none.  Reason: This candidate was withdrawn by its requester.  Further investigation showed that it was not a new security issue.  Notes: none.</descript>
        </desc>
        <refs />
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="7.2" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="10.0" name="CVE-2008-0302" seq="2008-0302" severity="High" type="CVE" published="2008-01-16" CVSS_version="2.0" CVSS_score="7.2" modified="2008-09-05">
        <desc>
            <descript source="cve">Untrusted search path vulnerability in apt-listchanges.py in apt-listchanges before 2.82 allows local users to execute arbitrary code via a malicious apt-listchanges program in the current working directory.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="CONFIRM" url="http://packages.debian.org/changelogs/pool/main/a/apt-listchanges/apt-listchanges_2.82/changelog">http://packages.debian.org/changelogs/pool/main/a/apt-listchanges/apt-listchanges_2.82/changelog</ref>
            <ref source="CONFIRM" url="http://git.madism.org/?p=apt-listchanges.git;a=commitdiff;h=1bcfbf3dc55413bb83a1782dc9a54515a963fb32">http://git.madism.org/?p=apt-listchanges.git;a=commitdiff;h=1bcfbf3dc55413bb83a1782dc9a54515a963fb32</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/usn-572-1">USN-572-1</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27331">27331</ref>
            <ref source="DEBIAN" url="http://www.debian.org/security/2008/dsa-1465">DSA-1465</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28574">28574</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28513">28513</ref>
        </refs>
        <vuln_soft>
            <prod vendor="debian" name="apt-listchanges">
                <vers num="2.81" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="4.9" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.9" name="CVE-2008-0324" seq="2008-0324" severity="Medium" type="CVE" published="2008-01-16" CVSS_version="2.0" CVSS_score="4.9" modified="2008-09-05">
        <desc>
            <descript source="cve">Cisco Systems VPN Client IPSec Driver (CVPNDRVA.sys) 5.0.02.0090 allows local users to cause a denial of service (crash) by calling the 0x80002038 IOCTL with a small size value, which triggers memory corruption.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39694">cisco-vpnclient-cvpndrva-dos(39694)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27289">27289</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4911">4911</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019240">1019240</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0170">ADV-2008-0170</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28472">28472</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cisco" name="vpn_client">
                <vers edition="" num="5.0.2.0090" />
                <vers edition=":windows" num="5.0.2.0090" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0027" seq="2008-0027" severity="High" type="CVE" published="2008-01-16" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Heap-based buffer overflow in the Certificate Trust List (CTL) Provider service (CTLProvider.exe) in Cisco Unified Communications Manager (CUCM) 4.2 before 4.2(3)SR3 and 4.3 before 4.3(1)SR1, and CallManager 4.0 and 4.1 before 4.1(3)SR5c, allows remote attackers to cause a denial of service or execute arbitrary code via a long request.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CISCO" patch="1" url="http://www.cisco.com/en/US/products/products_security_advisory09186a0080932c61.shtml">20080116 Cisco Unified Communications Manager CTL Provider Heap Overflow</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39704">cisco-cucm-ctl-bo(39704)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27313">27313</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486432/100/0/threaded">20080116 TPTI-08-02: Cisco Call Manager CTLProvider Heap Overflow Vulnerability</ref>
            <ref source="MISC" url="http://dvlabs.tippingpoint.com/advisory/TPTI-08-02">http://dvlabs.tippingpoint.com/advisory/TPTI-08-02</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019223">1019223</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0171">ADV-2008-0171</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3551">3551</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28530">28530</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cisco" name="unified_callmanager">
                <vers num="4.0" />
                <vers num="4.1" />
                <vers num="4.1(3)sr4" />
                <vers num="4.1(3)sr5" />
                <vers num="4.1(3)sr5b" />
            </prod>
            <prod vendor="cisco" name="unified_communications_manager">
                <vers num="4.2" />
                <vers num="4.2.3sr2" />
                <vers num="4.2.3sr2b" />
                <vers num="4.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0325" seq="2008-0325" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in show.php in FaScript FaPersian Petition allows remote attackers to execute arbitrary SQL commands via the id parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27302">27302</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4916">4916</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39716">fascriptfapersian-show-sql-injection(39716)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28522">28522</ref>
        </refs>
        <vuln_soft>
            <prod vendor="fascript" name="fapersian_petition">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0326" seq="2008-0326" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in class/show.php in FaScript FaPersianHack 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to show.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27302">27302</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4917">4917</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39717">fascriptfapersianhack-show-sql-injection(39717)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28565">28565</ref>
        </refs>
        <vuln_soft>
            <prod vendor="fascript" name="fapersianhack">
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0327" seq="2008-0327" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="7.5" modified="2009-09-15">
        <desc>
            <descript source="cve">SQL injection vulnerability in show.php in FaScript FaMp3 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27302">27302</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4914">4914</ref>
            <ref source="OSVDB" url="http://osvdb.org/40330">40330</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39714">fascriptfamp3-show-sql-injection(39714)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28566">28566</ref>
        </refs>
        <vuln_soft>
            <prod vendor="fascript" name="famp3">
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0328" seq="2008-0328" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in page.php in FaScript FaName 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27303">27303</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4915">4915</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39715">fascriptfaname-page-sql-injection(39715)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28528">28528</ref>
        </refs>
        <vuln_soft>
            <prod vendor="fascript" name="faname">
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0329" seq="2008-0329" severity="Medium" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">LulieBlog 1.0.1 and 1.0.2 does not restrict access to (1) article_suppr.php, (2) comment_accepter.php, and (3) comment_refuser.php in Admin/, which allows remote attackers to accept comments, delete comments, and delete articles via the id parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39669">lulieblog-admin-security-bypass(39669)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27290">27290</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4912">4912</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28432" adv="1">28432</ref>
        </refs>
        <vuln_soft>
            <prod vendor="julien_plesniak" name="lulieblog">
                <vers num="1.0.1" />
                <vers num="1.0.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="7.8" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.9" name="CVE-2008-0330" seq="2008-0330" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="7.8" modified="2009-09-15">
        <desc>
            <descript source="cve">Open System Consultants (OSC) Radiator before 4.0 allows remote attackers to cause a denial of service (daemon crash) via malformed RADIUS requests, as demonstrated by packets sent by nmap.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/40664">osc-radiator-unspecified-dos(40664)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27306">27306</ref>
            <ref source="CONFIRM" url="http://www.open.com.au/radiator/history.html">http://www.open.com.au/radiator/history.html</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28463" adv="1">28463</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39730">radiator-radius-dos(39730)</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0598">ADV-2008-0598</ref>
        </refs>
        <vuln_soft>
            <prod vendor="radiator" name="radius_server">
                <vers num="3.17.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="7.8" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.9" name="CVE-2008-0331" seq="2008-0331" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="7.8" modified="2008-11-15">
        <desc>
            <descript source="cve">Unspecified vulnerability in Funkwerk System Software before 7.4.1 PATCH 9 for certain Funkwerk Router / VPN devices allows remote attackers to cause a denial of service (panic and reboot) via unspecified DNS requests.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="http://www.funkwerk-ec.com/portal/downloadcenter/dateien/x2300/r7401p09/readme_741p9_en.pdf">http://www.funkwerk-ec.com/portal/downloadcenter/dateien/x2300/r7401p09/readme_741p9_en.pdf</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28085" adv="1">28085</ref>
            <ref source="OSVDB" url="http://osvdb.org/42782">42782</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39731">x2300-dns-dos(39731)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27314">27314</ref>
        </refs>
        <vuln_soft>
            <prod vendor="funkwerk" name="system_software">
                <vers num="7.4.1_patch_8" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0332" seq="2008-0332" severity="Medium" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in arias/help/effect.php in aria 0.99-6 allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the page parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4920">4920</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39712">aria-effect-file-include(39712)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27311">27311</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486406/100/0/threaded">20080116 [DSECRG-08-002] Local File Include in arias 0.99-6</ref>
        </refs>
        <vuln_soft>
            <prod vendor="aria" name="aria">
                <vers num="0.99-6" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0333" seq="2008-0333" severity="Medium" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in download_view_attachment.aspx in AfterLogic MailBee WebMail Pro 4.1 for ASP.NET allows remote attackers to read arbitrary files via a .. (dot dot) in the temp_filename parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4921">4921</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39724">mailbeewebmail-download-directory-traversal(39724)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27312">27312</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28521">28521</ref>
        </refs>
        <vuln_soft>
            <prod vendor="afterlogic" name="mailbee_webmail_pro">
                <vers num="4.1" />
            </prod>
            <prod vendor="microsoft" name="asp.net">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:H/Au:N/C:N/I:P/A:N)" CVSS_base_score="2.6" CVSS_exploit_subscore="4.9" CVSS_impact_subscore="2.9" name="CVE-2008-0334" seq="2008-0334" severity="Low" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="2.6" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in pm/language/spanish/preferences.php in PMachine Pro 2.4.1 allows remote attackers to inject arbitrary web script or HTML via the L_PREF_NAME[855] parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27282">27282</ref>
            <ref source="MISC" url="http://packetstormsecurity.org/0801-exploits/pMachinePro-241-xss.txt">http://packetstormsecurity.org/0801-exploits/pMachinePro-241-xss.txt</ref>
        </refs>
        <vuln_soft>
            <prod vendor="pmachine" name="pmachine_pro">
                <vers num="2.4.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0335" seq="2008-0335" severity="Medium" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in BugTracker.NET before 2.7.2 allows remote attackers to inject arbitrary web script or HTML via an arbitrary custom text field.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://sourceforge.net/project/shownotes.php?release_id=568160">http://sourceforge.net/project/shownotes.php?release_id=568160</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39650">bugtrackernet-bug-xss(39650)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27275">27275</ref>
            <ref source="CONFIRM" url="http://sourceforge.net/tracker/index.php?func=detail&amp;aid=1867089&amp;group_id=66812&amp;atid=515837">http://sourceforge.net/tracker/index.php?func=detail&amp;aid=1867089&amp;group_id=66812&amp;atid=515837</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28481" adv="1">28481</ref>
        </refs>
        <vuln_soft>
            <prod vendor="bugtracker.net" name="bugtracker.net">
                <vers num="2.7.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0336" seq="2008-0336" severity="Medium" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple cross-site request forgery (CSRF) vulnerabilities in BugTracker.NET before 2.7.2 allow remote attackers to delete arbitrary bugs and perform other administrative tasks via unspecified vectors, possibly related to delete_*.aspx pages, and massedit.aspx, subscribe.aspx, flag.aspx, and relationships.aspx.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://sourceforge.net/project/shownotes.php?group_id=66812&amp;release_id=568160">http://sourceforge.net/project/shownotes.php?group_id=66812&amp;release_id=568160</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39651">bugtrackernet-http-csrf(39651)</ref>
            <ref source="CONFIRM" url="http://sourceforge.net/tracker/index.php?func=detail&amp;aid=1867089&amp;group_id=66812&amp;atid=515837">http://sourceforge.net/tracker/index.php?func=detail&amp;aid=1867089&amp;group_id=66812&amp;atid=515837</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28481" adv="1">28481</ref>
        </refs>
        <vuln_soft>
            <prod vendor="bugtracker.net" name="bugtracker.net">
                <vers num="2.7.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0337" seq="2008-0337" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Heap-based buffer overflow in the _mwProcessReadSocket function in http.c in MiniWeb HTTP Server 0.8.19 allows remote attackers to execute arbitrary code via a long URI.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4923">4923</ref>
            <ref source="MISC" url="http://www.bugtraq.ir/adv/miniweb_english.pdf">http://www.bugtraq.ir/adv/miniweb_english.pdf</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28512" adv="1">28512</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39718">miniweb-mwprocessreadsocket-bo(39718)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27319">27319</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0176">ADV-2008-0176</ref>
        </refs>
        <vuln_soft>
            <prod vendor="miniweb_http_server" name="miniweb_http_server">
                <vers num="0.8.19" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0338" seq="2008-0338" severity="Medium" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in the mwGetLocalFileName function in http.c in MiniWeb HTTP Server 0.8.19 allows remote attackers to read arbitrary files and list arbitrary directories via a (1) .%2e (partially encoded dot dot) or (2) %2e%2e (encoded dot dot) in the URI.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4923">4923</ref>
            <ref source="MISC" url="http://www.bugtraq.ir/adv/miniweb_english.pdf">http://www.bugtraq.ir/adv/miniweb_english.pdf</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28512" adv="1">28512</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39713">miniweb-mwgetlocal-directory-traversal(39713)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27319">27319</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0176">ADV-2008-0176</ref>
        </refs>
        <vuln_soft>
            <prod vendor="miniweb_http_server" name="miniweb_http_server">
                <vers num="0.8.19" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0339" seq="2008-0339" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the XML DB component in Oracle Database 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 has unknown impact and remote attack vectors, aka DB01.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT" patch="1" url="http://www.us-cert.gov/cas/techalerts/TA08-017A.html">TA08-017A</ref>
            <ref source="CONFIRM" patch="1" url="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html">http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html</ref>
            <ref source="HP" patch="1" url="http://marc.info/?l=bugtraq&amp;m=120058413923005&amp;w=2">SSRT061201</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27229">27229</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0150" adv="1">ADV-2008-0150</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019218">1019218</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28518" adv="1">28518</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0180">ADV-2008-0180</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28556">28556</ref>
        </refs>
        <vuln_soft>
            <prod vendor="oracle" name="database_server">
                <vers num="10.1.0.5" />
                <vers num="10.2.0.3" />
                <vers num="9.2.0.8dv" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0340" seq="2008-0340" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple unspecified vulnerabilities in Oracle Database 9.0.1.5 FIPS+, 9.2.0.8, 9.2.0.8DV, 10.1.0.5, and 10.2.0.3 have unknown impact and remote attack vectors, related to the (1) Advanced Queuing component (DB02) and (2) Oracle Spatial component (DB04).</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA08-017A.html">TA08-017A</ref>
            <ref source="CONFIRM" patch="1" url="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html">http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27229">27229</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0150" adv="1">ADV-2008-0150</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019218">1019218</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28518" adv="1">28518</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=120058413923005&amp;w=2">HPSBMA02133</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0180">ADV-2008-0180</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28556">28556</ref>
        </refs>
        <vuln_soft>
            <prod vendor="oracle" name="application_server">
                <vers num="1.0.2.2" />
                <vers num="10.1.2.0.2" />
                <vers num="10.1.2.1.0" />
                <vers num="10.1.2.2.0" />
                <vers num="10.1.3.0.0" />
                <vers num="10.1.3.1.0" />
                <vers num="10.1.3.3.0" />
                <vers num="9.0.4.3" />
            </prod>
            <prod vendor="oracle" name="collaboration_suite">
                <vers num="10.1.2" />
            </prod>
            <prod vendor="oracle" name="database_server">
                <vers num="10.1.0.5" />
                <vers num="10.2.0.2" />
                <vers num="10.2.0.3" />
                <vers num="11.1.0.6" />
                <vers edition="" num="9.0.1.5" />
                <vers edition=":fips" num="9.0.1.5" />
                <vers num="9.2.0.8" />
                <vers num="9.2.0.8dv" />
            </prod>
            <prod vendor="oracle" name="e-business_suite">
                <vers num="11.5.10" />
                <vers num="11.5.10.2" />
                <vers num="11.5.9" />
                <vers num="12.0.0" />
                <vers num="12.0.1" />
                <vers num="12.0.2" />
                <vers num="12.0.3" />
            </prod>
            <prod vendor="oracle" name="peoplesoft_enterprise_peopletools">
                <vers num="8.47" />
                <vers num="8.48" />
                <vers num="8.49" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0341" seq="2008-0341" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the Advanced Queuing component in Oracle Database 9.0.1.5 FIPS+ and 10.1.0.5 has unknown impact and remote attack vectors, aka DB03.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT" patch="1" url="http://www.us-cert.gov/cas/techalerts/TA08-017A.html">TA08-017A</ref>
            <ref source="CONFIRM" patch="1" url="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html">http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27229">27229</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0150" adv="1">ADV-2008-0150</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019218">1019218</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28518" adv="1">28518</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=120058413923005&amp;w=2">SSRT061201</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0180">ADV-2008-0180</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28556">28556</ref>
        </refs>
        <vuln_soft>
            <prod vendor="oracle" name="database_server">
                <vers num="10.1.0.5" />
                <vers edition="" num="9.0.1.5" />
                <vers edition=":fips" num="9.0.1.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0342" seq="2008-0342" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the Upgrade/Downgrade component in Oracle Database 9.2.0.8, 10.1.0.5, and 10.2.0.3 has unknown impact and remote attack vectors, aka DB05.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT" patch="1" url="http://www.us-cert.gov/cas/techalerts/TA08-017A.html">TA08-017A</ref>
            <ref source="CONFIRM" patch="1" url="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html">http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html</ref>
            <ref source="HP" patch="1" url="http://marc.info/?l=bugtraq&amp;m=120058413923005&amp;w=2">SSRT061201</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27229">27229</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0150" adv="1">ADV-2008-0150</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019218">1019218</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28518" adv="1">28518</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0180">ADV-2008-0180</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28556">28556</ref>
        </refs>
        <vuln_soft>
            <prod vendor="oracle" name="database_server">
                <vers num="10.1.0.5" />
                <vers num="10.2.0.3" />
                <vers num="9.2.0.8" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0343" seq="2008-0343" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the Oracle Spatial component in Oracle Database 9.0.1.5 FIPS+, 9.2.0.8, 9.2.0.8DV, and 10.1.0.5 has unknown impact and remote attack vectors, aka DB06.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA08-017A.html">TA08-017A</ref>
            <ref source="CONFIRM" patch="1" url="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html">http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27229">27229</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0150" adv="1">ADV-2008-0150</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019218">1019218</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28518" adv="1">28518</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=120058413923005&amp;w=2">HPSBMA02133</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0180">ADV-2008-0180</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28556">28556</ref>
        </refs>
        <vuln_soft>
            <prod vendor="oracle" name="application_server">
                <vers num="1.0.2.2" />
                <vers num="10.1.2.0.2" />
                <vers num="10.1.2.1.0" />
                <vers num="10.1.2.2.0" />
                <vers num="10.1.3.0.0" />
                <vers num="10.1.3.1.0" />
                <vers num="10.1.3.3.0" />
                <vers num="9.0.4.3" />
            </prod>
            <prod vendor="oracle" name="collaboration_suite">
                <vers num="10.1.2" />
            </prod>
            <prod vendor="oracle" name="database_server">
                <vers num="10.1.0.5" />
                <vers num="10.2.0.2" />
                <vers num="10.2.0.3" />
                <vers num="11.1.0.6" />
                <vers edition="" num="9.0.1.5" />
                <vers edition=":fips" num="9.0.1.5" />
                <vers num="9.2.0.8" />
                <vers num="9.2.0.8dv" />
            </prod>
            <prod vendor="oracle" name="e-business_suite">
                <vers num="11.5.10" />
                <vers num="11.5.10.2" />
                <vers num="11.5.9" />
                <vers num="12.0.0" />
                <vers num="12.0.1" />
                <vers num="12.0.2" />
                <vers num="12.0.3" />
            </prod>
            <prod vendor="oracle" name="peoplesoft_enterprise_peopletools">
                <vers num="8.47" />
                <vers num="8.48" />
                <vers num="8.49" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0344" seq="2008-0344" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the Oracle Spatial component in Oracle Database 10.1.0.5 and 10.2.0.3 has unknown impact and remote attack vectors, aka DB07.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA08-017A.html">TA08-017A</ref>
            <ref source="CONFIRM" patch="1" url="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html">http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27229">27229</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0150" adv="1">ADV-2008-0150</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019218">1019218</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28518" adv="1">28518</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=120058413923005&amp;w=2">HPSBMA02133</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0180">ADV-2008-0180</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28556">28556</ref>
        </refs>
        <vuln_soft>
            <prod vendor="oracle" name="application_server">
                <vers num="1.0.2.2" />
                <vers num="10.1.2.0.2" />
                <vers num="10.1.2.1.0" />
                <vers num="10.1.2.2.0" />
                <vers num="10.1.3.0.0" />
                <vers num="10.1.3.1.0" />
                <vers num="10.1.3.3.0" />
                <vers num="9.0.4.3" />
            </prod>
            <prod vendor="oracle" name="collaboration_suite">
                <vers num="10.1.2" />
            </prod>
            <prod vendor="oracle" name="database_server">
                <vers num="10.1.0.5" />
                <vers num="10.2.0.2" />
                <vers num="10.2.0.3" />
                <vers num="11.1.0.6" />
                <vers edition="" num="9.0.1.5" />
                <vers edition=":fips" num="9.0.1.5" />
                <vers num="9.2.0.8" />
                <vers num="9.2.0.8dv" />
            </prod>
            <prod vendor="oracle" name="e-business_suite">
                <vers num="11.5.10" />
                <vers num="11.5.10.2" />
                <vers num="11.5.9" />
                <vers num="12.0.0" />
                <vers num="12.0.1" />
                <vers num="12.0.2" />
                <vers num="12.0.3" />
            </prod>
            <prod vendor="oracle" name="peoplesoft_enterprise_peopletools">
                <vers num="8.47" />
                <vers num="8.48" />
                <vers num="8.49" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0345" seq="2008-0345" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the Core RDBMS component in Oracle Database 11.1.0.6 has unknown impact and remote attack vectors, aka DB08.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA08-017A.html">TA08-017A</ref>
            <ref source="CONFIRM" patch="1" url="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html">http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27229">27229</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0150" adv="1">ADV-2008-0150</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019218">1019218</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28518" adv="1">28518</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=120058413923005&amp;w=2">SSRT061201</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0180">ADV-2008-0180</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28556">28556</ref>
        </refs>
        <vuln_soft>
            <prod vendor="oracle" name="application_server">
                <vers num="1.0.2.2" />
                <vers num="10.1.2.0.2" />
                <vers num="10.1.2.1.0" />
                <vers num="10.1.2.2.0" />
                <vers num="10.1.3.0.0" />
                <vers num="10.1.3.1.0" />
                <vers num="10.1.3.3.0" />
                <vers num="9.0.4.3" />
            </prod>
            <prod vendor="oracle" name="collaboration_suite">
                <vers num="10.1.2" />
            </prod>
            <prod vendor="oracle" name="database_server">
                <vers num="10.1.0.5" />
                <vers num="10.2.0.2" />
                <vers num="10.2.0.3" />
                <vers num="11.1.0.6" />
                <vers edition="" num="9.0.1.5" />
                <vers edition=":fips" num="9.0.1.5" />
                <vers num="9.2.0.8" />
                <vers num="9.2.0.8dv" />
            </prod>
            <prod vendor="oracle" name="e-business_suite">
                <vers num="11.5.10" />
                <vers num="11.5.10.2" />
                <vers num="11.5.9" />
                <vers num="12.0.0" />
                <vers num="12.0.1" />
                <vers num="12.0.2" />
                <vers num="12.0.3" />
            </prod>
            <prod vendor="oracle" name="peoplesoft_enterprise_peopletools">
                <vers num="8.47" />
                <vers num="8.48" />
                <vers num="8.49" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0346" seq="2008-0346" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="10.0" modified="2009-09-04">
        <desc>
            <descript source="cve">Unspecified vulnerability in the Oracle Jinitiator component in Oracle Application Server 1.3.1.27 and E-Business Suite 11.5.10.2 has unknown impact and remote attack vectors, aka AS01.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA08-017A.html">TA08-017A</ref>
            <ref source="CONFIRM" patch="1" url="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html">http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27229">27229</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0150" adv="1">ADV-2008-0150</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019218">1019218</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28518" adv="1">28518</ref>
            <ref source="OSVDB" url="http://osvdb.org/40294">40294</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=120058413923005&amp;w=2">SSRT061201</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0180">ADV-2008-0180</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28556">28556</ref>
        </refs>
        <vuln_soft>
            <prod vendor="oracle" name="application_server">
                <vers num="1.0.2.2" />
                <vers num="10.1.2.0.2" />
                <vers num="10.1.2.1.0" />
                <vers num="10.1.2.2.0" />
                <vers num="10.1.3.0.0" />
                <vers num="10.1.3.1.0" />
                <vers num="10.1.3.3.0" />
                <vers num="9.0.4.3" />
            </prod>
            <prod vendor="oracle" name="collaboration_suite">
                <vers num="10.1.2" />
            </prod>
            <prod vendor="oracle" name="database_server">
                <vers num="10.1.0.5" />
                <vers num="10.2.0.2" />
                <vers num="10.2.0.3" />
                <vers num="11.1.0.6" />
                <vers edition="" num="9.0.1.5" />
                <vers edition=":fips" num="9.0.1.5" />
                <vers num="9.2.0.8" />
                <vers num="9.2.0.8dv" />
            </prod>
            <prod vendor="oracle" name="e-business_suite">
                <vers num="11.5.10" />
                <vers num="11.5.10.2" />
                <vers num="11.5.9" />
                <vers num="12.0.0" />
                <vers num="12.0.1" />
                <vers num="12.0.2" />
                <vers num="12.0.3" />
            </prod>
            <prod vendor="oracle" name="peoplesoft_enterprise_peopletools">
                <vers num="8.47" />
                <vers num="8.48" />
                <vers num="8.49" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0347" seq="2008-0347" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the Oracle Ultra Search component in Oracle Collaboration Suite 10.1.2; Database 9.2.0.8, 10.1.0.5, and 10.2.0.3; and Application Server 9.0.4.3 and 10.1.2.0.2; has unknown impact and local attack vectors, aka OCS01.  NOTE: Oracle has not disputed a reliable claim that this issue is related to WKSYS schema privileges.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA08-017A.html">TA08-017A</ref>
            <ref source="CONFIRM" patch="1" url="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html">http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27229">27229</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/487322/100/100/threaded">20080130 PeteFinnigan.com Limited advisory for Oracle January 2008 CPU</ref>
            <ref source="MISC" url="http://www.petefinnigan.com/Advisory_CPU_Jan_2008.htm">http://www.petefinnigan.com/Advisory_CPU_Jan_2008.htm</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0180">ADV-2008-0180</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0150" adv="1">ADV-2008-0150</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019218">1019218</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28556" adv="1">28556</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28518" adv="1">28518</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=120058413923005&amp;w=2">SSRT061201</ref>
        </refs>
        <vuln_soft>
            <prod vendor="oracle" name="application_server">
                <vers num="1.0.2.2" />
                <vers num="10.1.2.0.2" />
                <vers num="10.1.2.1.0" />
                <vers num="10.1.2.2.0" />
                <vers num="10.1.3.0.0" />
                <vers num="10.1.3.1.0" />
                <vers num="10.1.3.3.0" />
                <vers num="9.0.4.3" />
            </prod>
            <prod vendor="oracle" name="application_server_9i">
                <vers num="10.1.2.0.2" />
                <vers num="9.0.4.3" />
            </prod>
            <prod vendor="oracle" name="collaboration_suite">
                <vers num="10.1.2" />
            </prod>
            <prod vendor="oracle" name="database_server">
                <vers num="10.1.0.5" />
                <vers num="10.2.0.2" />
                <vers num="10.2.0.3" />
                <vers num="11.1.0.6" />
                <vers edition="" num="9.0.1.5" />
                <vers edition=":fips" num="9.0.1.5" />
                <vers num="9.2.0.8" />
                <vers num="9.2.0.8dv" />
            </prod>
            <prod vendor="oracle" name="e-business_suite">
                <vers num="11.5.10" />
                <vers num="11.5.10.2" />
                <vers num="11.5.9" />
                <vers num="12.0.0" />
                <vers num="12.0.1" />
                <vers num="12.0.2" />
                <vers num="12.0.3" />
            </prod>
            <prod vendor="oracle" name="peoplesoft_enterprise_peopletools">
                <vers num="8.47" />
                <vers num="8.48" />
                <vers num="8.49" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0348" seq="2008-0348" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple unspecified vulnerabilities in the PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.22.18, 8.48.15, and 8.49.07 have unknown impact and remote attack vectors, aka (1) PSE01, (2) PSE03, and (3) PSE04.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA08-017A.html">TA08-017A</ref>
            <ref source="CONFIRM" patch="1" url="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html">http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27229">27229</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0150" adv="1">ADV-2008-0150</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019218">1019218</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28518" adv="1">28518</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=120058413923005&amp;w=2">HPSBMA02133</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0180">ADV-2008-0180</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28556">28556</ref>
        </refs>
        <vuln_soft>
            <prod vendor="oracle" name="application_server">
                <vers num="1.0.2.2" />
                <vers num="10.1.2.0.2" />
                <vers num="10.1.2.1.0" />
                <vers num="10.1.2.2.0" />
                <vers num="10.1.3.0.0" />
                <vers num="10.1.3.1.0" />
                <vers num="10.1.3.3.0" />
                <vers num="9.0.4.3" />
            </prod>
            <prod vendor="oracle" name="collaboration_suite">
                <vers num="10.1.2" />
            </prod>
            <prod vendor="oracle" name="database_server">
                <vers num="10.1.0.5" />
                <vers num="10.2.0.2" />
                <vers num="10.2.0.3" />
                <vers num="11.1.0.6" />
                <vers edition="" num="9.0.1.5" />
                <vers edition=":fips" num="9.0.1.5" />
                <vers num="9.2.0.8" />
                <vers num="9.2.0.8dv" />
            </prod>
            <prod vendor="oracle" name="e-business_suite">
                <vers num="11.5.10" />
                <vers num="11.5.10.2" />
                <vers num="11.5.9" />
                <vers num="12.0.0" />
                <vers num="12.0.1" />
                <vers num="12.0.2" />
                <vers num="12.0.3" />
            </prod>
            <prod vendor="oracle" name="peoplesoft_enterprise_peopletools">
                <vers num="8.47" />
                <vers num="8.48" />
                <vers num="8.49" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0349" seq="2008-0349" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in the PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.15 and 8.49.07 has unknown impact and remote attack vectors, aka PSE02.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT" url="http://www.us-cert.gov/cas/techalerts/TA08-017A.html">TA08-017A</ref>
            <ref source="CONFIRM" patch="1" url="http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html">http://www.oracle.com/technology/deploy/security/critical-patch-updates/cpujan2008.html</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27229">27229</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0150" adv="1">ADV-2008-0150</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019218">1019218</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28518" adv="1">28518</ref>
            <ref source="HP" url="http://marc.info/?l=bugtraq&amp;m=120058413923005&amp;w=2">SSRT061201</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0180">ADV-2008-0180</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28556">28556</ref>
        </refs>
        <vuln_soft>
            <prod vendor="oracle" name="application_server">
                <vers num="1.0.2.2" />
                <vers num="10.1.2.0.2" />
                <vers num="10.1.2.1.0" />
                <vers num="10.1.2.2.0" />
                <vers num="10.1.3.0.0" />
                <vers num="10.1.3.1.0" />
                <vers num="10.1.3.3.0" />
                <vers num="9.0.4.3" />
            </prod>
            <prod vendor="oracle" name="collaboration_suite">
                <vers num="10.1.2" />
            </prod>
            <prod vendor="oracle" name="database_server">
                <vers num="10.1.0.5" />
                <vers num="10.2.0.2" />
                <vers num="10.2.0.3" />
                <vers num="11.1.0.6" />
                <vers edition="" num="9.0.1.5" />
                <vers edition=":fips" num="9.0.1.5" />
                <vers num="9.2.0.8" />
                <vers num="9.2.0.8dv" />
            </prod>
            <prod vendor="oracle" name="e-business_suite">
                <vers num="11.5.10" />
                <vers num="11.5.10.2" />
                <vers num="11.5.9" />
                <vers num="12.0.0" />
                <vers num="12.0.1" />
                <vers num="12.0.2" />
                <vers num="12.0.3" />
            </prod>
            <prod vendor="oracle" name="peoplesoft_enterprise_peopletools">
                <vers num="8.47" />
                <vers num="8.48" />
                <vers num="8.49" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0171" seq="2008-0171" severity="Medium" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">regex/v4/perl_matcher_non_recursive.hpp in the Boost regex library (aka Boost.Regex) in Boost 1.33 and 1.34 allows context-dependent attackers to cause a denial of service (failed assertion and crash) via an invalid regular expression.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://issues.rpath.com/browse/RPL-2143">https://issues.rpath.com/browse/RPL-2143</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/usn-570-1">USN-570-1</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27325">27325</ref>
            <ref source="CONFIRM" url="http://svn.boost.org/trac/boost/changeset/42745">http://svn.boost.org/trac/boost/changeset/42745</ref>
            <ref source="CONFIRM" url="http://svn.boost.org/trac/boost/changeset/42674">http://svn.boost.org/trac/boost/changeset/42674</ref>
            <ref source="CONFIRM" url="http://bugs.gentoo.org/show_bug.cgi?id=205955">http://bugs.gentoo.org/show_bug.cgi?id=205955</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00760.html">FEDORA-2008-0880</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/488102/100/0/threaded">20080213 rPSA-2008-0063-1 boost</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/en/security/advisories?name=MDVSA-2008:032">MDVSA-2008:032</ref>
            <ref source="GENTOO" url="http://www.gentoo.org/security/en/glsa/glsa-200802-08.xml">GLSA-200802-08</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0249">ADV-2008-0249</ref>
            <ref source="CONFIRM" url="http://wiki.rpath.com/Advisories:rPSA-2008-0063">http://wiki.rpath.com/Advisories:rPSA-2008-0063</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29323">29323</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28943">28943</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28860">28860</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28705">28705</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28545">28545</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28527">28527</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28511">28511</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2008-03/msg00004.html">SUSE-SR:2008:006</ref>
        </refs>
        <vuln_soft>
            <prod vendor="boost" name="boost">
                <vers num="1.33" />
                <vers num="1.34" />
            </prod>
            <prod vendor="boost" name="boost_regex_library">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0172" seq="2008-0172" severity="Medium" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">The get_repeat_type function in basic_regex_creator.hpp in the Boost regex library (aka Boost.Regex) in Boost 1.33 and 1.34 allows context-dependent attackers to cause a denial of service (NULL dereference and crash) via an invalid regular expression.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://issues.rpath.com/browse/RPL-2143">https://issues.rpath.com/browse/RPL-2143</ref>
            <ref source="UBUNTU" url="http://www.ubuntu.com/usn/usn-570-1">USN-570-1</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27325">27325</ref>
            <ref source="CONFIRM" url="http://svn.boost.org/trac/boost/changeset/42745">http://svn.boost.org/trac/boost/changeset/42745</ref>
            <ref source="CONFIRM" url="http://svn.boost.org/trac/boost/changeset/42674">http://svn.boost.org/trac/boost/changeset/42674</ref>
            <ref source="CONFIRM" url="http://bugs.gentoo.org/show_bug.cgi?id=205955">http://bugs.gentoo.org/show_bug.cgi?id=205955</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00760.html">FEDORA-2008-0880</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/488102/100/0/threaded">20080213 rPSA-2008-0063-1 boost</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/en/security/advisories?name=MDVSA-2008:032">MDVSA-2008:032</ref>
            <ref source="GENTOO" url="http://www.gentoo.org/security/en/glsa/glsa-200802-08.xml">GLSA-200802-08</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0249">ADV-2008-0249</ref>
            <ref source="CONFIRM" url="http://wiki.rpath.com/Advisories:rPSA-2008-0063">http://wiki.rpath.com/Advisories:rPSA-2008-0063</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29323">29323</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28943">28943</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28860">28860</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28705">28705</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28545">28545</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28527">28527</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28511">28511</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2008-03/msg00004.html">SUSE-SR:2008:006</ref>
        </refs>
        <vuln_soft>
            <prod vendor="boost" name="boost">
                <vers num="1.33" />
                <vers num="1.34" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0350" seq="2008-0350" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="7.5" modified="2009-09-15">
        <desc>
            <descript source="cve">admin/index.php in Evilsentinel 1.0.9 and earlier sends a redirect to the web browser but does not exit, which allows remote attackers to gain administrative privileges and make arbitrary configuration changes.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="SECUNIA" patch="1" url="http://secunia.com/advisories/28427">28427</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27227">27227</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4884">4884</ref>
            <ref source="CONFIRM" url="http://evilsentinel.altervista.org/forum/index.php?topic=49.0">http://evilsentinel.altervista.org/forum/index.php?topic=49.0</ref>
        </refs>
        <vuln_soft>
            <prod vendor="evilsentinel" name="evilsentinel">
                <vers num="1.0.9" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0351" seq="2008-0351" severity="Medium" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="5.0" modified="2009-09-15">
        <desc>
            <descript source="cve">admin/config.php in Evilsentinel 1.0.9 and earlier allows remote attackers to bypass the CAPTCHA test by omitting the es_security_captcha parameter and not invoking captcha.php.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27227">27227</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4884">4884</ref>
        </refs>
        <vuln_soft>
            <prod vendor="evilsentinel" name="evilsentinel">
                <vers num="1.0.9" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="7.8" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.9" name="CVE-2008-0352" seq="2008-0352" severity="High" type="CVE" published="2008-01-17" CVSS_version="2.0" CVSS_score="7.8" modified="2008-09-05">
        <desc>
            <descript source="cve">The Linux kernel 2.6.20 through 2.6.21.1 allows remote attackers to cause a denial of service (panic) via a certain IPv6 packet, possibly involving the Jumbo Payload hop-by-hop option (jumbogram).</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39643">linux-kernel-ipv6-jumbogram-dos(39643)</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4893">4893</ref>
            <ref source="MISC" url="http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.21.2">http://www.kernel.org/pub/linux/kernel/v2.6/ChangeLog-2.6.21.2</ref>
            <ref source="CONFIRM" url="http://bugzilla.kernel.org/show_bug.cgi?id=8450">http://bugzilla.kernel.org/show_bug.cgi?id=8450</ref>
        </refs>
        <vuln_soft>
            <prod vendor="linux" name="linux_kernel">
                <vers edition="rc1" num="2.6.2" />
                <vers edition="rc2" num="2.6.2" />
                <vers edition="rc3" num="2.6.2" />
                <vers edition="rc2" num="2.6.20" />
                <vers num="2.6.20.1" />
                <vers num="2.6.20.10" />
                <vers num="2.6.20.11" />
                <vers num="2.6.20.12" />
                <vers num="2.6.20.13" />
                <vers num="2.6.20.14" />
                <vers num="2.6.20.15" />
                <vers num="2.6.20.2" />
                <vers num="2.6.20.3" />
                <vers num="2.6.20.4" />
                <vers num="2.6.20.5" />
                <vers num="2.6.20.6" />
                <vers num="2.6.20.7" />
                <vers num="2.6.20.8" />
                <vers num="2.6.20.9" />
                <vers edition="git1" num="2.6.21" />
                <vers edition="git2" num="2.6.21" />
                <vers edition="git3" num="2.6.21" />
                <vers edition="git4" num="2.6.21" />
                <vers edition="git5" num="2.6.21" />
                <vers edition="git6" num="2.6.21" />
                <vers edition="git7" num="2.6.21" />
                <vers num="2.6.21.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0353" seq="2008-0353" severity="High" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="7.5" modified="2008-10-11">
        <desc>
            <descript source="cve">SQL injection vulnerability in visualizza_tabelle.php in php-residence 0.7.2 and 1.0 allows remote attackers to execute arbitrary SQL commands via the cognome_cerca parameter.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39739">phpresidence-visualizza-sql-injection(39739)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27320">27320</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4925">4925</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28516" adv="1">28516</ref>
        </refs>
        <vuln_soft>
            <prod vendor="php-residence" name="php-residence">
                <vers num="0.7.2" />
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0354" seq="2008-0354" severity="Medium" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in the chat client in IBM Lotus Sametime 7.5 and 7.5.1 allows user-assisted remote attackers to inject arbitrary web script or HTML via a crafted message, which triggers code execution after a mouseover event initiated by the victim.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019224">1019224</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27316">27316</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0168" adv="1">ADV-2008-0168</ref>
            <ref source="CONFIRM" url="http://www-1.ibm.com/support/docview.wss?uid=swg21292938">http://www-1.ibm.com/support/docview.wss?uid=swg21292938</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/27942" adv="1">27942</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39726">sametime-client-mouseover-xss(39726)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="lotus_sametime">
                <vers num="7.5" />
                <vers num="7.5.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0355" seq="2008-0355" severity="High" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.php in the forum module in PHPEcho CMS, probably 2.0-rc3 and earlier, allows remote attackers to execute arbitrary SQL commands via the id parameter in a section action, a different vector than CVE-2007-2866.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27326">27326</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4929">4929</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39741">phpechocms-index-sql-injection(39741)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="phpecho_cms" name="phpecho_cms">
                <vers num="2.0-rc3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0356" seq="2008-0356" severity="High" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Buffer overflow in the Independent Management Architecture (IMA) service in Citrix Presentation Server (MetaFrame Presentation Server) 4.5 and earlier, Access Essentials 2.0 and earlier, and Desktop Server 1.0 allows remote attackers to execute arbitrary code via an invalid size value in a packet to TCP port 2512 or 2513.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT-VN" url="http://www.kb.cert.org/vuls/id/412228">VU#412228</ref>
            <ref source="CONFIRM" patch="1" url="http://support.citrix.com/article/CTX114487">http://support.citrix.com/article/CTX114487</ref>
            <ref source="MISC" url="http://zerodayinitiative.com/advisories/ZDI-08-002.html">http://zerodayinitiative.com/advisories/ZDI-08-002.html</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0172" adv="1">ADV-2008-0172</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28508" adv="1">28508</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019231">1019231</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27329">27329</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486585/100/0/threaded">20080117 ZDI-08-002: Citrix Presentation Server IMA Service Heap Overflow Vulnerability</ref>
        </refs>
        <vuln_soft>
            <prod vendor="citrix" name="access_essentials">
                <vers num="2.0" prev="1" />
            </prod>
            <prod vendor="citrix" name="desktop_server">
                <vers num="1.0" />
            </prod>
            <prod vendor="citrix" name="metaframe_presentation_server">
                <vers num="4.5" prev="1" />
            </prod>
            <prod vendor="citrix" name="presentation_server">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0357" seq="2008-0357" severity="Medium" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in pages/upload.php in Galaxyscripts Mini File Host 1.2.1 and earlier allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the language parameter.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27327">27327</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4930">4930</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28504" adv="1">28504</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39799">minifilehost-uploadphp-file-include(39799)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="galaxyscripts" name="mini_file_host">
                <vers num="1.2.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0358" seq="2008-0358" severity="Medium" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.php in Pixelpost 1.7 allows remote attackers to execute arbitrary SQL commands via the parent_id parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://www.pixelpost.org/forum/showthread.php?t=7716">http://www.pixelpost.org/forum/showthread.php?t=7716</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27242">27242</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4924">4924</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28499" adv="1">28499</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39721">pixelpost-indexphp-sql-injection(39721)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019238">1019238</ref>
        </refs>
        <vuln_soft>
            <prod vendor="pixelpost" name="pixelpost">
                <vers num="1.7" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0359" seq="2008-0359" severity="Medium" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="4.3" modified="2009-09-11">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in BLOG:CMS 4.2.1b allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) admin.php or (2) index.php in photo/.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27317">27317</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39710">blogcms-index-xss(39710)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28523" adv="1">28523</ref>
            <ref source="MILW0RM" url="http://milw0rm.com/exploits/4919">4919</ref>
            <ref source="BUGTRAQ" url="http://marc.info/?l=bugtraq&amp;m=120049816924383&amp;w=2">20080116 [DSECRG-08-003] blogcms 4.2.1b Multiple Security Vulnerabilities</ref>
            <ref source="CONFIRM" url="http://blogcms.com/wiki/changelog">http://blogcms.com/wiki/changelog</ref>
        </refs>
        <vuln_soft>
            <prod vendor="blog_cms" name="blog_cms">
                <vers num="4.2.1_c" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0360" seq="2008-0360" severity="High" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in BLOG:CMS 4.2.1b allow remote attackers to execute arbitrary SQL commands via (1) the blogid parameter to index.php, (2) the user parameter to action.php, or (3) the field parameter to admin/plugins/table/index.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27317">27317</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28523" adv="1">28523</ref>
            <ref source="MILW0RM" url="http://milw0rm.com/exploits/4919">4919</ref>
            <ref source="BUGTRAQ" url="http://marc.info/?l=bugtraq&amp;m=120049816924383&amp;w=2">20080116 [DSECRG-08-003] blogcms 4.2.1b Multiple Security Vulnerabilities</ref>
            <ref source="CONFIRM" url="http://blogcms.com/wiki/changelog">http://blogcms.com/wiki/changelog</ref>
        </refs>
        <vuln_soft>
            <prod vendor="blog_cms" name="blog_cms">
                <vers num="4.2.1_c" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:N/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0361" seq="2008-0361" severity="Medium" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in agregar_info.php in GradMan 0.1.3 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the tabla parameter.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27324">27324</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486444/100/0/threaded">20080116 Gradman &lt;= 0.1.3 (agregar_info.php?tabla=) Local File Inclusion Exploit</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4926">4926</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28520" adv="1">28520</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39732">gradman-agregarinfo-file-include(39732)</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3552">3552</ref>
        </refs>
        <vuln_soft>
            <prod vendor="instituto_politicnico_nacional" name="gradman">
                <vers num="0.1.3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0362" seq="2008-0362" severity="Medium" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in gallery.php in Clever Copy 3.0 and earlier allows remote attackers to inject arbitrary web script or HTML via the album parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486492/100/0/threaded">20080117 Clever Copy &lt;=3.0 Multiple Remote Vulnerabilities</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39747">clevercopy-gallery-xss(39747)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27335">27335</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3553">3553</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28560">28560</ref>
        </refs>
        <vuln_soft>
            <prod vendor="clever_copy" name="clever_copy">
                <vers num="3.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0363" seq="2008-0363" severity="High" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in Clever Copy 3.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) ID parameter to postcomment.php and the (2) album parameter to gallery.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486492/100/0/threaded">20080117 Clever Copy &lt;=3.0 Multiple Remote Vulnerabilities</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39746">clevercopy-postcomment-sql-injection(39746)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27335">27335</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3553">3553</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28560">28560</ref>
        </refs>
        <vuln_soft>
            <prod vendor="clever_copy" name="clever_copy">
                <vers num="3.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:N/A:P)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0364" seq="2008-0364" severity="Medium" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Buffer overflow in (1) BitTorrent 6.0 and earlier; and (2) uTorrent 1.7.5 and earlier, and 1.8-alpha-7834 and earlier in the 1.8.x series; on Windows allows remote attackers to cause a denial of service (application crash) via a long Unicode string representing a client version identifier.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27321">27321</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39720">utorrent-peers-bo(39720)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39719">bittorrent-peers-bo(39719)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486426/100/0/threaded">20080116 Peers static overflow in BitTorrent 6.0 and uTorrent 1.7.5</ref>
            <ref source="CONFIRM" url="http://download.utorrent.com/1.7.6/utorrent-1.7.6.txt">http://download.utorrent.com/1.7.6/utorrent-1.7.6.txt</ref>
            <ref source="MISC" url="http://aluigi.org/poc/ruttorrent.zip">http://aluigi.org/poc/ruttorrent.zip</ref>
            <ref source="MISC" url="http://aluigi.altervista.org/adv/ruttorrent-adv.txt">http://aluigi.altervista.org/adv/ruttorrent-adv.txt</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3554">3554</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28537">28537</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28533">28533</ref>
            <ref source="CONFIRM" url="http://forum.utorrent.com/viewtopic.php?id=29330">http://forum.utorrent.com/viewtopic.php?id=29330</ref>
        </refs>
        <vuln_soft>
            <prod vendor="bittorrent" name="bittorrent">
                <vers num="6.0" prev="1" />
            </prod>
            <prod vendor="utorrent" name="utorrent">
                <vers num="1.7.5" prev="1" />
                <vers num="1.8-alpha-7834" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="7.2" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="10.0" name="CVE-2008-0365" seq="2008-0365" severity="High" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="7.2" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple buffer overflows in CORE FORCE before 0.95.172 allow local users to cause a denial of service (system crash) and possibly execute arbitrary code in the kernel context via crafted arguments to (1) IOCTL functions in the Firewall module or (2) SSDT hook handler functions in the Registry module.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27341">27341</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486513/100/0/threaded">20080117 CORE-2007-1119: CORE FORCE Kernel Buffer Overflow</ref>
            <ref source="CONFIRM" url="http://www.coresecurity.com/?action=item&amp;id=2025">http://www.coresecurity.com/?action=item&amp;id=2025</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39758">coreforce-firewall-registry-bo(39758)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019245">1019245</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0242">ADV-2008-0242</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3555">3555</ref>
            <ref source="CONFIRM" url="http://force.coresecurity.com/index.php?module=articles&amp;func=display&amp;aid=32">http://force.coresecurity.com/index.php?module=articles&amp;func=display&amp;aid=32</ref>
        </refs>
        <vuln_soft>
            <prod vendor="core_security_technologies" name="core_force">
                <vers num="0.95.167" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="7.2" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="10.0" name="CVE-2008-0366" seq="2008-0366" severity="High" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="7.2" modified="2008-09-05">
        <desc>
            <descript source="cve">CORE FORCE before 0.95.172 does not properly validate arguments to SSDT hook handler functions in the Registry module, which allows local users to cause a denial of service (system crash) and possibly execute arbitrary code in the kernel context via crafted arguments.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27341">27341</ref>
            <ref source="CONFIRM" patch="1" url="http://www.coresecurity.com/?action=item&amp;id=2025">http://www.coresecurity.com/?action=item&amp;id=2025</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486513/100/0/threaded">20080117 CORE-2007-1119: CORE FORCE Kernel Buffer Overflow</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019245">1019245</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0242">ADV-2008-0242</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3555">3555</ref>
            <ref source="CONFIRM" url="http://force.coresecurity.com/index.php?module=articles&amp;func=display&amp;aid=32">http://force.coresecurity.com/index.php?module=articles&amp;func=display&amp;aid=32</ref>
        </refs>
        <vuln_soft>
            <prod vendor="core_security_technologies" name="core_force">
                <vers num="0.95.167" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0006" seq="2008-0006" severity="High" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="7.5" modified="2009-03-13">
        <desc>
            <descript source="cve">Buffer overflow in (1) X.Org Xserver before 1.4.1, and (2) the libfont and libXfont libraries on some platforms including Sun Solaris, allows context-dependent attackers to execute arbitrary code via a PCF font with a large difference between the last col and first col values in the PCF_BDF_ENCODINGS table.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27336">27336</ref>
            <ref source="SUNALERT" patch="1" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-103192-1">103192</ref>
            <ref source="MLIST" patch="1" url="http://lists.freedesktop.org/archives/xorg/2008-January/031918.html">[xorg] 20080117 X.Org security advisory: multiple vulnerabilities in the X server</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00771.html">FEDORA-2008-0891</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00704.html">FEDORA-2008-0831</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00674.html">FEDORA-2008-0794</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00641.html">FEDORA-2008-0760</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=428044">https://bugzilla.redhat.com/show_bug.cgi?id=428044</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39767">xorg-pcffont-bo(39767)</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2008/3000">ADV-2008-3000</ref>
            <ref source="UBUNTU" url="http://www.ubuntulinux.org/support/documentation/usn/usn-571-1">USN-571-1</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27352">27352</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2008-0064.html">RHSA-2008:0064</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2008-0030.html">RHSA-2008:0030</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2008-0029.html">RHSA-2008:0029</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2008:024">MDVSA-2008:024</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2008:022">MDVSA-2008:022</ref>
            <ref source="MANDRIVA" url="http://www.mandriva.com/security/advisories?name=MDVSA-2008:021">MDVSA-2008:021</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0184" adv="1">ADV-2008-0184</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0179" adv="1">ADV-2008-0179</ref>
            <ref source="CONFIRM" url="http://support.avaya.com/elmodocs2/security/ASA-2008-038.htm">http://support.avaya.com/elmodocs2/security/ASA-2008-038.htm</ref>
            <ref source="SECTRACK" url="http://securitytracker.com/id?1019232">1019232</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200801-09.xml">GLSA-200801-09</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/32545">32545</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28621" adv="1">28621</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28592" adv="1">28592</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28571" adv="1">28571</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28550" adv="1">28550</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28544" adv="1">28544</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28542" adv="1">28542</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28540" adv="1">28540</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28536" adv="1">28536</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28535" adv="1">28535</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28532" adv="1">28532</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28500" adv="1">28500</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28273" adv="1">28273</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2008-01/msg00004.html">SUSE-SA:2008:003</ref>
            <ref source="JVNDB" url="http://jvndb.jvn.jp/ja/contents/2008/JVNDB-2008-001043.html">JVNDB-2008-001043</ref>
            <ref source="JVN" url="http://jvn.jp/en/jp/JVN88935101/index.html">JVN#88935101</ref>
            <ref source="HP" url="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01543321">SSRT080083</ref>
            <ref source="HP" url="http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c01543321">SSRT080083</ref>
            <ref source="CONFIRM" url="http://bugs.gentoo.org/show_bug.cgi?id=204362">http://bugs.gentoo.org/show_bug.cgi?id=204362</ref>
            <ref source="CONFIRM" url="https://issues.rpath.com/browse/RPL-2010">https://issues.rpath.com/browse/RPL-2010</ref>
            <ref source="CONFIRM" url="http://www14.software.ibm.com/webapp/set2/subscriptions/ijhifoeblist?mode=7&amp;heading=AIX61&amp;path=/200802/SECURITY/20080227/datafile112539&amp;label=AIX%20X%20server%20multiple%20vulnerabilities">http://www14.software.ibm.com/webapp/set2/subscriptions/ijhifoeblist?mode=7&amp;heading=AIX61&amp;path=/200802/SECURITY/20080227/datafile112539&amp;label=AIX%20X%20server%20multiple%20vulnerabilities</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/487335/100/0/threaded">20080130 rPSA-2008-0032-1 xorg-x11 xorg-x11-fonts xorg-x11-tools xorg-x11-xfs</ref>
            <ref source="OPENBSD" url="http://www.openbsd.org/errata42.html#006_xorg">[4.2] 20080208 006: SECURITY FIX: February 8, 2008</ref>
            <ref source="OPENBSD" url="http://www.openbsd.org/errata41.html#012_xorg">[4.1] 20080208 012: SECURITY FIX: February 8, 2008</ref>
            <ref source="GENTOO" url="http://www.gentoo.org/security/en/glsa/glsa-200805-07.xml">GLSA-200805-07</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0924/references">ADV-2008-0924</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0703">ADV-2008-0703</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0497/references">ADV-2008-0497</ref>
            <ref source="CONFIRM" url="http://support.avaya.com/elmodocs2/security/ASA-2008-077.htm">http://support.avaya.com/elmodocs2/security/ASA-2008-077.htm</ref>
            <ref source="SUNALERT" url="http://sunsolve.sun.com/search/document.do?assetkey=1-26-201230-1">201230</ref>
            <ref source="GENTOO" url="http://security.gentoo.org/glsa/glsa-200804-05.xml">GLSA-200804-05</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/30161">30161</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29707">29707</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29622">29622</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29420">29420</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29139">29139</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28941">28941</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28885">28885</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28843">28843</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28718">28718</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2008-04/msg00005.html">SUSE-SR:2008:008</ref>
            <ref source="APPLE" url="http://lists.apple.com/archives/security-announce/2008/Mar/msg00001.html">APPLE-SA-2008-03-18</ref>
            <ref source="CONFIRM" url="http://docs.info.apple.com/article.html?artnum=307562">http://docs.info.apple.com/article.html?artnum=307562</ref>
        </refs>
        <vuln_soft>
            <prod vendor="sun" name="solaris_libfont">
                <vers num="" />
            </prod>
            <prod vendor="sun" name="solaris_libxfont">
                <vers num="" />
            </prod>
            <prod vendor="x.org" name="xserver">
                <vers num="1.4" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:N/I:P/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0367" seq="2008-0367" severity="Medium" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="5.0" modified="2008-10-23">
        <desc>
            <descript source="cve">Mozilla Firefox 2.0.0.11, 3.0b2, and possibly earlier versions, when prompting for HTTP Basic Authentication, displays the site requesting the authentication after the Realm text, which might make it easier for remote HTTP servers to conduct phishing and spoofing attacks.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="https://bugzilla.mozilla.org/show_bug.cgi?id=244273">https://bugzilla.mozilla.org/show_bug.cgi?id=244273</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27111">27111</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485738/100/200/threaded">20080103 Re: [Full-disclosure] Yet another Dialog Spoofing Vulnerability - Firefox Basic Authentication</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/485732/100/200/threaded">20080103 Yet another Dialog Spoofing Vulnerability - Firefox Basic Authentication</ref>
            <ref source="CONFIRM" url="http://blog.mozilla.com/security/2008/01/04/basicauth-dialog-realm-value-spoofing/">http://blog.mozilla.com/security/2008/01/04/basicauth-dialog-realm-value-spoofing/</ref>
            <ref source="MISC" url="http://aviv.raffon.net/2008/01/05/FirefoxDialogSpoofingFAQ.aspx">http://aviv.raffon.net/2008/01/05/FirefoxDialogSpoofingFAQ.aspx</ref>
            <ref source="MISC" url="http://aviv.raffon.net/2008/01/02/YetAnotherDialogSpoofingFirefoxBasicAuthentication.aspx">http://aviv.raffon.net/2008/01/02/YetAnotherDialogSpoofingFirefoxBasicAuthentication.aspx</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mozilla" name="firefox">
                <vers num="2.0.0.11" prev="1" />
                <vers edition="beta2" num="3.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="7.2" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="10.0" name="CVE-2008-0368" seq="2008-0368" severity="High" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="7.2" modified="2008-09-05">
        <desc>
            <descript source="cve">onedcu in IBM Informix Dynamic Server (IDS) 10.x before 10.00.xC8 allows local users to create arbitrary files via the Trace file argument.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39751">ibm-ids-onedcu-sqlidebug-unspecified(39751)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019237">1019237</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27328">27328</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0169" adv="1">ADV-2008-0169</ref>
            <ref source="CONFIRM" url="http://www-1.ibm.com/support/docview.wss?uid=swg27011556">http://www-1.ibm.com/support/docview.wss?uid=swg27011556</ref>
            <ref source="AIXAPAR" url="http://www-1.ibm.com/support/docview.wss?uid=swg1IC54307">IC54307</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28534" adv="1">28534</ref>
            <ref source="IDEFENSE" url="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=651">20080131 IBM Informix Dynamic Server onedcu File Creation Vulnerability</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="informix_dynamic_server">
                <vers num="10.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="6.9" CVSS_exploit_subscore="3.4" CVSS_impact_subscore="10.0" name="CVE-2008-0369" seq="2008-0369" severity="Medium" type="CVE" published="2008-01-18" CVSS_version="2.0" CVSS_score="6.9" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple unspecified programs in IBM Informix Dynamic Server (IDS) 10.x before 10.00.xC8 allow local users to create arbitrary files by specifying the target file in the SQLIDEBUG environment variable, whose ownership is changed to the user invoking the programs.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39751">ibm-ids-onedcu-sqlidebug-unspecified(39751)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019237">1019237</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27328">27328</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0169" adv="1">ADV-2008-0169</ref>
            <ref source="CONFIRM" url="http://www-1.ibm.com/support/docview.wss?uid=swg27011556">http://www-1.ibm.com/support/docview.wss?uid=swg27011556</ref>
            <ref source="AIXAPAR" url="http://www-1.ibm.com/support/docview.wss?uid=swg1IC54309">IC54309</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28534" adv="1">28534</ref>
            <ref source="IDEFENSE" url="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=650">20080131 IBM Informix Dynamic Server SQLIDEBUG File Creation Vulnerability</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/40009">ibm-ids-sqlidebug-unspecified(40009)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="informix_dynamic_server">
                <vers num="10.00" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0370" seq="2008-0370" severity="Medium" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in dohtaccess.html in cPanel before 11.17 build 19417 allows remote attackers to inject arbitrary web script or HTML via the rurl parameter.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27308">27308</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486404/100/0/threaded">20080116 cPanel Hosting Manager (dohtaccess.html)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28561">28561</ref>
            <ref source="MISC" url="http://aria-security.net/forum/showthread.php?p=1238">http://aria-security.net/forum/showthread.php?p=1238</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3561">3561</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cpanel" name="cpanel">
                <vers num="11.16" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0371" seq="2008-0371" severity="Medium" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in aliTalk 1.9.1.1, when magic_quotes_gpc is disabled, allow remote authenticated users to execute arbitrary SQL commands via (1) the mohit parameter to (a) inc/receivertwo.php; and allow remote attackers to execute arbitrary SQL commands via (2) the id parameter to (b) inc/usercp.php, related to functionz/usercp.php; or (3) the username parameter to (c) admin/index.php, related to functionz/first_process.php, or (d) index.php.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39745">alitalk-index-sql-injection(39745)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39736">alitalk-usercp-sql-injection(39736)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39735">alitalk-adminindex-sql-injection(39735)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39733">alitalk-receivertwo-sql-injection(39733)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27315">27315</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4922">4922</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28515" adv="1">28515</ref>
        </refs>
        <vuln_soft>
            <prod vendor="alilg" name="alitalk">
                <vers num="1.9.1.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0372" seq="2008-0372" severity="Medium" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">8e6 R3000 Internet Filter 2.0.05.33, and other versions before 2.0.11, allows remote attackers to bypass intended restrictions via a fragmented HTTP request.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39723">r3000-urlfilter-security-bypass(39723)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27309">27309</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486770/100/0/threaded">20080121 Re: 8e6 Technologies R3000 Internet Filter Bypass by Request Split</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486398/100/0/threaded">20080116 8e6 Technologies R3000 Internet Filter Bypass by Request Split</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28524" adv="1">28524</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3557">3557</ref>
        </refs>
        <vuln_soft>
            <prod vendor="8e6" name="r3000_internet_filter">
                <vers num="2.0.05.33" prev="1" />
                <vers num="2.0.10" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0373" seq="2008-0373" severity="High" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Unrestricted file upload vulnerability in PHP F1 Max's File Uploader allows remote attackers to upload and execute arbitrary PHP files.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39740">max-index-file-upload(39740)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27285">27285</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486335/100/0/threaded">20080115 Max's File Uploader File Upload Vulnerability</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3572">3572</ref>
        </refs>
        <vuln_soft>
            <prod vendor="php" name="f1_maxs_file_uploader">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0374" seq="2008-0374" severity="High" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">OKI C5510MFP Printer CU H2.15, PU 01.03.01, System F/W 1.01, and Web Page 1.00 sends the configuration of the printer in cleartext, which allows remote attackers to obtain the administrative password by connecting to TCP port 5548 or 7777.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27339">27339</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486511/100/0/threaded">20080117 [CSNC] OKI C5510MFP Printer Password Disclosure</ref>
            <ref source="MISC" url="http://www.csnc.ch/en/modules/news/news_0004.html_1394092626.html">http://www.csnc.ch/en/modules/news/news_0004.html_1394092626.html</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28553" adv="1">28553</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39775">c5510mfp-configuration-info-disclosure(39775)</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3569">3569</ref>
        </refs>
        <vuln_soft>
            <prod vendor="oki_printing_solutions" name="c5510_mfp_printer">
                <vers num="cu_h2.15" />
                <vers num="pu_01.03.01" />
                <vers num="system_fw_1.01" />
                <vers num="web_page_1.00" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0375" seq="2008-0375" severity="High" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in OKI C5510MFP Printer CU H2.15, PU 01.03.01, System F/W 1.01, and Web Page 1.00 allows remote attackers to set the password and obtain administrative access via unspecified vectors.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27339">27339</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486511/100/0/threaded">20080117 [CSNC] OKI C5510MFP Printer Password Disclosure</ref>
            <ref source="MISC" url="http://www.csnc.ch/en/modules/news/news_0004.html_1394092626.html">http://www.csnc.ch/en/modules/news/news_0004.html_1394092626.html</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28553" adv="1">28553</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39776">c5510mfp-password-security-bypass(39776)</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3569">3569</ref>
        </refs>
        <vuln_soft>
            <prod vendor="oki_printing_solutions" name="c5510_mfp_printer">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0376" seq="2008-0376" severity="Medium" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="6.8" modified="2008-10-11">
        <desc>
            <descript source="cve">PHP remote file inclusion vulnerability in inc/linkbar.php in Small Axe Weblog 0.3.1 allows remote attackers to execute arbitrary PHP code via a URL in the cfile parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27345">27345</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4937">4937</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39765">smallaxeweblog-linkbar-file-include(39765)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28568">28568</ref>
        </refs>
        <vuln_soft>
            <prod vendor="softpedia" name="small_axe_weblog">
                <vers num="0.3.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0377" seq="2008-0377" severity="High" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="10.0" modified="2009-09-16">
        <desc>
            <descript source="cve">MicroNews allows remote attackers to bypass authentication and gain administrative privileges via a direct request to admin.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39702">micronews-admin-authentication-bypass(39702)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27288">27288</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486349/100/0/threaded">20080115 MicroNews Admin Direct Access vulnerability</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3556">3556</ref>
        </refs>
        <vuln_soft>
            <prod vendor="news" name="micronews">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0378" seq="2008-0378" severity="Medium" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Stack-based buffer overflow in SocksCap 2.40-051231 and earlier, when "Resolve all names remotely" is enabled, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long hostname.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27357">27357</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486632/100/0/threaded">20080118 SocksCap Stack Overflow (&lt;= 2.40-051231)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39781">sockscap-hostname-bo(39781)</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3560">3560</ref>
        </refs>
        <vuln_soft>
            <prod vendor="nec" name="sockscap">
                <vers num="2.40_051231" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2008-0379" seq="2008-0379" severity="High" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="9.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Race condition in the Enterprise Tree ActiveX control (EnterpriseControls.dll 11.5.0.313) in Crystal Reports XI Release 2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the SelectedSession method, which triggers a buffer overflow.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39743">crystalreports-enterprisetree-bo(39743)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019239">1019239</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27333">27333</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4931">4931</ref>
        </refs>
        <vuln_soft>
            <prod vendor="businessobjects" name="crystal_reports_xi">
                <vers num="r2" />
            </prod>
            <prod vendor="microsoft" name="activex">
                <vers num="enterprise_tree_control" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0380" seq="2008-0380" severity="High" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Buffer overflow in the Digital Data Communications RtspVaPgCtrl ActiveX control (RtspVapgDecoder.dll 1.1.0.29) allows remote attackers to execute arbitrary code via a long MP4Prefix property.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27337">27337</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4932">4932</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0182" adv="1">ADV-2008-0182</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28492">28492</ref>
        </refs>
        <vuln_soft>
            <prod vendor="digital_data_communications" name="rtspvapgdecoder.dll">
                <vers num="1.1.0.29" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0381" seq="2008-0381" severity="Medium" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in Mahara before 0.9.1 has unknown impact and remote attack vectors, probably related to cross-site scripting (XSS) in uploaded files.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="https://eduforge.org/frs/shownotes.php?release_id=342">https://eduforge.org/frs/shownotes.php?release_id=342</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27348">27348</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28484" adv="1">28484</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mahara" name="mahara">
                <vers num="0.9.0" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0382" seq="2008-0382" severity="High" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple eval injection vulnerabilities in MyBB 1.2.10 and earlier allow remote attackers to execute arbitrary code via the sortby parameter to (1) forumdisplay.php or (2) a results action in search.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27322">27322</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486434/100/0/threaded">20080116 [waraxe-2008-SA#061] - Remote Code Execution in MyBB 1.2.10</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4928">4928</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4927">4927</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28509" adv="1">28509</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3559">3559</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mybulletinboard" name="mybulletinboard">
                <vers num="1.0" />
                <vers num="1.0.1" />
                <vers num="1.0.2" />
                <vers num="1.0.3" />
                <vers num="1.0.4" />
                <vers num="1.0_pr2" />
                <vers num="1.1" />
                <vers num="1.1.1" />
                <vers num="1.1.2" />
                <vers num="1.1.3" />
                <vers num="1.1.4" />
                <vers num="1.1.5" />
                <vers num="1.1.7" />
                <vers num="1.1.8" />
                <vers num="1.10" />
                <vers num="1.2" />
                <vers num="1.2.10" />
                <vers num="1.2.3" />
                <vers num="1.2.5" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0383" seq="2008-0383" severity="High" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in MyBB 1.2.10 and earlier allow remote moderators and administrators to execute arbitrary SQL commands via (1) the mergepost parameter in a do_mergeposts action, (2) rid parameter in an allreports action, or (3) threads parameter in a do_multimovethreads action to (a) moderation.php; or (4) gid parameter to (b) admin/usergroups.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27323">27323</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39729">mybb-usergroups-sql-injection(39729)</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39728">mybb-moderationphp-sql-injection(39728)</ref>
            <ref source="MISC" url="http://www.waraxe.us/advisory-62.html">http://www.waraxe.us/advisory-62.html</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486433/100/0/threaded">20080116 [waraxe-2008-SA#062] - Multiple Sql Injections in MyBB 1.2.10</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28509" adv="1">28509</ref>
            <ref source="CONFIRM" url="http://community.mybboard.net/showthread.php?tid=27227">http://community.mybboard.net/showthread.php?tid=27227</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3558">3558</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mybb" name="mybb">
                <vers num="1.2.10" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:N/I:N/A:C)" CVSS_base_score="4.9" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="6.9" name="CVE-2008-0384" seq="2008-0384" severity="Medium" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="4.9" modified="2008-09-05">
        <desc>
            <descript source="cve">OpenBSD 4.2 allows local users to cause a denial of service (kernel panic) by calling the SIOCGIFRTLABEL IOCTL on an interface that does not have a route label, which triggers a NULL pointer dereference when the return value from the rtlabel_id2name function is not checked.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019188">1019188</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27252">27252</ref>
            <ref source="OPENBSD" url="http://www.openbsd.org/errata42.html#005_ifrtlabel">[4.2] 20080111 005: RELIABILITY FIX: January 11, 2008</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4935">4935</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28473" adv="1">28473</ref>
            <ref source="MLIST" url="http://marc.info/?l=openbsd-security-announce&amp;m=120007327504064">[openbsd-security-announce] 20080111 errata 005 for OpenBSD 4.2: local users can provoke a kernel panic</ref>
        </refs>
        <vuln_soft>
            <prod vendor="openbsd" name="openbsd">
                <vers num="4.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0065" seq="2008-0065" severity="High" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple stack-based buffer overflows in in_mp3.dll in Winamp 5.21, 5.5, and 5.51 allow remote attackers to execute arbitrary code via a long (1) artist or (2) name tag in Ultravox streaming metadata, related to construction of stream titles.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" url="http://www.winamp.com/player/version-history">http://www.winamp.com/player/version-history</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0183" adv="1">ADV-2008-0183</ref>
            <ref source="MISC" url="http://secunia.com/secunia_research/2008-2/advisory/">http://secunia.com/secunia_research/2008-2/advisory/</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/27865" adv="1">27865</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39778">winamp-inmp3-bo(39778)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27344">27344</ref>
        </refs>
        <vuln_soft>
            <prod vendor="winamp" name="nullsoft_winamp">
                <vers num="5.21" />
                <vers num="5.5" />
                <vers num="5.51" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0128" seq="2008-0128" severity="Medium" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="5.0" modified="2009-02-05">
        <desc>
            <descript source="cve">The SingleSignOn Valve (org.apache.catalina.authenticator.SingleSignOn) in Apache Tomcat before 5.5.21 does not set the secure flag for the JSESSIONIDSSO cookie in an https session, which can cause the cookie to be sent in http requests and make it easier for remote attackers to capture this cookie.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://issues.apache.org/bugzilla/show_bug.cgi?id=41217">http://issues.apache.org/bugzilla/show_bug.cgi?id=41217</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39804">apache-singlesignon-information-disclosure(39804)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27365">27365</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500412/100/0/threaded">20090127 CA20090123-01: Cohesion Tomcat Multiple Vulnerabilities (Updated - v1.1)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/500396/100/0/threaded">20090124 CA20090123-01: Cohesion Tomcat Multiple Vulnerabilities</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2009/0233">ADV-2009-0233</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0192" adv="1">ADV-2008-0192</ref>
            <ref source="CONFIRM" url="http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=197540">http://support.ca.com/irj/portal/anonymous/phpsupcontent?contentID=197540</ref>
            <ref source="CONFIRM" url="http://security-tracker.debian.net/tracker/CVE-2008-0128">http://security-tracker.debian.net/tracker/CVE-2008-0128</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/33668">33668</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/31493">31493</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28552" adv="1">28552</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28549" adv="1">28549</ref>
            <ref source="REDHAT" url="http://rhn.redhat.com/errata/RHSA-2008-0630.html">RHSA-2008:0630</ref>
            <ref source="CONFIRM" url="http://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/23.aspx">http://community.ca.com/blogs/casecurityresponseblog/archive/2009/01/23.aspx</ref>
            <ref source="REDHAT" url="http://www.redhat.com/support/errata/RHSA-2008-0261.html">RHSA-2008:0261</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29242">29242</ref>
            <ref source="SUSE" url="http://lists.opensuse.org/opensuse-security-announce/2008-03/msg00001.html">SUSE-SR:2008:005</ref>
        </refs>
        <vuln_soft>
            <prod vendor="apache" name="tomcat">
                <vers num="5.5.20" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0388" seq="2008-0388" severity="Medium" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="6.8" modified="2009-08-25">
        <desc>
            <descript source="cve">SQL injection vulnerability in the WP-Forum 1.7.4 plugin for WordPress allows remote attackers to execute arbitrary SQL commands via the user parameter in a showprofile action to the default URI.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39800">wpforum-index-sql-injection(39800)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27362">27362</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4939">4939</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0235" adv="1">ADV-2008-0235</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28567" adv="1">28567</ref>
            <ref source="OSVDB" url="http://osvdb.org/52211">52211</ref>
            <ref source="BUGTRAQ" url="http://archives.neohapsis.com/archives/bugtraq/2008-02/0272.html">20080216 WordPress forumaction (PAGE_id)(user)SQL Injectio</ref>
            <ref source="CONFIRM" url="http://weblogtoolscollection.com/archives/2008/01/21/wp-forum-plugin-security-bulletin/">http://weblogtoolscollection.com/archives/2008/01/21/wp-forum-plugin-security-bulletin/</ref>
        </refs>
        <vuln_soft>
            <prod vendor="wordpress" name="wp_forum">
                <vers num="1.7.4" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0389" seq="2008-0389" severity="High" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="10.0" modified="2009-06-17">
        <desc>
            <descript source="cve">Unspecified vulnerability in the serveServletsByClassnameEnabled feature in IBM WebSphere Application Server (WAS) 6.0 through 6.0.2.25, 6.1 through 6.1.0.14, and 5.1.1.x before 5.1.1.18 has unknown impact and attack vectors.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27371">27371</ref>
            <ref source="AIXAPAR" patch="1" url="http://www-1.ibm.com/support/docview.wss?uid=swg24018067" adv="1">PK52059</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39808">websphere-serveservlets-unspecified(39808)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019894">1019894</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019251">1019251</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/1133" adv="1">ADV-2008-1133</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0219" adv="1">ADV-2008-0219</ref>
            <ref source="CONFIRM" url="http://www-1.ibm.com/support/docview.wss?uid=swg27006879#51118">http://www-1.ibm.com/support/docview.wss?uid=swg27006879#51118</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/29687" adv="1">29687</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28576" adv="1">28576</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="websphere_application_server">
                <vers num="5.1.1" />
                <vers num="5.1.1.1" />
                <vers num="5.1.1.10" />
                <vers num="5.1.1.12" />
                <vers num="5.1.1.14" />
                <vers num="5.1.1.15" />
                <vers num="5.1.1.16" />
                <vers num="5.1.1.17" prev="1" />
                <vers num="5.1.1.2" />
                <vers num="5.1.1.3" />
                <vers num="5.1.1.4" />
                <vers num="5.1.1.5" />
                <vers num="5.1.1.6" />
                <vers num="5.1.1.7" />
                <vers num="5.1.1.8" />
                <vers num="5.1.1.9" />
                <vers num="6.0" />
                <vers num="6.0.1" />
                <vers edition="" num="6.0.2" />
                <vers edition=":fp17" num="6.0.2" />
                <vers num="6.0.2.1" />
                <vers num="6.0.2.11" />
                <vers num="6.0.2.13" />
                <vers num="6.0.2.19" />
                <vers num="6.0.2.22" />
                <vers num="6.0.2.23" />
                <vers num="6.0.2.24" />
                <vers num="6.0.2.25" />
                <vers num="6.0.2.3" />
                <vers num="6.0.2.5" />
                <vers num="6.0.2.7" />
                <vers num="6.0.2.9" />
                <vers num="6.1" />
                <vers num="6.1.1" />
                <vers num="6.1.13" />
                <vers num="6.1.14" />
                <vers num="6.1.3" />
                <vers num="6.1.5" />
                <vers num="6.1.6" />
                <vers num="6.1.7" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0390" seq="2008-0390" severity="High" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">stat.php in AuraCMS 1.62, and Mod Block Statistik for AuraCMS, allows remote attackers to inject arbitrary PHP code into online.db.txt via the X-Forwarded-For HTTP header in a stat action to index.php, and execute online.db.txt via a certain request to index.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27342">27342</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4933">4933</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39777">auracms-stat-code-execution(39777)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="auracms" name="auracms">
                <vers num="1.62" />
            </prod>
            <prod vendor="auracms" name="mod_block_statistik">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0391" seq="2008-0391" severity="High" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">inc/elementz.php in aliTalk 1.9.1.1 does not properly verify authentication, which allows remote attackers to add an arbitrary user account via a modified lilil parameter, in conjunction with the ubild and pa parameters.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27315">27315</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4922">4922</ref>
        </refs>
        <vuln_soft>
            <prod vendor="alilg" name="alitalk">
                <vers num="1.9.1.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2008-0392" seq="2008-0392" severity="High" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="9.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple buffer overflows in Microsoft Visual Basic Enterprise Edition 6.0 SP6 allow user-assisted remote attackers to execute arbitrary code via a .dsr file with a long (1) ConnectionName or (2) CommandName line.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39773">visualbasic-enterprise-dsr-bo(39773)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27349">27349</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4938">4938</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019258">1019258</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0195">ADV-2008-0195</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28563">28563</ref>
        </refs>
        <vuln_soft>
            <prod vendor="microsoft" name="visual_basic">
                <vers edition="sp6" num="6.0" />
                <vers edition="sp6:enterprise" num="6.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:N)" CVSS_base_score="5.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="4.9" name="CVE-2008-0393" seq="2008-0393" severity="Medium" type="CVE" published="2008-01-22" CVSS_version="2.0" CVSS_score="5.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in info.php in GradMan 0.1.3 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the tabla parameter, a different vector than CVE-2008-0361.</descript>
        </desc>
        <loss_types>
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39768">gradman-info-file-include(39768)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27343">27343</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4936">4936</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28520" adv="1">28520</ref>
        </refs>
        <vuln_soft>
            <prod vendor="gradman" name="gradman">
                <vers num="0.1.3" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0394" seq="2008-0394" severity="High" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">Buffer overflow in Citadel SMTP server 7.10 and earlier allows remote attackers to execute arbitrary code via a long RCPT TO command, which is not properly handled by the makeuserkey function.  NOTE: some of these details were obtained from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39807">citadel-makeuserkey-bo(39807)</ref>
            <ref source="MISC" url="http://www.milw0rm.com/sploits/2008-vs-GNU-citadel.tar.gz">http://www.milw0rm.com/sploits/2008-vs-GNU-citadel.tar.gz</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4949">4949</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28590" adv="1">28590</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019255">1019255</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27376">27376</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0252">ADV-2008-0252</ref>
        </refs>
        <vuln_soft>
            <prod vendor="citadel" name="smtp">
                <vers num="7.10" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0395" seq="2008-0395" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Kayako SupportSuite 3.11.01 allows remote attackers to obtain server configuration information via a direct request to syncml/index.php, which prints the contents of the $_SERVER superglobal.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MISC" url="http://www.waraxe.us/advisory-63.html">http://www.waraxe.us/advisory-63.html</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486762/100/0/threaded">20080121 [waraxe-2008-SA#063] - Information Leakage in Kayako SupportSuite 3.11.01</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28613" adv="1">28613</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3573">3573</ref>
        </refs>
        <vuln_soft>
            <prod vendor="kayako" name="supportsuite">
                <vers num="3.11.01" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:N/A:N)" CVSS_base_score="7.8" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.9" name="CVE-2008-0396" seq="2008-0396" severity="High" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="7.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in BitDefender Update Server (http.exe), as used in BitDefender products including Security for Fileservers and Enterprise Manager (BDEM), allows remote attackers to read arbitrary files via .. (dot dot) sequences in an HTTP request.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39802">bitdefender-http-server-directory-traversal(39802)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27358">27358</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486701/100/0/threaded">20080119 BitDefender Update Server - Unauthorized Remote File Access Vulnerability</ref>
            <ref source="MISC" url="http://www.oliverkarow.de/research/bitdefender.txt">http://www.oliverkarow.de/research/bitdefender.txt</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0213" adv="1">ADV-2008-0213</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28578" adv="1">28578</ref>
            <ref source="MISC" url="http://oliver.greyhat.de/2008/01/19/bitdefender-unauthorized-remote-file-access-vulnerability/">http://oliver.greyhat.de/2008/01/19/bitdefender-unauthorized-remote-file-access-vulnerability/</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3568">3568</ref>
        </refs>
        <vuln_soft>
            <prod vendor="bitdefender" name="update_server">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0397" seq="2008-0397" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in aflog 1.01, and possibly earlier versions, allow remote attackers to execute arbitrary SQL commands via (1) the id parameter to comments.php and (2) an unspecified parameter to view.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27398">27398</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4958">4958</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0255">ADV-2008-0255</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28594">28594</ref>
        </refs>
        <vuln_soft>
            <prod vendor="aflog.org" name="aflog">
                <vers num="1.01" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0398" seq="2008-0398" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in aflog 1.01, and possibly earlier versions, allows remote attackers to inject arbitrary web script or HTML via the comment form.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27398">27398</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4958">4958</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0255">ADV-2008-0255</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28594">28594</ref>
        </refs>
        <vuln_soft>
            <prod vendor="aflog" name="aflog">
                <vers num="1.01" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0399" seq="2008-0399" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple buffer overflows in Toshiba Surveillance (Surveillix) RecordSend ActiveX control (MeIpCamX.DLL 1.0.0.4) allow remote attackers to execute arbitrary code via long arguments to the (1) SetPort and (2) SetIpAddress methods.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39792">toshiba-recordsend-bo(39792)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27360">27360</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4946">4946</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0214" adv="1">ADV-2008-0214</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28557" adv="1">28557</ref>
            <ref source="MISC" url="http://retrogod.altervista.org/rgod_toshiba_control.html">http://retrogod.altervista.org/rgod_toshiba_control.html</ref>
        </refs>
        <vuln_soft>
            <prod vendor="toshiba" name="surveillix">
                <vers num="1.0.0.4" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0400" seq="2008-0400" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in header.tpl.php in the modern template for Singapore 0.10.1 allows remote attackers to inject arbitrary web script or HTML via the gallery parameter to default.php.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27382">27382</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0234">ADV-2008-0234</ref>
            <ref source="MISC" url="http://trew.icenetx.net/toolz/advisory-singapore-modern-template.txt">http://trew.icenetx.net/toolz/advisory-singapore-modern-template.txt</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28573" adv="1">28573</ref>
        </refs>
        <vuln_soft>
            <prod vendor="modern" name="modern">
                <vers num="1.3.2" />
            </prod>
            <prod vendor="singapore" name="singapore">
                <vers num="0.10.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0401" seq="2008-0401" severity="High" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Buffer overflow in the logging functionality of the HTTP server in IBM Tivoli Provisioning Manager for OS Deployment (TPMfOSD) before 5.1.0.3 Interim Fix 3 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via an HTTP request with a long method string to port 443/tcp.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CERT-VN" url="http://www.kb.cert.org/vuls/id/158609">VU#158609</ref>
            <ref source="CONFIRM" patch="1" url="http://www-1.ibm.com/support/docview.wss?uid=swg24018010">http://www-1.ibm.com/support/docview.wss?uid=swg24018010</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39819">tivoli-provisioning-http-unspecified(39819)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019249">1019249</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27387">27387</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0239" adv="1">ADV-2008-0239</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28604" adv="1">28604</ref>
            <ref source="IDEFENSE" url="http://labs.idefense.com/intelligence/vulnerabilities/display.php?id=647">20080122 IBM Tivoli PMfOSD HTTP Request Method Buffer Overflow Vulnerability</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="tivoli_provisioning_manager_os_deployment">
                <vers num="5.1.0.2" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:S/C:P/I:P/A:P)" CVSS_base_score="6.0" CVSS_exploit_subscore="6.8" CVSS_impact_subscore="6.4" name="CVE-2008-0402" seq="2008-0402" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="6.0" modified="2008-10-23">
        <desc>
            <descript source="cve">Unspecified vulnerability in IBM WebSphere Business Modeler Basic and Advanced 6.0.2.1 before Interim Fix 11 allows remote authenticated users to bypass intended access restrictions and delete unspecified repository resources via unknown vectors, even when they are not administrators or members of the repository's owning group.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CONFIRM" patch="1" url="http://www-1.ibm.com/support/docview.wss?uid=swg24018061">http://www-1.ibm.com/support/docview.wss?uid=swg24018061</ref>
            <ref source="CONFIRM" patch="1" url="http://www-1.ibm.com/support/docview.wss?uid=swg24018060">http://www-1.ibm.com/support/docview.wss?uid=swg24018060</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39830">websphere-repository-weak-security(39830)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019252">1019252</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27389">27389</ref>
            <ref source="AIXAPAR" url="http://www-1.ibm.com/support/search.wss?rs=0&amp;q=JR28175&amp;apar=only">JR28175</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28586" adv="1">28586</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0254">ADV-2008-0254</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="websphere_business_modeler">
                <vers edition="" num="6.0.2_1" />
                <vers edition=":advanced" num="6.0.2_1" />
                <vers edition=":basic" num="6.0.2_1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:S/C:P/I:P/A:N)" CVSS_base_score="5.5" CVSS_exploit_subscore="8.0" CVSS_impact_subscore="4.9" name="CVE-2008-0403" seq="2008-0403" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="5.5" modified="2008-09-05">
        <desc>
            <descript source="cve">The web server in Belkin Wireless G Plus MIMO Router F5D9230-4 does not require authentication for SaveCfgFile.cgi, which allows remote attackers to read and modify configuration via a direct request to SaveCfgFile.cgi.</descript>
        </desc>
        <loss_types>
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39793">belkin-savecfgfile-authentication-bypass(39793)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27359">27359</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486748/100/0/threaded">20080119 Belkin Wireless G Plus MIMO Router F5D9230-4 Authentication Bypass Vulnerability</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4941">4941</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0215" adv="1">ADV-2008-0215</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3566">3566</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28554">28554</ref>
        </refs>
        <vuln_soft>
            <prod vendor="belkin" name="f5d9230-4">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0404" seq="2008-0404" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in Mantis before 1.1.1 allows remote attackers to inject arbitrary web script or HTML via vectors related to the "Most active bugs" summary.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27367">27367</ref>
            <ref source="CONFIRM" patch="1" url="http://sourceforge.net/project/shownotes.php?release_id=569765">http://sourceforge.net/project/shownotes.php?release_id=569765</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00734.html">FEDORA-2008-0856</ref>
            <ref source="FEDORA" url="https://www.redhat.com/archives/fedora-package-announce/2008-January/msg00676.html">FEDORA-2008-0796</ref>
            <ref source="CONFIRM" url="https://bugzilla.redhat.com/show_bug.cgi?id=429552">https://bugzilla.redhat.com/show_bug.cgi?id=429552</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39801">mantis-mostactive-xss(39801)</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0232" adv="1">ADV-2008-0232</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28591" adv="1">28591</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28577" adv="1">28577</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mantis" name="mantis">
                <vers num="0.10" />
                <vers num="0.10.1" />
                <vers num="0.10.2" />
                <vers num="0.11" />
                <vers num="0.11.1" />
                <vers num="0.12" />
                <vers num="0.13" />
                <vers num="0.13.1" />
                <vers num="0.14" />
                <vers num="0.14.1" />
                <vers num="0.14.2" />
                <vers num="0.14.3" />
                <vers num="0.14.4" />
                <vers num="0.14.5" />
                <vers num="0.14.6" />
                <vers num="0.14.7" />
                <vers num="0.14.8" />
                <vers num="0.15" />
                <vers num="0.15.1" />
                <vers num="0.15.10" />
                <vers num="0.15.11" />
                <vers num="0.15.12" />
                <vers num="0.15.2" />
                <vers num="0.15.3" />
                <vers num="0.15.4" />
                <vers num="0.15.5" />
                <vers num="0.15.6" />
                <vers num="0.15.7" />
                <vers num="0.15.8" />
                <vers num="0.15.9" />
                <vers num="0.16" />
                <vers num="0.16.0" />
                <vers num="0.16.1" />
                <vers num="0.17" />
                <vers num="0.17.0" />
                <vers num="0.17.1" />
                <vers num="0.17.2" />
                <vers num="0.17.3" />
                <vers num="0.17.4" />
                <vers num="0.17.4a" />
                <vers num="0.17.5" />
                <vers num="0.18" />
                <vers num="0.18.0" />
                <vers num="0.18.0_rc1" />
                <vers num="0.18.0a2" />
                <vers num="0.18.0a3" />
                <vers num="0.18.0a4" />
                <vers num="0.18.2" />
                <vers num="0.18.3" />
                <vers num="0.18a1" />
                <vers num="0.19.0" />
                <vers num="0.19.0_rc1" />
                <vers num="0.19.0a" />
                <vers num="0.19.0a1" />
                <vers num="0.19.0a2" />
                <vers num="0.19.1" />
                <vers num="0.19.2" />
                <vers num="0.19.3" />
                <vers num="0.19.4" />
                <vers num="0.9" />
                <vers num="0.9.1" />
                <vers num="1.0" />
                <vers num="1.0.0_rc1" />
                <vers num="1.0.0_rc2" />
                <vers num="1.0.0_rc3" />
                <vers num="1.0.0_rc4" />
                <vers num="1.0.0a1" />
                <vers num="1.0.0a2" />
                <vers num="1.0.0a3" />
                <vers num="1.0.1" />
                <vers num="1.1" />
                <vers num="1.1.0" prev="1" />
                <vers num="1.1.0a1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0421" seq="2008-0421" severity="High" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in Invision Gallery 2.0.7 and earlier allows remote attackers to execute arbitrary SQL commands via the album parameter in a rate command.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs />
        <vuln_soft>
            <prod vendor="invision_power_services" name="invision_gallery">
                <vers num="2.0.7" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:N/A:C)" CVSS_base_score="7.1" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.9" name="CVE-2008-0028" seq="2008-0028" severity="High" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="7.1" modified="2008-09-05">
        <desc>
            <descript source="cve">Unspecified vulnerability in Cisco PIX 500 Series Security Appliance and 5500 Series Adaptive Security Appliance (ASA) before 7.2(3)6 and 8.0(3), when the Time-to-Live (TTL) decrement feature is enabled, allows remote attackers to cause a denial of service (device reload) via a crafted IP packet.</descript>
        </desc>
        <loss_types>
            <avail />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39862">pix-asa-ttl-dos(39862)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019263">1019263</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019262">1019262</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27418">27418</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0259" adv="1">ADV-2008-0259</ref>
            <ref source="CISCO" url="http://www.cisco.com/warp/public/707/cisco-sa-20080123-asa.shtml">20080123 Cisco PIX and ASA Time-to-Live Vulnerability</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28625" adv="1">28625</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cisco" name="5500_adaptive_security_appliance">
                <vers edition="2" num="7.2" prev="1" />
            </prod>
            <prod vendor="cisco" name="5500_series_adaptive_security_appliance">
                <vers edition="2" num="8.0" prev="1" />
            </prod>
            <prod vendor="cisco" name="pix_firewall">
                <vers num="7.2(2)" prev="1" />
                <vers num="8.0(2)" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0029" seq="2008-0029" severity="High" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Cisco Application Velocity System (AVS) before 5.1.0 is installed with default passwords for some system accounts, which allows remote attackers to gain privileges.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="CISCO" url="http://www.cisco.com/warp/public/707/cisco-sa-20080123-avs.shtml">20080123 Default Passwords in the Application Velocity System</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39860">ciscoavs-default-password-admin-account(39860)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019259">1019259</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27421">27421</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0260">ADV-2008-0260</ref>
        </refs>
        <vuln_soft>
            <prod vendor="cisco" name="application_velocity_system">
                <vers num="5.0.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0422" seq="2008-0422" severity="High" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="7.5" modified="2009-08-13">
        <desc>
            <descript source="cve">SQL injection vulnerability in mail.php in boastMachine (aka bMachine) 3.1 and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/32379">32379</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27369">27369</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/498521/100/0/threaded">20081120 boastMachine v3.1 Remote Sql Injection</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0227" adv="1">ADV-2008-0227</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39813">boastmachine-mail-sql-injection(39813)</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3563">3563</ref>
        </refs>
        <vuln_soft>
            <prod vendor="boastmachine" name="boastmachine">
                <vers num="3.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:P/I:P/A:P)" CVSS_base_score="6.8" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="6.4" name="CVE-2008-0423" seq="2008-0423" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="6.8" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple PHP remote file inclusion vulnerabilities in Lama Software allow remote attackers to execute arbitrary PHP code via a URL in the MY_CONF[classRoot] parameter to (1) inc.steps.access_error.php, (2) inc.steps.check_login.php, or (3) inc.steps.init_system.php in admin/functions/.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27380">27380</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0230" adv="1">ADV-2008-0230</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28442" adv="1">28442</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39821">lamasoftware-myconf-file-include(39821)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="lama" name="lama_software">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0424" seq="2008-0424" severity="High" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in blog.php in Mooseguy Blog System (MGBS) 1.0 allows remote attackers to execute arbitrary SQL commands via the month parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot other="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27377">27377</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4951">4951</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0226" adv="1">ADV-2008-0226</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39816">mooseguy-blog-sql-injection(39816)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="mooseguy_blog_system" name="mgbs">
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0425" seq="2008-0425" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Absolute path traversal vulnerability in explorerdir.php in Frimousse 0.0.2 allows remote attackers to read arbitrary files and list arbitrary directories via a full pathname in the name parameter.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39797">frimousse-explorerdir-directory-traversal(39797)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27385">27385</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4943">4943</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0216">ADV-2008-0216</ref>
        </refs>
        <vuln_soft>
            <prod vendor="frimousse" name="frimousse">
                <vers num="0.0.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0426" seq="2008-0426" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple cross-site scripting (XSS) vulnerabilities in submit.php in PacerCMS before 0.6.1 allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) headline, or (3) text field in a message.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27386">27386</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39832">pacercms-submit-xss(39832)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486796/100/0/threaded">20080122 PacerCMS Multiple Vulnerabilities (XSS/SQL)</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28605" adv="1">28605</ref>
            <ref source="CONFIRM" url="http://pacercms.sourceforge.net/index.php/2008/01/21/pacercms-061-streamlines-code-base-addresses-security-issue/">http://pacercms.sourceforge.net/index.php/2008/01/21/pacercms-061-streamlines-code-base-addresses-security-issue/</ref>
        </refs>
        <vuln_soft>
            <prod vendor="pacercms" name="pacercms">
                <vers num="0.6.1" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:N/A:N)" CVSS_base_score="7.8" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.9" name="CVE-2008-0427" seq="2008-0427" severity="High" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="7.8" modified="2009-09-16">
        <desc>
            <descript source="cve">Directory traversal vulnerability in file.php in bloofoxCMS 0.3 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39795">bloofoxcms-file-directory-traversal(39795)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27361">27361</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0218" adv="1">ADV-2008-0218</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28415" adv="1">28415</ref>
            <ref source="BUGTRAQ" url="http://marc.info/?l=bugtraq&amp;m=120093005310107&amp;w=2">20080120 Bloofox CMS SQL Injection (Authentication bypass) , Source code</ref>
            <ref source="MISC" url="http://bugreport.ir/?/27">http://bugreport.ir/?/27</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486714/100/0/threaded">20080120 Bloofox CMS SQL Injection (Authentication bypass) , Source codedisclosure</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4945">4945</ref>
        </refs>
        <vuln_soft>
            <prod vendor="bloo" name="bloofoxcms">
                <vers num="0.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0428" seq="2008-0428" severity="High" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="7.5" modified="2009-09-16">
        <desc>
            <descript source="cve">Multiple SQL injection vulnerabilities in the login function in system/class_permissions.php in bloofoxCMS 0.3 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter to admin/index.php.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39794">bloofoxcms-index-sql-injection(39794)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27361">27361</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0218" adv="1">ADV-2008-0218</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28415" adv="1">28415</ref>
            <ref source="BUGTRAQ" url="http://marc.info/?l=bugtraq&amp;m=120093005310107&amp;w=2">20080120 Bloofox CMS SQL Injection (Authentication bypass) , Source code</ref>
            <ref source="MISC" url="http://bugreport.ir/?/27">http://bugreport.ir/?/27</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486714/100/0/threaded">20080120 Bloofox CMS SQL Injection (Authentication bypass) , Source codedisclosure</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4945">4945</ref>
        </refs>
        <vuln_soft>
            <prod vendor="bloofoxcms" name="bloofoxcms">
                <vers num="0.3" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0429" seq="2008-0429" severity="High" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="7.5" modified="2009-08-19">
        <desc>
            <descript source="cve">SQL injection vulnerability in index.php in AlstraSoft Forum Pay Per Post Exchange 2.0 allows remote attackers to execute arbitrary SQL commands via the catid parameter in a forum_catview action.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27381">27381</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/6401">6401</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4956">4956</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0231" adv="1">ADV-2008-0231</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28581" adv="1">28581</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39820">alstrasoft-indexphp-sql-injection(39820)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="alstrasoft" name="forum_pay_per_post_exchange">
                <vers num="2.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0430" seq="2008-0430" severity="High" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">SQL injection vulnerability in form.php in 360 Web Manager 3.0 allows remote attackers to execute arbitrary SQL commands via the IDFM parameter.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39796">360web-form-sql-injection(39796)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27364">27364</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4944">4944</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0217" adv="1">ADV-2008-0217</ref>
        </refs>
        <vuln_soft>
            <prod vendor="360_web_manager" name="360_web_manager">
                <vers num="3.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0431" seq="2008-0431" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in administrator/download.php in IDMOS (aka Phoenix) 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the fileName parameter.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27379">27379</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4954">4954</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0229" adv="1">ADV-2008-0229</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28436" adv="1">28436</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39823">idmos-download-directory-traversal(39823)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="idmos" name="idmos_cms">
                <vers num="1.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0432" seq="2008-0432" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in index.php in phpAutoVideo 2.21 and earlier allows remote attackers to inject arbitrary web script or HTML via the cat parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39771">phpautovideo-index-xss(39771)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27346">27346</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486591/100/0/threaded">20080118 Agares PhpAutoVideo 2.21(XSS/RFI) Multiple Remote Vulnerabilities</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0225" adv="1">ADV-2008-0225</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28580" adv="1">28580</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3567">3567</ref>
        </refs>
        <vuln_soft>
            <prod vendor="agares_media" name="phpautovideo">
                <vers num="2.21" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0433" seq="2008-0433" severity="High" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">PHP remote file inclusion vulnerability in theme/phpAutoVideo/LightTwoOh/sidebar.php in Agares phpAutoVideo 2.21 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the loadpage parameter, a different vector than CVE-2007-6614.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39770">phpautovideo-sidebar-file-include(39770)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27346">27346</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486591/100/0/threaded">20080118 Agares PhpAutoVideo 2.21(XSS/RFI) Multiple Remote Vulnerabilities</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0225" adv="1">ADV-2008-0225</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28580" adv="1">28580</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3567">3567</ref>
        </refs>
        <vuln_soft>
            <prod vendor="agares_media" name="phpautovideo">
                <vers num="2.21" prev="1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:C/I:C/A:C)" CVSS_base_score="9.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="10.0" name="CVE-2008-0434" seq="2008-0434" severity="High" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="9.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Format string vulnerability in the AXIMilter module in AXIGEN Mail Server 5.0.2 allows remote attackers to execute arbitrary code via format string specifiers in the CNHO command.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39803">axigen-aximilter-format-string(39803)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27363">27363</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486722/100/0/threaded">20080120 AXIGEN 5.0.x AXIMilter Format String Exploit</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4947">4947</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0237">ADV-2008-0237</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28562" adv="1">28562</ref>
            <ref source="FULLDISC" url="http://lists.grok.org.uk/pipermail/full-disclosure/2008-January/059788.html">20080120 AXIGEN 5.0.x AXIMilter Format String Exploit</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3570">3570</ref>
        </refs>
        <vuln_soft>
            <prod vendor="gecad_technologies" name="axigen_mail_server">
                <vers num="5.0.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0435" seq="2008-0435" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Directory traversal vulnerability in index.php in OZJournals 2.1.1 allows remote attackers to read portions of arbitrary files via a .. (dot dot) in the id parameter in a printpreview action.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27375">27375</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4953">4953</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0228" adv="1">ADV-2008-0228</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28582" adv="1">28582</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39815">ozjournals-id-directory-traversal(39815)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ozjournals" name="ozjournals">
                <vers num="2.1.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0436" seq="2008-0436" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in profile-upload/upload.asp in PD9 Software MegaBBS 1.5.14b allows remote attackers to inject arbitrary web script or HTML via the target parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27368">27368</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486723/100/0/threaded">20080120 MegaBBS ASP Forum Cross-Site Scripting</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39812">megabbs-upload-xss(39812)</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3565">3565</ref>
        </refs>
        <vuln_soft>
            <prod vendor="pd9_software" name="megabbs">
                <vers num="1.5.14b" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0437" seq="2008-0437" severity="High" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Multiple buffer overflows in the WebHPVCInstall.HPVirtualRooms14 ActiveX control in HPVirtualRooms14.dll 1.0.0.100, as used in the installation process for HP Virtual Rooms, allow remote attackers to execute arbitrary code via a long (1) AuthenticationURL, (2) PortalAPIURL, or (3) cabroot property value.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27384">27384</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0236" adv="1">ADV-2008-0236</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28595" adv="1">28595</ref>
            <ref source="FULLDISC" url="http://marc.info/?l=full-disclosure&amp;m=120098751528333&amp;w=2">20080122 HP Virtual Rooms WebHPVCInstall Control Multiple Buffer Overflows</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39836">hpvirtualrooms-hpvirtualrooms14-activex-bo(39836)</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4959">4959</ref>
        </refs>
        <vuln_soft>
            <prod vendor="hp" name="virtual_rooms">
                <vers num="1.0.0.100" />
            </prod>
            <prod vendor="microsoft" name="activex">
                <vers num="" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0438" seq="2008-0438" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="4.3" modified="2009-08-25">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in the font rendering functionality in Novemberborn sIFR 2.0.2 allows remote attackers to inject arbitrary web script or HTML via the txt parameter to a Flash (SWF) file, as demonstrated by fonts/FuturaLt.swf.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27394">27394</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/487585/100/200/threaded">20080205 Re: PR07-38: XSS on sIFR</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486787/100/0/threaded">20080122 PR07-38: XSS on sIFR</ref>
            <ref source="MISC" url="http://www.procheckup.com/Vulnerability_PR07-38.php">http://www.procheckup.com/Vulnerability_PR07-38.php</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39835">sifr-fontname-xss(39835)</ref>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486829/100/0/threaded">20080122 Re: PR07-38: XSS on sIFR</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3571">3571</ref>
            <ref source="CONFIRM" url="http://novemberborn.net/sifr/2.0.3">http://novemberborn.net/sifr/2.0.3</ref>
        </refs>
        <vuln_soft>
            <prod vendor="novemberborn" name="sifr">
                <vers num="2.0.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0439" seq="2008-0439" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="4.3" modified="2008-09-05">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in templates/default/admincp/attachments_header.php in DeluxeBB 1.1 allows remote attackers to inject arbitrary web script or HTML via the lang_listofmatches parameter.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BUGTRAQ" url="http://www.securityfocus.com/archive/1/archive/1/486804/100/0/threaded">20080122 DeluxeBB 1.1 XSS Vulnerabilitie</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39829">deluxbb-attachmentsheader-xss(39829)</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27401">27401</ref>
            <ref source="SREASON" url="http://securityreason.com/securityalert/3564">3564</ref>
        </refs>
        <vuln_soft>
            <prod vendor="deluxebb" name="deluxebb">
                <vers num="1.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="5.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="2.9" name="CVE-2008-0440" seq="2008-0440" severity="Medium" type="CVE" published="2008-01-23" CVSS_version="2.0" CVSS_score="5.0" modified="2008-09-05">
        <desc>
            <descript source="cve">AlstraSoft Forum Pay Per Post Exchange 2.0 stores passwords in cleartext, which makes it easier for attackers to access user accounts.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4956">4956</ref>
        </refs>
        <vuln_soft>
            <prod vendor="alstrasoft" name="forum_pay_per_post_exchange">
                <vers num="2.0" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:L/AC:L/Au:N/C:P/I:N/A:N)" CVSS_base_score="2.1" CVSS_exploit_subscore="3.9" CVSS_impact_subscore="2.9" name="CVE-2008-0441" seq="2008-0441" severity="Low" type="CVE" published="2008-01-24" CVSS_version="2.0" CVSS_score="2.1" modified="2008-09-05">
        <desc>
            <descript source="cve">IBM Tivoli Business Service Manager (TBSM) 4.1.1 stores passwords in cleartext (1) after external authentication, which triggers writing the password to SM_server.log; and (2) after a reconfig action; which allows local users to obtain sensitive information.</descript>
        </desc>
        <loss_types>
            <conf />
        </loss_types>
        <range>
            <local />
        </range>
        <refs>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39822">tbsm-reconfig-information-disclosure(39822)</ref>
            <ref source="SECTRACK" url="http://www.securitytracker.com/id?1019250">1019250</ref>
            <ref source="BID" url="http://www.securityfocus.com/bid/27388">27388</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0240" adv="1">ADV-2008-0240</ref>
            <ref source="CONFIRM" url="http://www-1.ibm.com/support/docview.wss?uid=swg24017939">http://www-1.ibm.com/support/docview.wss?uid=swg24017939</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28603" adv="1">28603</ref>
        </refs>
        <vuln_soft>
            <prod vendor="ibm" name="tivoli_business_service_manager">
                <vers num="4.1.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:P/I:P/A:P)" CVSS_base_score="7.5" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="6.4" name="CVE-2008-0442" seq="2008-0442" severity="High" type="CVE" published="2008-01-24" CVSS_version="2.0" CVSS_score="7.5" modified="2008-09-05">
        <desc>
            <descript source="cve">PHP remote file inclusion vulnerability in inc/linkbar.php in Small Axe Weblog 0.3.1 allows remote attackers to execute arbitrary PHP code via a URL in the ffile parameter, a different vector than CVE-2008-0376.  NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot user="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27383">27383</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28568" adv="1">28568</ref>
        </refs>
        <vuln_soft>
            <prod vendor="small_axe_solutions" name="weblog">
                <vers num="0.3.1" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:L/Au:N/C:C/I:C/A:C)" CVSS_base_score="10.0" CVSS_exploit_subscore="10.0" CVSS_impact_subscore="10.0" name="CVE-2008-0443" seq="2008-0443" severity="High" type="CVE" published="2008-01-24" CVSS_version="2.0" CVSS_score="10.0" modified="2008-09-05">
        <desc>
            <descript source="cve">Heap-based buffer overflow in the FileUploader.FUploadCtl.1 ActiveX control in FileUploader.dll 2.0.0.2 in Lycos FileUploader Module allows remote attackers to execute arbitrary code via a long HandwriterFilename property value.  NOTE: some of these details are obtained from third party information.</descript>
        </desc>
        <loss_types>
            <avail />
            <conf />
            <int />
            <sec_prot admin="1" />
        </loss_types>
        <range>
            <network />
        </range>
        <refs>
            <ref source="BID" url="http://www.securityfocus.com/bid/27411">27411</ref>
            <ref source="MILW0RM" url="http://www.milw0rm.com/exploits/4967">4967</ref>
            <ref source="VUPEN" url="http://www.frsirt.com/english/advisories/2008/0253" adv="1">ADV-2008-0253</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28599" adv="1">28599</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39849">lycosfileuploader-fileuploader-activex-bo(39849)</ref>
        </refs>
        <vuln_soft>
            <prod vendor="lycos" name="fileuploader.dll">
                <vers num="2.0.2" />
            </prod>
        </vuln_soft>
    </entry>
    <entry CVSS_vector="(AV:N/AC:M/Au:N/C:N/I:P/A:N)" CVSS_base_score="4.3" CVSS_exploit_subscore="8.6" CVSS_impact_subscore="2.9" name="CVE-2008-0444" seq="2008-0444" severity="Medium" type="CVE" published="2008-01-24" CVSS_version="2.0" CVSS_score="4.3" modified="2009-08-20">
        <desc>
            <descript source="cve">Cross-site scripting (XSS) vulnerability in Electronic Logbook (ELOG) before 2.7.0 allows remote attackers to inject arbitrary web script or HTML via subtext parameter to unspecified components.</descript>
        </desc>
        <loss_types>
            <int />
        </loss_types>
        <range>
            <network />
            <user_init />
        </range>
        <refs>
            <ref source="BID" patch="1" url="http://www.securityfocus.com/bid/27399">27399</ref>
            <ref source="XF" url="http://xforce.iss.net/xforce/xfdb/39828">elog-subtext-xss(39828)</ref>
            <ref source="VUPEN" url="http://www.vupen.com/english/advisories/2008/0265">ADV-2008-0265</ref>
            <ref source="SECUNIA" url="http://secunia.com/advisories/28589" adv="1">28589</ref>
            <ref source="OSVDB" url="http://osvdb.org/41681">41681</ref>
            <ref source="CONFIRM" url="http://midas.psi.ch/elog/download/ChangeLog">http://midas.psi.ch/elog/download/ChangeLog</ref>
        </refs>
        <vuln_soft>
            <prod vendor="elog" name="elog">
                <vers num="1.0.0" />
       