CVE Reference Map for Source XF

Source XF
Description X-Force Vulnerability Database
URL http://xforce.iss.net
Notes

This reference map lists the various references for XF and provides the associated CVE entries or candidates. It uses data from CVE version 20061101 and candidates that were active as of 2009-11-05.

Note that the list of references may not be complete.

XF:04webserver-dos-devices-dos(18036) CVE-2004-1514
XF:04webserver-error-page-xss(28354) CVE-2006-4199
XF:04webserver-error-xss(18033) CVE-2004-1512
XF:04webserver-user-id-bypass(28355) CVE-2006-4200
XF:04webserver-web-log-spoofing(18034) CVE-2004-1513
XF:0daylinkliste-index-file-include(36146) CVE-2007-4486
XF:1024cms-download-directory-traversal(34004) CVE-2007-2507
XF:1024cms-unspecified-csfr(37267) CVE-2007-5575
XF:123flashchat-e107path-file-include(41867) CVE-2008-1989
XF:123flashchat-user-directory-traversal(24137) CVE-2006-0223
XF:123tkshop-include-read-files(9581) CVE-2002-2167
XF:123tkshop-sql-injection(9582) CVE-2002-2168
XF:12all-fckeditor-file-upload(34049) CVE-2007-2630
XF:12planet-chat-server-xss(16605) CVE-2004-0678
XF:1book-guestbook-code-execution(42854) CVE-2008-2638
XF:1st-class-apop-dos(15314) CVE-2004-2375
XF:1stclass-dotdot-directory-traversal(15812) CVE-2004-2446
XF:1stclass-multiple-xss(15815) CVE-2004-2447
XF:1stnews-id-sql-injection(46291) CVE-2008-4890
XF:1stup-mail-server-bo CVE-2001-0070
XF:1two-livere-dor-guestbook-xss(20589) CVE-2005-1644
XF:1webcalendar-multiple-sql-injection(25373) CVE-2006-1372
XF:2005commentsscript-kommentar-xss(26318) CVE-2006-2290
XF:2020autogallery-vehicle-sql-injection(30400) CVE-2006-6092
XF:2020datashed-multiple-sql-injection(30402) CVE-2006-6067
XF:212cafeboard-list3-xss(31650) CVE-2007-0549
XF:212cafeboard-read-sql-injection(36403) CVE-2007-4719
XF:212cafeboard-search-xss(31651) CVE-2007-0550
XF:212cafeboard-view-sql-injection(45428) CVE-2008-4713
XF:2200net-adminlogin-sql-injection(24484) CVE-2006-0610
XF:2200net-calendar-sql-injection(24483) CVE-2006-0610
XF:2532gigs-activateuser-file-include(36267) CVE-2007-4585
XF:2532gigs-backup-information-disclosure(41912) CVE-2008-6199
XF:2532gigs-checkuser-sql-injection(47491) CVE-2008-6907
XF:2532gigs-language-file-include(47465) CVE-2008-6901
XF:2532gigs-uploadflyer-file-upload(47466) CVE-2008-6902
XF:2bgal-dispalbum-sql-injection(18645) CVE-2004-1415
XF:2bgal-lang-file-include(29759) CVE-2006-5505
XF:2bgal-langfilename-file-include(33375) CVE-2007-1852
XF:2fax-bpcx-bo(10901) CVE-2004-1255
XF:2wire-default-password(36043) CVE-2007-4388
XF:2wire-xslt-csrf(36044) CVE-2007-4387 CVE-2007-4389
XF:2wire-xslt-dos(46537) CVE-2008-6605
XF:2wirerouter-crlf-dos(28578) CVE-2006-4523
XF:2xthinclient-tftpd-directory-traversal(41528) CVE-2008-1620
XF:2zproject-rating-sql-injection(34471) CVE-2007-2898 CVE-2007-2905
XF:32bit-cwd-banner-bo(50337) CVE-2009-1592 CVE-2009-1675
XF:32bit-ftp-banner-bo(11234) CVE-2003-1368
XF:32bit-pasv-bo(50644) CVE-2009-1675
XF:35mmslidegallery-multiple-xss(27127) CVE-2006-3036
XF:360web-form-sql-injection(39796) CVE-2008-0430
XF:3cdaemon-command-obtain-information(18756) CVE-2005-0278
XF:3cdaemon-ftp-bo(8970) CVE-2002-0606
XF:3cdaemon-login-dos(18751) CVE-2005-0276
XF:3cdaemon-long-command-dos(18754) CVE-2005-0277
XF:3cdaemon-reserved-name-dos(18750) CVE-2005-0275
XF:3com-access-point-dos(44890) CVE-2008-6395
XF:3com-baseline-dhcp-dos(26076) CVE-2006-2054
XF:3com-nbx-cel-bo(10739) CVE-2002-2300
XF:3com-nbx-scan-dos(16015) CVE-2004-1977
XF:3com-officeconnect-gain-access(16267) CVE-2004-0477
XF:3com-officeconnect-http-dos(6573) CVE-2001-0740
XF:3com-officeconnect-information-disclosure(18994) CVE-2005-0112
XF:3com-officeconnect-memory-leak(11999) CVE-2003-0291
XF:3com-officeconnect-obtain-info(17723) CVE-2004-1596
XF:3com-officeconnect-pat-access(9185) CVE-2002-0888
XF:3com-officeconnect-telnet-bo(16257) CVE-2004-0476
XF:3com-officeconnect-tk-xss(34776) CVE-2006-3974
XF:3com-officeconnect-udp-dos(18081) CVE-2004-2457
XF:3com-ss34400-snmp-information-disclosure(29779) CVE-2006-5382
XF:3com-superstack-mngmt-dos(16497) CVE-2004-2691
XF:3com-telnetd-brute-force(6855) CVE-2001-1291
XF:3cserver-multiple-command-bo(19250) CVE-2005-0419
XF:3ctftpsvc-transporting-mode-bo(30545) CVE-2006-6183
XF:3cxphonesystem-login-path-disclosure(52452) CVE-2008-6896
XF:3cxphonesystem-login-xss(47167) CVE-2008-6894
XF:3cxphonesystem-unspecified-dos(52450) CVE-2008-6895
XF:3dftp-ftp-banner-bo(11883) CVE-2003-1472
XF:3dftp-list-mlsd-directory-traversal(43095) CVE-2008-2822
XF:3proxy-ftpprchild-dos(37401) CVE-2007-5622
XF:3proxy-ntlm-information-disclosure(38205) CVE-2006-6982
XF:3proxy-transparent-requests-bo(33841) CVE-2007-2031
XF:3proxy-unspecified-dos(38201) CVE-2006-6981
XF:427bb-multiple-xss(42877) CVE-2008-2561
XF:427bb-posts-xss(24040) CVE-2006-0155
XF:427bb-profile-xss(19546) CVE-2005-0629
XF:427bb-scripts-security-bypass(24038) CVE-2006-0153
XF:427bb-showpost-sql-injection(42876) CVE-2008-2560
XF:427bb-showthread-sql-injection(24039) CVE-2006-0154
XF:4d-long-http-bo(9374) CVE-2002-0966
XF:4d-webserver-directory-traversal(7010) CVE-2001-0971
XF:4d-webstar-plugin-bo(20478) CVE-2005-1507
XF:4dwebstar-long-ftp-bo(16686) CVE-2004-0695
XF:4dwebstar-symlink(16689) CVE-2004-0698
XF:4dwebstar-view-directory-listing(16687) CVE-2004-0696
XF:4dwebstar-view-phpini-files(16688) CVE-2004-0697
XF:4images-functions-xss(51470) CVE-2009-2380
XF:4images-homepage-xss(51090) CVE-2009-2131
XF:4images-member-xss(25987) CVE-2006-2011
XF:4images-search-sql-injection(29389) CVE-2006-5236
XF:4images-sessionid-sql-injection(26184) CVE-2006-2214
XF:4images-template-file-include(24938) CVE-2006-0899
XF:4nalbum-displaycategory-file-include(15496) CVE-2004-1820
XF:4nalbum-error path-disclosure(15493) CVE-2004-1819
XF:4nalbum-modulesphp-SQL-injection(15498) CVE-2004-1821
XF:4nalbum-nmimagephp-xss(15497) CVE-2004-1818
XF:4nchat-roomid-sql-injection(41051) CVE-2008-1220
XF:4ndvddb-modules-sql-injection(43626) CVE-2008-3151
XF:4nforum-modules-sql-injection(26729) CVE-2006-2760
XF:4nguestbook-modules-xss(15478) CVE-2004-2354
XF:4sitecms-faq-sql-injection(48488) CVE-2009-0646
XF:4sitecms-hotels-sql-injection(48486) CVE-2009-0646
XF:4sitecms-news-sql-injection(48487) CVE-2009-0646
XF:4sitecms-pages-sql-injection(48483) CVE-2009-0646
XF:4xem-vatdecoder-activex-bo(40864) CVE-2008-4771
XF:53kfwebim-msg-xss(48096) CVE-2009-0247
XF:5thavenue-categorylist-sql-injection(41885) CVE-2008-1921
XF:5thstreet-dx8render-format-string(43370) CVE-2008-3116
XF:602lansuite-webmail-directory-traversal(19258) CVE-2005-0344
XF:602pro-admin-priviliges(10408) CVE-2002-2152
XF:602pro-directory-listing(15349) CVE-2004-0335
XF:602pro-get-directory-tree(10450) CVE-2002-1928
XF:602pro-index-xss(15351) CVE-2004-0337
XF:602pro-mail-post-dos(17977) CVE-2004-1501
XF:602pro-path-disclosure(15350) CVE-2004-0336
XF:602pro-telnet-loopback-dos(17979) CVE-2004-1502
XF:602pro-telnet-proxy-dos(9768) CVE-2002-2174
XF:602prolansuite-smtp-bo(34974) CVE-2007-3203
XF:6517 CVE-2003-1273
XF:68classifieds-category-sql-injection(42465) CVE-2008-2336
XF:68classifieds-multiple-xss(52071) CVE-2009-2780
XF:6alblog-index-file-include(35157) CVE-2007-3451
XF:6alblog-member-sql-injection(35048) CVE-2007-3449
XF:6rbscript-cat-sql-injection(45339) CVE-2008-4344
XF:6tunnel-open-socket-dos(7337) CVE-2001-0830
XF:7shop-imageupload-file-upload(46184) CVE-2008-6806
XF:7zip-archives-code-execution(41247) CVE-2008-6536
XF:95-verv-tcp CVE-1999-0016
XF:9x-plaintext-pwd CVE-1999-0387
XF:@lex-guestbook-file-include(17516) CVE-2004-1554
XF:@lexguestbook-index-path-disclosure(30638) CVE-2006-6279
XF:@lexguestbook-index-sql-injection(31393) CVE-2007-0202
XF:@lexguestbook-index-xss(30639) CVE-2006-6278
XF:@lexguestbook-livreinclude-file-include(31397) CVE-2007-0205
XF:@lexpoll-setup-xss(41564) CVE-2008-7141
XF:@mail-atmail-xss(33591) CVE-2007-2153
XF:@mail-compose-directory-traversal(24459) CVE-2006-0611
XF:@mail-html-image-xss(24742) CVE-2006-0842
XF:@mail-search-xss(32483) CVE-2007-0953
XF:@mail-unspecified-csrf(31259) CVE-2006-6701
XF:@mail-webadmin-xss(31260) CVE-2006-6704
XF:A+store-accountlogin-xss(30284) CVE-2006-5960
XF:Adonis-tftp-privilege-escalation(35807) CVE-2007-4226
XF:Adultdirectory-directory-sql-injection(35683) CVE-2007-4056
XF:Applefileserver-fploginext-dos(19263) CVE-2005-0340
XF:C07h2250v4-attacktool-malformed-packets(14173) CVE-2004-2758
XF:Cedstat-index-xss(32537) CVE-2007-1020
XF:Ch-classtemplate-file-include(32193) CVE-2007-0809
XF:Communiqué-search-xss(23860) CVE-2005-4580
XF:Docebocms-index-xss(32842) CVE-2007-1240
XF:Einfacher-passwortschutz-msg-xss(33542) CVE-2007-2013
XF:Ethereal-rtp-dos(18485) CVE-2004-1140
XF:Hummingbird-docsfusionserver-disclose-path(13398) CVE-2003-1101
XF:Hummingbird-docsfusionserver-file-access(13397) CVE-2003-1102
XF:Ilohamail(18426) CVE-2004-2500
XF:InnoMedia-videophone-bypass-authentication(15636) CVE-2004-0334
XF:InstallshieldInstallfromtheweb-activex-bo(32645) CVE-2007-0320
XF:Invisionpowerboard-signature-xss(41502) CVE-2008-6565
XF:Irater-common-file-include(25963) CVE-2006-1929
XF:Kerberos-krb5anametolocalname-bo(16268) CVE-2004-0523
XF:Linux-ftpd-ssl-vsprintf-bo(23016) CVE-2005-3524
XF:Linux-rpm-execute-code(7349) CVE-2001-0923
XF:Microsoftexporttool-clspack-bo(39975) CVE-2006-5395
XF:Payprocart-usrdetails-xss(19955) CVE-2005-1004
XF:Qnx-rtp-pppoed-flags-bo(17280) CVE-2004-1390
XF:Rezervi-root-file-include(33737) CVE-2007-2156
XF:Sharity-unspecified-dos(33774) CVE-2007-2178
XF:Sispletcms-komentar-file-include(33455) CVE-2007-2347
XF:Win-msdss-command-execution(21895) CVE-2005-2127
XF:a+store-browse-sql-injection(30283) CVE-2006-5959
XF:a1stats-a1admin-dos(6505) CVE-2001-0562
XF:a1stats-dot-directory-traversal(6503) CVE-2001-0561
XF:a4deskeventcalendar-index-file-include(45553) CVE-2008-6103
XF:a6mambocredits-admin-file-include(28443) CVE-2006-4288
XF:a6mambohelpdesk-admina6mambo-file-include(28054) CVE-2006-3930
XF:aaabase-execute-dot-files CVE-2000-0433
XF:aah-multiple-scripts-sql-injection(19977) CVE-2005-1029
XF:aah-multiple-scripts-xss(19975) CVE-2005-1030
XF:aaiportal-unspecified-sql-injection(29406) CVE-2006-5225
XF:aajax-unspecified(34497) CVE-2007-2740
XF:aardvark-lostpw-join-file-include(26189) CVE-2006-2149 CVE-2006-7026
XF:aardvark-settingssql-newday-file-include(33342) CVE-2007-1844
XF:aardvarktopsitesphp-index-info-disclosure(51392) CVE-2009-2303 CVE-2009-2304
XF:aardvarktopsitesphp-index-xss(51391) CVE-2009-2302
XF:aas-aas-info-disclosure(50590) CVE-2009-1466
XF:aas-default-password(50589) CVE-2009-1465
XF:aas-longhttp-request-dos(15003) CVE-2004-2169
XF:aastra-sdp-header-dos(35079) CVE-2007-3441
XF:aastra-sip-message-dos(35060) CVE-2007-3349
XF:abakt-zip-bo(26435) CVE-2006-2161
XF:abarcar-realty-newsdetails-sql-injection(30135) CVE-2006-5840
XF:abarcar-realty-portal-content-sql-injection(26993) CVE-2006-2853
XF:abc2midi-eventspecific-bo(18574) CVE-2004-1256
XF:abc2midi-eventtext-bo(18573) CVE-2004-1256
XF:abc2mtex-processabc-bo(18578) CVE-2004-1257
XF:abc2ps-abc-bo(26043) CVE-2006-1513
XF:abcadvertise-admininc-info-disclosure(50183) CVE-2009-1550
XF:abcestore-index-sql-injection(36313) CVE-2007-4627
XF:abcexcel-parserpath-file-include(34461) CVE-2007-2857
XF:abcm2ps-putwords-bo(18579) CVE-2004-1258
XF:abcpp-handledirective-bo(18581) CVE-2004-1259
XF:abctab2ps-trimtitle-bo(18584) CVE-2004-1260
XF:abctab2ps-writeheading-bo(18583) CVE-2004-1260
XF:abcviewmanager-psp-bo(33862) CVE-2007-2284
XF:abew-click-sql-injection(45573) CVE-2008-6101
XF:abi-fcterm-sql-injection(40757) CVE-2008-0943
XF:abi-gradebookoptions-loginproc-sql-injection(41429) CVE-2008-1549
XF:abi-gradebookstuscores-sql-injection(40847) CVE-2008-0942
XF:abi-loginproc-login-xss(41430) CVE-2008-1548
XF:abi-newevent-xss(40756) CVE-2008-0941
XF:ability-appe-bo(18405) CVE-2004-1627
XF:ability-blank-string-dos(38586) CVE-2007-6101
XF:ability-errormsg-xss(16676) CVE-2004-2494
XF:ability-imap4-dos(38587) CVE-2007-6101
XF:ability-mult-connection-dos(16677) CVE-2004-2495
XF:abilityftpserver-stor-dos(17823) CVE-2004-1626
XF:abitwhizzy-abitwhizzy-file-include(30458) CVE-2006-6084
XF:abitwhizzy-multiple-directory-traversal(33277) CVE-2007-1773
XF:abitwhizzy-multiple-xss(33279) CVE-2007-1774
XF:abiword-linkgrammar-sentence-bo(38317) CVE-2007-5395
XF:abiword-rtf-importer-bo(22454) CVE-2005-2964
XF:abledating-searchresults-sql-injection(42597) CVE-2008-6572
XF:abledating-searchresults-xss(42596) CVE-2008-6439
XF:abledesign-research-xss(23830) CVE-2005-4434
XF:ablespace-advcat-sql-injection(42635) CVE-2008-2491
XF:ablespace-advcat-xss(44847) CVE-2009-1315
XF:ablog-menu-file-include(29164) CVE-2006-5092
XF:ablog-multiple-file-include(29218) CVE-2006-5135
XF:ablog-unspecified-xss(31038) CVE-2006-6729
XF:absolute-gallery-sql-injection(33005) CVE-2007-1469
XF:absolute-gallery-xss(25466) CVE-2006-1411
XF:absolutebanner-searchbanners-sql-injection(43046) CVE-2008-2760
XF:absolutebanner-searchbanners-xss(43045) CVE-2008-2761
XF:absolutebannermanager-abm-sql-injection(38921) CVE-2007-6291
XF:absolutebannermanager-xlaabmusr-auth-bypass(46244) CVE-2008-6858
XF:absolutecontentrotator-cookie-auth-bypass(46243) CVE-2008-6862
XF:absolutecontrolpanel-users-xss(43048) CVE-2008-2756
XF:absolutecontrolpanel-xlacpadmin-auth-bypass(46247) CVE-2008-6859
XF:absolutefaqmanager-cookie-security-bypass(46303) CVE-2008-6854
XF:absolutefaqmanager-search-xss(25463) CVE-2006-1416
XF:absoluteform-search-sql-injection(43051) CVE-2008-2762
XF:absoluteform-search-users-xss(43047) CVE-2008-2759
XF:absoluteformprocessor-cookie-auth-bypass(46245) CVE-2008-6863
XF:absoluteimage-gallery-search-xss(43053) CVE-2008-2766
XF:absoluteimage-gallery-sql-injection(43052) CVE-2008-2765
XF:absolutelivesupport-cookie-auth-bypass(46246) CVE-2008-6864
XF:absolutelivesupport-register-xss(25434) CVE-2006-1410
XF:absolutelivesupport-search-sql-injection(43050) CVE-2008-2763
XF:absolutelivesupport-search-xss(43049) CVE-2008-2764
XF:absolutenews-search-publishers-xss(43042) CVE-2008-2758
XF:absolutenews-search-sql-injection(43043) CVE-2008-2757
XF:absolutenewsfeed-cookie-auth-bypass(46302) CVE-2008-6855
XF:absolutenewsletter-cookie-auth-bypass(46304) CVE-2008-6861
XF:absolutenewsmanager-cookie-security-bypass(46301) CVE-2008-6856
XF:absolutenewsmanager-default-dir-traversal(38870) CVE-2007-6268
XF:absolutenewsmanager-default-xss(38873) CVE-2007-6270
XF:absolutenewsmanager-getpath-info-disclosure(38874) CVE-2007-6271
XF:absolutenewsmanager-multiple-sql-injection(38871) CVE-2007-6269
XF:absolutenewsmanager-xlaabsolutenm-xss(38872) CVE-2007-6270
XF:absolutepodcastnet-xlaapcuser-auth-bypass(46241) CVE-2008-6857
XF:absolutepoll-search-sql-injection(43055) CVE-2008-2767
XF:absolutepoll-search-xss(43054) CVE-2008-2768
XF:absolutepoll-xlacomments-sql-injection(45823) CVE-2008-4569
XF:absolutepollmanager-msg-xss(36362) CVE-2007-4630
XF:absolutepollmanagerxe-cookie-auth-bypass(46242) CVE-2008-6860
XF:absolutetelnet-title-bar-bo(11265) CVE-2003-1090
XF:abuse-lisp-gain-privileges(11300) CVE-2002-1253
XF:abuse-net-command-bo(10519) CVE-2002-1250
XF:abuse-unspecified-xss(53898) CVE-2009-3780
XF:abyss-admin-console-access(9957) CVE-2002-1080
XF:abyss-get-directory-traversal(9941) CVE-2002-1079
XF:abyss-http-directory-traversal(9940) CVE-2002-1079
XF:abyss-http-get-bo(12466) CVE-2003-1337
XF:abyss-http-get-dos(11718) CVE-2003-1364
XF:abyss-plus-file-disclosure(9956) CVE-2002-1081
XF:abyss-slash-directory-traversal(9721) CVE-2002-1078
XF:abyss-unicode-directory-traversal(8805) CVE-2002-0543
XF:abyss-web-admin-bruteforce(11310) CVE-2003-1363
XF:academicsuite-frameset-crossdomain-loading(23558) CVE-2005-4206
XF:academicwebtools-download-dir-traversal(43175) CVE-2008-2969
XF:academicwebtools-index-session-hijacking(43179) CVE-2008-2970
XF:academicwebtools-multiple-xss(43178) CVE-2008-2878 CVE-2008-2967
XF:academicwebtools-rating-sql-injection(43177) CVE-2008-2968
XF:acajoom-index-sql-injection(41290) CVE-2008-1427
XF:acal-day-file-include(26278) CVE-2006-2261
XF:acal-header-footer-code-execute(24107) CVE-2006-0183
XF:acal-login-auth-bypass(24104) CVE-2006-0182
XF:acart-category-product-sql-injection(30279) CVE-2006-6111
XF:acart-categoryasp-sql-injection(15661) CVE-2004-1873
XF:acart-deliverasp-billingasp-xss(15660) CVE-2004-1874
XF:acart-search-sql-injection(30280) CVE-2006-6111
XF:acc-tigris-login CVE-1999-0383
XF:accautos-cookie-auth-bypass(46287) CVE-2008-6292
XF:accelx-display-bo CVE-1999-0778
XF:access2asp-supplierslist-xss(35025) CVE-2007-3414
XF:accesslogkaiseki-analysis-xss(46053) CVE-2008-4663
XF:accipterdirectserver-directory-traversal(14198) CVE-2004-0072
XF:account-manager-overwrite-password(5125) CVE-2000-0689
XF:accountingsoftware-length-bo(25841) CVE-2006-5266
XF:accountingsoftware-magic-number-dos(25844) CVE-2006-5265
XF:accountingsoftware-string-handling(25840) CVE-2006-5266
XF:accphpemail-cookie-auth-bypass(46289) CVE-2008-6291
XF:accrealestate-cookie-auth-bypass(46290) CVE-2008-6293
XF:accstatistics-index-security-bypass(46292) CVE-2008-6294
XF:acctexp-index-sql-injection(42794) CVE-2008-2632
XF:acdsee-ais-description-bo(9052) CVE-2002-1756
XF:acdsee-xpm-bo(33812) CVE-2007-2193
XF:ace-image-albums-sql-injection(38941) CVE-2007-6393
XF:aceboard-recherche-sql-injection(35793) CVE-2007-4209
XF:acedirector-http-reveal-ip(8010) CVE-2002-0209
XF:aceftp-list-directory-traversal(43400) CVE-2008-5175
XF:aceftp-server-bo(34795) CVE-2007-3161
XF:acer-acerctrls-code-execution(52592) CVE-2009-2627
XF:acer-lunchappaplunch-command-execution(30417) CVE-2006-6121
XF:aceserver-udp-packet-dos CVE-2000-0522
XF:acfp-error-page-xss(10682) CVE-2002-2418
XF:acftp-authentication-bypass(10681) CVE-2002-2417
XF:acftp-user-dos(26258) CVE-2006-2242
XF:acgnews-index-sql-injection(36293) CVE-2007-4603
XF:acgptp-index-xss(44603) CVE-2008-3782
XF:acgscript-egoldscriptshop-cid-sql-injection(44966) CVE-2008-4144
XF:acgv-annu-acgv-file-include(34108) CVE-2007-2560
XF:acgv-modif-security-bypass(31893) CVE-2007-0697
XF:acgv-modif-sql-injection(32257) CVE-2007-0698
XF:acgv-multiple-security-bypass(31893) CVE-2007-0697
XF:acgvclick-function-file-include(31859) CVE-2007-0577
XF:acgvnews-glossaire-sql-injection(42490) CVE-2008-2412
XF:acgvnews-glossaire-xss(42491) CVE-2008-2413
XF:acgvnews-pathnews-file-include(28763) CVE-2006-4637 CVE-2006-4638
XF:achievo-atknodetype-xss(45344) CVE-2008-6035
XF:achievo-atkselector-sql-injection(26755) CVE-2006-2688
XF:achievo-config-file-upload(42980) CVE-2008-2742
XF:achievo-dispatch-sql-injection(53743) CVE-2009-2734
XF:achievo-dispatch-xss(45331) CVE-2008-6034
XF:achievo-dispatchphp-xss(53745) CVE-2009-2733
XF:achievo-index-file-include(34305) CVE-2007-2736
XF:achievo-php-execute-code(9947) CVE-2002-1435
XF:achievo-title-xss(53744) CVE-2009-2733
XF:acidcat-admincolorsswatch-xss(41919) CVE-2008-1991
XF:acidcat-default-sql-injection(41918) CVE-2008-1990
XF:acidcat-email-security-bypass(41921) CVE-2008-1992
XF:acidcat-fckeditor-file-upload(41922) CVE-2008-1993
XF:acidcatcms-default-sql-injection(23870) CVE-2005-4370
XF:acidfree-albums-sql-injection(31724) CVE-2007-0507
XF:ackertodo-index-xss(28810) CVE-2006-4668
XF:ackertodo-login-sql-injection(29375) CVE-2006-5228
XF:acme-serve-directory-traversal(6634) CVE-2001-0748
XF:acme-thttpd-ssi CVE-2000-0900
XF:acon-home-bo(41915) CVE-2008-1994
XF:acoustica-asx-m3u-bo(34647) CVE-2007-3006
XF:acoustica-m3u-bo(51868) CVE-2009-3809 CVE-2009-3810
XF:acp3-index-download-xss(34110) CVE-2007-2579
XF:acp3-index-feeds-sql-injection(34111) CVE-2007-2577
XF:acpid-socket-dos(50060) CVE-2009-0798
XF:acrobat-pdf-distilling-bo(27676) CVE-2006-3453
XF:acrobat-reader-activex-bo(16998) CVE-2004-0629
XF:acrobat-reader-execute-code(16973) CVE-2004-0630
XF:acrobat-reader-insecure-permissions(27678) CVE-2006-3452
XF:acrobat-reader-invalid-id-handle-bo(20216) CVE-2005-1347
XF:acrobat-reader-jbig2-code-execution(51016) CVE-2009-1858
XF:acrobat-reader-multiple-unspecified(51126) CVE-2009-2028
XF:acrobat-reader-unspecified-overflow(51021) CVE-2009-1856
XF:acrobatreader-pdf-dos(42886) CVE-2008-2549
XF:acrobatreader-xfdf-bo(15384) CVE-2004-0194
XF:acronis-groupserver-dos(41071) CVE-2008-1279
XF:acronis-windows-agent-dos(41070) CVE-2008-1280
XF:acronissnap-pxeserver-directory-traversal(41074) CVE-2008-1410
XF:acronissnap-pxeserver-dos(41075) CVE-2008-1411
XF:acronym-adminacronyms-sql-injection(31129) CVE-2006-6842
XF:acs-blog-search-xss(19728) CVE-2005-0802
XF:acs-url-directory-traversal(31613) CVE-2007-0389
XF:acsblog-tags-xss(19864) CVE-2005-0945
XF:act-p202s-default-port(24149) CVE-2006-0374 CVE-2006-0375
XF:actinic-html-tags-css(8180) CVE-2002-1732
XF:actinvr-deletexmlfile-file-overwrite(36303) CVE-2007-4583
XF:actinvr-savexmlfile-file-overwrite(36304) CVE-2007-4583
XF:actionapps-globals-file-include(26776) CVE-2006-2686
XF:actionpoll-multiple-file-include(33691) CVE-2007-2064
XF:active-classifieds-admin-access(6754) CVE-2001-1290
XF:active-default-sql-injection(33129) CVE-2007-1629
XF:active-link-default-sql-injection(33111) CVE-2007-1630
XF:active-webcam-dos(19647) CVE-2005-0730
XF:active-webcam-file-disclosure(19654) CVE-2005-0733
XF:active-webcam-filelist-dos(19650) CVE-2005-0731
XF:active-webcam-memory-dos(19653) CVE-2005-0734
XF:active-webcam-path-disclosure(19652) CVE-2005-0732
XF:activeauctionpro-default-sql-injection(33182) CVE-2007-1712
XF:activebids-bidhistory-sql-injection(46912) CVE-2008-5640
XF:activebuyandsell-buyersend-sql-injection(33183) CVE-2005-2062
XF:activecalendar-multiple-scripts-xss(32690) CVE-2007-1111
XF:activecalendar-showcode-file-include(32691) CVE-2007-1110
XF:activecampaign-index-command-execution(24989) CVE-2006-0970
XF:activecollab-unspecified-xss(51190) CVE-2009-2041
XF:activedirectory-username-info-disclosure(46628) CVE-2008-5112
XF:activeforce-account-sql-injection(46927) CVE-2008-5634
XF:activegs-slot-bo(33759) CVE-2007-1690
XF:activegs-unspecified-bo(33759) CVE-2007-1690
XF:activekb-admin-security-bypass(42427) CVE-2008-2338
XF:activekb-index-sql-injection(36831) CVE-2007-5131
XF:activekb-questid-sql-injection(38202) CVE-2007-5425
XF:activekbnx-page-xss(37066) CVE-2007-5426
XF:activemail-script-tag-header(9358) CVE-2002-0950
XF:activemembership-start-sql-injection(46917) CVE-2008-5635
XF:activemod-filename-bo(33757) CVE-2007-1691
XF:activemod-unspecified-bo(33757) CVE-2007-1691
XF:activenews-multiple-sql-injection(30352) CVE-2006-6094 CVE-2006-6095
XF:activenewsletter-newspaperid-sql-injection(33197) CVE-2007-1696
XF:activenewsletter-subscriber-sql-injection(46916) CVE-2008-6286
XF:activeperl-perlis-filename-bo(7539) CVE-2001-0815
XF:activeperl-sitecustomize-code-execution(26915) CVE-2006-2856
XF:activepost-dotdot-directory-traversal(17488) CVE-2004-1548
XF:activepost-long-filename-dos(17482) CVE-2004-1547
XF:activepost-plaintext-password(17486) CVE-2004-1549
XF:activeprice-links-sql-injection(48318) CVE-2008-5975
XF:activeprice-login-sql-injection(46909) CVE-2008-5974
XF:activeprice-reviews-sql-injection(46908) CVE-2008-5638
XF:activepython-activex-read-files(7910) CVE-2002-0131
XF:activereport-savelayout-file-overwrite(35539) CVE-2007-3982
XF:activereports-arpro2-file-overwrite(36056) CVE-2007-3983
XF:activereports-arview2-file-overwrite(45219) CVE-2008-5089
XF:activereports-exclexpt-dos(35866) CVE-2007-3667
XF:activereports-savelayout-file-overwrite(35539) CVE-2007-3982
XF:activesquare-namoinstaller-code-execution(39943) CVE-2008-0551
XF:activetest-quizid-sql-injection(46919) CVE-2008-5958
XF:activetest-start-sql-injection(46921) CVE-2008-5959
XF:activetrade-account-sql-injection(46911) CVE-2008-5627
XF:activetrade-default-sql-injection(33184) CVE-2007-1705
XF:activeutils-emaildata-bo(36034) CVE-2007-0319
XF:activevotes-register-sql-injection(46925) CVE-2008-5633
XF:activevotes-votehistory-sql-injection(46924) CVE-2008-5365
XF:activeweb-contentserver-msg-xss(35389) CVE-2007-3014
XF:activeweb-editor-insecure-permissions(35400) CVE-2007-3018
XF:activeweb-picturerealedit-sql-injection(35390) CVE-2007-3013
XF:activeweb-worklistedit-xss(35399) CVE-2007-3017
XF:activewebhelpdesk-default-sql-injection(46905) CVE-2008-6380
XF:activewebmail-login-sql-injection(46915) CVE-2008-5973
XF:activewebmail-tabopenquicktab1-sql-inject(52444) CVE-2008-6873
XF:activitymodplus-multiple-file-include(26857) CVE-2006-2735
XF:activwebserver-html-xss(9540) CVE-2002-2189
XF:actsite-base-file-include(36868) CVE-2007-5175
XF:actsite-news-file-include(36870) CVE-2007-5174
XF:actualanalyzer-direct-file-include(25893) CVE-2006-1959
XF:actualanalyzer-view-xss(42367) CVE-2008-2527
XF:actualite-index-sql-injection(41579) CVE-2008-4617
XF:acunetix-content-length-dos(31279) CVE-2007-0120
XF:acusend-unauthorized-file-access(10473) CVE-2002-1538
XF:acutecontrol-login-sql-injection(49444) CVE-2009-1247
XF:acutecontrol-themedirectory-file-include(49443) CVE-2009-1248
XF:acvswebservices-transport-file-include(33840) CVE-2007-2202
XF:acweb-device-name-dos(10190) CVE-2002-2421
XF:acweb-xss(10191) CVE-2002-2171
XF:adaptbb-latestposts-file-include(50893) CVE-2009-1946
XF:adaptbb-topic-sql-injection(49681) CVE-2009-1259
XF:adaptcms-index-xss(48611) CVE-2009-0526
XF:adaptcms-sitepath-file-include(48610) CVE-2009-0527
XF:adaptcmslite-checkuser-sql-injection(45642) CVE-2008-4524
XF:adbnewssender-step1-file-include(51720) CVE-2009-2444
XF:adboard-trr-sql-injection(44532) CVE-2008-3725
XF:adcycle-insert-sql-command(6837) CVE-2001-1053
XF:adcycle-modify-sql-query(7762) CVE-2001-1226
XF:addalink-addlink-security-bypass(45246) CVE-2008-4146
XF:addalink-userreadlinks-sql-injection(45245) CVE-2008-4145
XF:addressbook-addressbook-file-include(33243) CVE-2007-1720
XF:addressbook-uploadfile-file-upload(49972) CVE-2009-1483
XF:addressdirectory-sql-injection(43492) CVE-2008-3038
XF:addressdirectory-unspecified-xss(43491) CVE-2008-3037
XF:adempiere-canupdate-security-bypass(34327) CVE-2007-2760
XF:adempiere-insert-sql-injection(34325) CVE-2007-2759
XF:adempierebazaar-webui-unauthorized-access(35697) CVE-2007-4050
XF:adesguestbook-read-xss(23909) CVE-2005-4596
XF:adexchange-tr-sql-injection(44564) CVE-2008-3752
XF:adium-msnprotocol-code-execution(44774) CVE-2008-2927
XF:adm-bstrfilepath-bo(17221) CVE-2004-2433
XF:adm-setupdownload-security-bypass(42983) CVE-2008-6739
XF:adman-editcampaign-sql-injection(45768) CVE-2008-6156
XF:adman-login-xss(35580) CVE-2007-4020
XF:adman-multiple-path-disclosure(25404) CVE-2006-1375
XF:adman-viewstatement-sql-injection(25403) CVE-2006-1374
XF:admanagement-logon-sql-injection(47282) CVE-2008-6365
XF:admanager-submit-xss(27161) CVE-2006-3037
XF:admanager-view-sql-injection(46643) CVE-2008-6261
XF:admanagerpro-common-ad-file-include(27523) CVE-2006-3192
XF:admbook-index-command-execution(24771) CVE-2006-0852
XF:admentor-adminlogin-sql-injection(31908) CVE-2007-0575
XF:admentor-asp-gain-access(8245) CVE-2002-0308
XF:admidio-getfile-file-include(42304) CVE-2008-5209
XF:admin-phorum-del-file-include(32719) CVE-2007-1219
XF:admin-search-unspecified-xss(49655) CVE-2009-1279
XF:adminbot-livestatus-file-include(34580) CVE-2007-2986
XF:adminnewstools-message-sec-bypass(51780) CVE-2009-2558
XF:admintoolcms-fsid-xss(30014) CVE-2006-5769
XF:adnforum-index-security-bypass(45400) CVE-2008-6001
XF:adobe-access-control-bypass(25769) CVE-2006-1627
XF:adobe-acrobat-acropdf-code-execution(30574) CVE-2006-6027 CVE-2006-6236
XF:adobe-acrobat-activex-dos(45195) CVE-2008-4071
XF:adobe-acrobat-character-dos(31273) CVE-2007-0048
XF:adobe-acrobat-etd-format-string(18478) CVE-2004-1153
XF:adobe-acrobat-insecure-permissions(7024) CVE-2001-1069
XF:adobe-acrobat-maillistlspdf-bo(18477) CVE-2004-1152
XF:adobe-acrobat-msvcrt-code-execution(31272) CVE-2007-0046
XF:adobe-acrobat-null-bo(16667) CVE-2004-0632
XF:adobe-acrobat-pdf-bo(3318) CVE-1999-1576
XF:adobe-acrobat-pdf-csrf(31266) CVE-2007-0044
XF:adobe-acrobat-pdf-xss(31271) CVE-2007-0045
XF:adobe-acrobat-reader-image-bo(48825) CVE-2009-0658
XF:adobe-acrobat-reader-plugin-bo(21860) CVE-2005-2470
XF:adobe-acrobat-reader-priv-escalation(46335) CVE-2008-4815
XF:adobe-acrobat-swf-read-files(17694) CVE-2004-1598
XF:adobe-acrobat-tmpfile-symlink(9407) CVE-2002-1764
XF:adobe-acrobat-uudecode-bo(16972) CVE-2004-0631
XF:adobe-acrobat-xmlhttp-response-splitting(31291) CVE-2007-0047
XF:adobe-acrobatreader-collab-code-execution(46344) CVE-2008-4813
XF:adobe-acrobatreader-object-code-execution(46333) CVE-2008-4813
XF:adobe-acrobatreader-type1font-code-execution(46332) CVE-2008-4812
XF:adobe-acropdf-activex-dos(31167) CVE-2006-6236
XF:adobe-acropdf-dos(32896) CVE-2007-1377
XF:adobe-actionid-op-xss(25771) CVE-2006-1786
XF:adobe-appcheckforupdate-code-execution(42237) CVE-2008-2042
XF:adobe-asfunction-protocol-xss(39130) CVE-2007-6244
XF:adobe-bmp-image-file-bo(41941) CVE-2008-1765
XF:adobe-breeze-directory-traversal(29444) CVE-2006-5200
XF:adobe-coldfusion-cfc-security-bypass(41720) CVE-2008-1656
XF:adobe-coldfusion-useragent-xss(41144) CVE-2008-0643
XF:adobe-connect-edge-bo(40471) CVE-2007-6149
XF:adobe-connect-information-disclosure(36573) CVE-2007-4651
XF:adobe-connect-unspecified-code-execution(40504) CVE-2007-6431
XF:adobe-download-aom-bo(30742) CVE-2006-5856
XF:adobe-ebook-bypass-activation(9740) CVE-2002-1017
XF:adobe-ebook-bypass-restrictions(9634) CVE-2002-1016
XF:adobe-error-account-enumeration(25772) CVE-2006-1788
XF:adobe-flash-air-code-execution(52179) CVE-2009-1863
XF:adobe-flash-click-hijacking(45721) CVE-2008-4503
XF:adobe-flash-cs3-bo(45914) CVE-2008-4473
XF:adobe-flash-declarefunction2-bo(41717) CVE-2007-6019
XF:adobe-flash-dnsrebinding-security-bypass(41807) CVE-2008-1655
XF:adobe-flash-filereference-file-upload(45913) CVE-2008-4401
XF:adobe-flash-fla-code-execution(41327) CVE-2008-1201
XF:adobe-flash-navigatetourl-csrf(41718) CVE-2008-1654
XF:adobe-flash-setclipboard-hijacking(44584) CVE-2008-3873
XF:adobe-flash-version-dos(45630) CVE-2008-4546
XF:adobe-illustrator-ai-code-execution(45180) CVE-2008-3961
XF:adobe-insecure-default-permissions(24464) CVE-2006-0525
XF:adobe-installer-security-bypass(34342) CVE-2007-2682
XF:adobe-javascript-code-execution1(46334) CVE-2008-4814
XF:adobe-javascript-method-code-execution(43307) CVE-2008-2641
XF:adobe-jsessionid-information-disclosure(25773) CVE-2006-1787
XF:adobe-lifecycle-loginpage-xss(41143) CVE-2008-1202
XF:adobe-livecycle-information-disclosure(25779) CVE-2006-1628
XF:adobe-log-password-disclosure(29441) CVE-2006-5199
XF:adobe-memory-privilege-escalation(39136) CVE-2007-6246
XF:adobe-multiple-activex-bo(41142) CVE-2007-6253
XF:adobe-multiple-files-bo(33838) CVE-2007-2244
XF:adobe-multiple-unspecified(31829) CVE-2006-3093
XF:adobe-navigatetourl-xss(39131) CVE-2007-6244
XF:adobe-pagemaker-bo(37041) CVE-2007-5169
XF:adobe-pagemaker-pmdfile-bo(46233) CVE-2007-6432
XF:adobe-pdf-file-information-disclosure(32815) CVE-2007-1199
XF:adobe-photodeluxe-execute-java(8210) CVE-2002-1601
XF:adobe-php-sdk-cachedgateway-file-include(29776) CVE-2006-5549
XF:adobe-pngfile-bo(33956) CVE-2007-2365 CVE-2007-2366
XF:adobe-reader-acroread-symlink(40987) CVE-2008-0883
XF:adobe-reader-pdf-code-execution(53691) CVE-2009-3459
XF:adobe-readerurl-xss(25770) CVE-2006-1785
XF:adobe-root-page-node-dos(19946) CVE-2005-0492
XF:adobe-shockwave-swctl-bo(38359) CVE-2007-5941
XF:adobe-swf-code-execution(39128) CVE-2007-6242
XF:adobe-unauth-command-access(25247) CVE-2006-1182
XF:adobe-unspecified-javascript-code-execution(49312) CVE-2009-0927
XF:adobe-unspecified-pdf-code-execution(36722) CVE-2007-5020
XF:adobe-unspecified-response-splitting(39134) CVE-2007-6245
XF:adobe-unspecified-security-bypass(39129) CVE-2007-6243
XF:adobeflex-historymanagement-xss(43150) CVE-2008-2640
XF:adodb-postgresql-sql-injection(24314) CVE-2006-0410
XF:adodb-server-command-execution(24051) CVE-2006-0146
XF:adodb-tmssql-command-execution(24052) CVE-2006-0147
XF:adonis-dnsdhcpcli-privilege-escalation(36082) CVE-2007-4390
XF:adonis-tftp-privilege-escalation(35807) CVE-2007-4226
XF:adp-elite-gain-privileges(20622) CVE-2005-0497
XF:adp-forum-subject-xss(25189) CVE-2006-1157
XF:adpforum-admin-information-disclosure(31220) CVE-2006-6891
XF:adplan-unspecified-xss(34764) CVE-2007-3117
XF:adplug-dmo-file-bo(27670) CVE-2006-3582
XF:adplug-dtm-file-bo(27673) CVE-2006-3581
XF:adplug-s3m-file-bo(27674) CVE-2006-3581
XF:adplug-u6m-file-bo(27677) CVE-2006-3582
XF:adrenalin-unspecified-script-xss(32203) CVE-2007-0814
XF:adrotate-sql-execute-commands(7736) CVE-2001-1224
XF:ads-image-sql-injection(51277) CVE-2009-2232
XF:adsense-wordpress-adsensedeluxe-csrf(34416) CVE-2007-2828
XF:adserve-adclick-sql-injection(40045) CVE-2008-0507
XF:adspro-dhtml-command-execution(46121) CVE-2008-6826
XF:adtran-ping-dos CVE-2000-0292
XF:adultportal-profile-sql-injection(53134) CVE-2009-3358
XF:adultscript-administrator-security-bypass(39034) CVE-2007-6414
XF:adultscript-id-sql-injection(39229) CVE-2007-6576
XF:adv-guestbook-addentry-file-include(26217) CVE-2006-2152
XF:advanced-index-directory-traversal(34152) CVE-2007-0609
XF:advanced-multiple-script-info-disclosure(34161) CVE-2007-0608
XF:advanced-picture-index-xss(34156) CVE-2007-0605
XF:advanced-poll-comments-file-include(29396) CVE-2003-1178
XF:advanced-profiledit-file-include(33321) CVE-2007-1766
XF:advancedclanscript-mcf-file-include(29127) CVE-2006-5061
XF:advancedelectronforum-beg-xss(41951) CVE-2008-1983
XF:advancedguestbook-guestbook-sql-injection(27908) CVE-2006-7077
XF:advancedguestbook-guestbook-xss(27907) CVE-2006-7076
XF:advancedguestbook-sql-injection(15892) CVE-2004-1952 CVE-2005-3588
XF:advancedimage-gallerylist-sql-injection(49316) CVE-2009-1032
XF:advancedimagehosting-out-sql-injection(42405) CVE-2008-2536
XF:advancedpoll-classpoll-sql-injection(26152) CVE-2006-2130
XF:advancedpoll-comments-page-sql-injection(25676) CVE-2006-1616
XF:advancedpoll-comments-page-xss(25677) CVE-2006-1617
XF:advancedpoll-header-spoofing(26154) CVE-2006-2131
XF:advancedpoll-index-code-execution(32337) CVE-2007-0845
XF:advancedpoll-php-admin-access(7861) CVE-2001-1423
XF:advancedpoll-php-file-include(13514) CVE-2003-1179 CVE-2003-1180
XF:advancedpoll-php-injection(13513) CVE-2003-1178
XF:advancedpoll-phpinfo-obtain-information(13515) CVE-2003-1181
XF:advancedpoll-uid-authentication-bypass(32337) CVE-2007-0845
XF:advancedsearchbar-ischecked-dos(35805) CVE-2007-4250
XF:advanceflow-unspecified-xss(34404) CVE-2007-2811
XF:advcalendar-unspecified-sql-injection(46469) CVE-2008-5797
XF:adventia-chat-field-xss(21317) CVE-2005-0919
XF:advguestbook-indexphp-xss(18334) CVE-2004-1213
XF:advserver-http-crlf-dos(9410) CVE-2002-1994
XF:adzapper-squid-redirect-dos(24640) CVE-2006-0046
XF:aedating-design-file-include(28981) CVE-2006-4870
XF:aedating-multiple-scripts-xss(27339) CVE-2006-3279
XF:aedating-searchresult-sql-injection(22301) CVE-2005-2985
XF:aef-avatargalfile-dir-traversal(51776) CVE-2009-2546
XF:aef-filename-sql-injection(51775) CVE-2009-2545
XF:aef-pregreplace-code-execution(45270) CVE-2008-5090
XF:aegis-aegis-symlink(44835) CVE-2008-4938
XF:aenovo-password-information-disclosure(22549) CVE-2005-3209
XF:aenovo-password-sql-injection(22547) CVE-2005-3208
XF:aenovo-strsql-sql-injection(22551) CVE-2005-3208
XF:aenovo-xss(22553) CVE-2005-3208
XF:aeon-getconfig-bo(19951) CVE-2005-1019
XF:aepartner-designinc-file-include(27050) CVE-2006-2996
XF:aeries-lostpwd-sql-injection(39176) CVE-2007-6517
XF:aeromail-obtain-files(8345) CVE-2002-0410
XF:aeromail-subject-css(8346) CVE-2002-0411
XF:aestiva-htmlos-cgi-xss(10029) CVE-2002-1494
XF:aethra-quickstartc0-password-disclosure(39149) CVE-2007-6702
XF:af-fork-directory-disclosure(17569) CVE-2004-1572
XF:afaq-faqdsp-sql-injection(31130) CVE-2006-6831
XF:afcommerce-firstname-sql-injection(38345) CVE-2007-5836
XF:afcommerce-newreview-xss(27847) CVE-2006-3800
XF:afcommerce-search-sql-injection(27846) CVE-2006-3794
XF:afd-multiple-binaries-bo(10036) CVE-2002-1503
XF:affiliate-network-index-xss(23075) CVE-2005-3795
XF:affiliate-network-information-disclosure(23078) CVE-2005-3794
XF:affiliate-network-login-sql-injection(23073) CVE-2005-3793
XF:affiliate-network-php-code-injection(23076) CVE-2005-3796
XF:affiliatemanager-functions-sql-injection(23415) CVE-2005-4037
XF:affiliatemarket-detail-sql-injection(40515) CVE-2008-1177
XF:affiliatemarket-header-file-include(40472) CVE-2008-0794
XF:affiliatemarket-sideblock-xss(40514) CVE-2008-1176
XF:affiliatesoftware-logon-sql-injection(47280) CVE-2008-6366
XF:affiliation-affiliates-sql-injection(51437) CVE-2009-2308
XF:affiniumcampaign-campaignlistener-info-disc(44075) CVE-2008-7093
XF:affiniumcampaign-campaignlistener-xss(44073) CVE-2008-7092
XF:affiniumcampaign-displayicon-xss(44072) CVE-2008-7092
XF:affiniumcampaign-folder-directory-traversal(44071) CVE-2008-7093
XF:affiniumcampaign-listener-dos(44076) CVE-2008-7094
XF:affiniumcampaign-multiple-xss(44074) CVE-2008-7092
XF:afflib-multiple-bo(33961) CVE-2007-2053
XF:afflib-multiple-command-execution(33964) CVE-2007-2055
XF:afflib-multiple-format-string(33969) CVE-2007-2054
XF:afgbguestbook-htmls-file-include(29511) CVE-2006-5307
XF:aflog-aflogautha-security-bypass(46083) CVE-2008-4784
XF:aflog-comments-sql-injection(39825) CVE-2008-0397
XF:aforum-func-file-include(34202) CVE-2007-2596 CVE-2007-2634
XF:aforum-unspecified-xss(31610) CVE-2007-0398
XF:africabegone-index-file-include(44195) CVE-2008-3570
XF:aftpd-crash-core-dump(7832) CVE-2002-0104
XF:afuse-filenames-command-execution(43834) CVE-2008-2232
XF:agares-articleblock-sql-injection(39641) CVE-2008-0262
XF:agavi-index-directory-traversal(46318) CVE-2008-4920
XF:age-of-sail-bo(17791) CVE-2004-1619
XF:agency4net-download2-directory-traversal(39343) CVE-2008-0091
XF:agentzone-viewann-sql-injection(44945) CVE-2008-3951
XF:agephone-multiple-unspecified(35066) CVE-2007-3363
XF:agephone-sip-bo(27944) CVE-2006-4029
XF:agephone-sip-message-dos(35067) CVE-2007-3362
XF:agermenu-topinc-file-include(32283) CVE-2007-0837
XF:aggregation-access-security-bypass(43017) CVE-2008-3000
XF:aggregation-unspecified-file-upload(43011) CVE-2008-3001
XF:aggregation-unspecified-sql-injection(43010) CVE-2008-2999
XF:aggregation-unspecified-xss(43008) CVE-2008-2998
XF:agilebill-proxy-dos(30751) CVE-2006-6422
XF:agora-cgi-css(7708) CVE-2001-1199
XF:agora-cgi-revel-path(8011) CVE-2002-0215
XF:agora-indexphp-file-include(52964) CVE-2009-3053
XF:agora-mysqlfinderadmin-file-include(30031) CVE-2006-7194
XF:agsm-response-bo(17046) CVE-2004-2277
XF:ahg-search-execute-commands(8032) CVE-2002-2113
XF:ahhpportal-page-file-include(34443) CVE-2007-2428
XF:ahnlab-antivirus-zip-code-execution(38514) CVE-2007-6060
XF:ahnlab-v3flt2k-gain-privilege(22297) CVE-2005-2986
XF:aida-web-information-disclosure(38504) CVE-2007-6056
XF:aide-checksum-security-bypass(36452) CVE-2007-3849
XF:aide-conf-bypass-detection(10015) CVE-2002-2199
XF:aidex-http-request-dos(31153) CVE-2006-6855
XF:aigaion-authorpublication-xss(34665) CVE-2007-3078
XF:aigaion-index-sql-injection(35306) CVE-2007-3683
XF:aigaion-pagetopic-sql-injection(35306) CVE-2007-3683
XF:aigop8860-integer-value-dos(52873) CVE-2009-2539
XF:aim-addbuddy-bo(9058) CVE-2002-0785
XF:aim-addexternalapp-bo(9017) CVE-2002-0362
XF:aim-away-bo(16926) CVE-2004-0636
XF:aim-buddy-info-bo(24362) CVE-2006-0629
XF:aim-buddy-predictable-location(15310) CVE-2004-2373
XF:aim-direct-connection-files(8870) CVE-2002-0591
XF:aim-file-transfer-dos CVE-2000-1000
XF:aim-game-overflow(7743) CVE-2002-0005 CVE-2002-0028
XF:aim-getfile-screenname-bo(13443) CVE-2003-1503
XF:aim-goim-screenname-bo(9950) CVE-2002-1953
XF:aim-hijack-connection(8931) CVE-2002-0592
XF:aim-html-comments-dos(7233) CVE-2001-1419
XF:aim-http-refresh-functions(9616) CVE-2002-2169
XF:aim-icq-filetransfer-directory-traversal(33538) CVE-2007-1904
XF:aim-large-buddyicon-dos(7255) CVE-2001-1417
XF:aim-long-filename-dos(7254) CVE-2001-1420
XF:aim-multiple-fonts-dos(7757) CVE-2001-1421
XF:aim-remote-bo(5732) CVE-2000-1093
XF:aim-sniff-symlink(15199) CVE-2004-0279
XF:aim-url-execute-files(10441) CVE-2002-1813
XF:aim-wav-file-dos(10686) CVE-2001-1418
XF:aimp-mp3-bo(50875) CVE-2009-1944
XF:aimstats-config-command-execution(33742) CVE-2007-2167 CVE-2007-2168
XF:aimstats-process-command-execution(33742) CVE-2007-2167 CVE-2007-2168
XF:ains-ainsmain-file-include(31850) CVE-2007-0570
XF:aiocp-choosedlanguage-sql-injection(30051) CVE-2006-5829
XF:aiocp-cpconfig-xss(34038) CVE-2007-2624
XF:aiocp-cpdownloads-sql-injection(31485) CVE-2007-0316
XF:aiocp-cpdpage-path-disclosure(30052) CVE-2006-5832
XF:aiocp-cpdpage-xss(34762) CVE-2007-3120
XF:aiocp-cpfunctionsdownloads-sql-injection(31591) CVE-2007-0223
XF:aiocp-index-file-include(30050) CVE-2006-5831
XF:aiocp-topid-xss(30045) CVE-2006-5830
XF:aiocp-unspecified-xss(31486) CVE-2007-0365
XF:aiocp-userprofile-xss(30048) CVE-2006-5830
XF:aipifou-livre-file-include(29050) CVE-2006-4914
XF:aipo-aipoasp-session-hijacking(36850) CVE-2007-5154
XF:aircrackng-airodumpng-bo(33626) CVE-2007-2057
XF:airdefense-https-dos(36691) CVE-2007-5036
XF:airfilemanager-unspecified-code-execution(42449) CVE-2008-2345
XF:airfilemanager-unspecified-xss(42448) CVE-2008-2344
XF:airlineticket-info-sql-injection(46383) CVE-2008-6225
XF:airport-auth-credentials-disclosure(11980) CVE-2003-0270
XF:airport-beacon-dos(30663) CVE-2006-6292
XF:airport-driver-code-execution(29965) CVE-2006-5710
XF:airport-extremebasestation-afp-dos(41325) CVE-2008-1012
XF:airportextreme-airportdisk-info-disclosure(33527) CVE-2007-0734
XF:airportextreme-ipv6-security-bypass(33526) CVE-2007-1338
XF:airvaecommerce-index-sql-injection(42734) CVE-2008-5223
XF:airvaecommerce-pid-sql-injection(42734) CVE-2008-5223
XF:aisan-unspecified-privilege-escalation(33341) CVE-2007-1781
XF:aix-acctctl-command-execution(29163) CVE-2006-5010
XF:aix-aixterm-libim-bo(11309) CVE-2003-0087
XF:aix-anon-ftp(3154) CVE-1999-1119
XF:aix-arp-iftype-bo(24628) CVE-2006-0674
XF:aix-at-bo(35976) CVE-2007-4355
XF:aix-auditselect-format-string(19255) CVE-2005-0250
XF:aix-bellmail-bo(38150) CVE-2007-4623
XF:aix-bosrtelvm-gain-privileges(25299) CVE-2006-1246
XF:aix-capture-bo(35626) CVE-2007-3333
XF:aix-cdmount-insecure-call CVE-2000-0466
XF:aix-cfgmgr-file-overwrite(29152) CVE-2006-5006
XF:aix-cfgmgr-privilege-escalation(29153) CVE-2006-5006
XF:aix-chcod-gain-privileges(18625) CVE-2004-1028
XF:aix-chdev-format-string(19244) CVE-2005-0240
XF:aix-chpath-rmpath-devinstall-bo(35971) CVE-2007-4353
XF:aix-clear-netstat CVE-2000-0873
XF:aix-console-commands-symlink(16008) CVE-2004-2634
XF:aix-crontab-bo(38164) CVE-2007-4621
XF:aix-diagela(23108) CVE-2005-3749
XF:aix-diagnostics-gain-privileges(18620) CVE-2004-1329
XF:aix-diagrpt-root-shell(6734) CVE-2001-1080
XF:aix-dig-dnsnamefromtext-integer-underflow(38169) CVE-2007-4622
XF:aix-digest(7477) CVE-1999-1487
XF:aix-digest-bo(5620) CVE-2000-1120
XF:aix-enq-bo(5619) CVE-2000-1121
XF:aix-enq-format-string(14037) CVE-2003-1018
XF:aix-fc-client-bo(10127) CVE-2002-1619
XF:aix-fcstat-bo(36445) CVE-2007-4794
XF:aix-fileplace-bo(35972) CVE-2007-4354
XF:aix-frcactrl CVE-2000-0249
XF:aix-ftp-bo(35627) CVE-2007-4004
XF:aix-ftp-domacro-bo(38162) CVE-2007-4217
XF:aix-ftpd-bo CVE-1999-0789
XF:aix-ftpd-gain-access(11823) CVE-2003-0170
XF:aix-genfilt-filtering CVE-1999-0903
XF:aix-getconf-bo(22442) CVE-2005-3060
XF:aix-getlvcb-bo(18317) CVE-2004-0544
XF:aix-ibstat-bo(36446) CVE-2007-4792
XF:aix-infod CVE-1999-0118
XF:aix-inventory-scout-file-overwrite(29162) CVE-2006-5002
XF:aix-inventoryscout-dos(36447) CVE-2007-4798
XF:aix-invscout-gain-privileges(18619) CVE-2004-1054
XF:aix-invscoutd-gain-privileges(15620) CVE-2004-2697
XF:aix-jfs2-race-condition(20604) CVE-2005-1176
XF:aix-kernel-dos(24711) CVE-2006-0666
XF:aix-keyfile-world-writable(8923) CVE-2001-1079
XF:aix-libi18n-lang-bo(6863) CVE-2001-0533
XF:aix-libodm-bo(35321) CVE-2007-3680
XF:aix-local-filesystem CVE-2000-0441
XF:aix-login-privilege-escalation(29155) CVE-2006-5005
XF:aix-login-unauth-access(8269) CVE-2001-1440
XF:aix-lqueryvg-sprintf-bo(38165) CVE-2007-4513
XF:aix-lsfs-path(7007) CVE-2001-0573
XF:aix-lvm-commands-bo(39907) CVE-2008-0586
XF:aix-lvm-commands-symlink(16011) CVE-2004-0545
XF:aix-mailservices-rlogin-security-bypass(31875) CVE-2007-0618
XF:aix-make-cc-bo(15554) CVE-2004-2312
XF:aix-mallocdebug-privilege-escalation(50636) CVE-2009-1786
XF:aix-mklvcopy-code-execution(25849) CVE-2006-1246
XF:aix-mkvg-privilege-escalation(29165) CVE-2006-4416
XF:aix-named8-privilege-escalation(29160) CVE-2006-5003
XF:aix-nslookup-hostname-bo(8031) CVE-1999-1583
XF:aix-nslookup-lex-bo(7867) CVE-1999-1574
XF:aix-paginit-username-bo(18618) CVE-2004-1330
XF:aix-password-enumeration(15172) CVE-2004-0243
XF:aix-pdnsd-bo CVE-1999-0745
XF:aix-piobe-bo(5616) CVE-2000-1124
XF:aix-pioout-bo CVE-2000-1123
XF:aix-pioout-r-bo(35628) CVE-2007-4003
XF:aix-piooutcommand-bo(39912) CVE-2007-5764
XF:aix-portmap-unspecified-dos(51167) CVE-2009-1954
XF:aix-portmir-echoerror-bo(7929) CVE-2000-1216
XF:aix-print-format-string(12000) CVE-2003-0257
XF:aix-ps-information-disclosure(39911) CVE-2008-0589
XF:aix-pssp-information-disclosure(10671) CVE-2002-1620
XF:aix-ptrace-halt CVE-1999-0694
XF:aix-putlvcb-bo(15555) CVE-2004-0544
XF:aix-rdist-bo(32184) CVE-2007-0670
XF:aix-rdist-file-overwrite(29159) CVE-2006-5004
XF:aix-rm-mlcache-file-overwrite(25848) CVE-2006-1247
XF:aix-rmpvc-dos(35845) CVE-2007-4228
XF:aix-rpc-datatype-bo(10112) CVE-2002-1622
XF:aix-sadc-timex(7675) CVE-1999-1486
XF:aix-sendmail-getipnodebyname-dos(13328) CVE-2003-0696
XF:aix-sendmail-mail-relay(11993) CVE-2003-0285
XF:aix-setlocale-privilege-escalation(28482) CVE-2006-4254
XF:aix-setsenv-bo(5621) CVE-2000-1119
XF:aix-snappd-privilege-escalation(29157) CVE-2006-5011
XF:aix-snmpd-rst-dos(6996) CVE-2001-0487
XF:aix-swcons-bo(32508) CVE-2007-0978
XF:aix-swcons-insecure-permissions(38154) CVE-2007-5804 CVE-2007-5805
XF:aix-sysback-elevate-privileges(6432) CVE-2000-1222
XF:aix-tcp-flood-dos(10326) CVE-2002-1201
XF:aix-techlibss-symbolic-link CVE-2000-0080
XF:aix-ttdbserver CVE-1999-0003
XF:aix-uspchrp-bo(39910) CVE-2008-0587
XF:aix-utape-bo(39909) CVE-2008-0588
XF:aix-utape-file-overwrite(29154) CVE-2006-5008
XF:aix-utape-privilege-escalation(29151) CVE-2006-5008
XF:aix-uucp-privilege-escalation(29156) CVE-2006-5007
XF:aix-websm-dos(34631) CVE-2007-2995
XF:aix-websm-insecure-permissions(39906) CVE-2008-0585
XF:aix-xlock-bo(29161) CVE-2006-5009
XF:aj-fork-path-disclosure(17568) CVE-2004-1571
XF:aj-fork-usersdbphp-write-access(17571) CVE-2004-1573
XF:ajarticle-featuredarticle-sql-injection(42329) CVE-2008-5213
XF:ajarticle-index-sql-injection(46297) CVE-2008-6721
XF:ajauction-admin-authentication-bypass(46528) CVE-2008-6965 CVE-2008-6966
XF:ajauction-classifidead-sql-injection(42328) CVE-2008-5212
XF:ajauction-store-sql-injection(52527) CVE-2009-3203
XF:ajauctionpro-category-sql-injection(43218) CVE-2008-2860
XF:ajauctionpro-detail-sql-injection(45399) CVE-2008-6414
XF:ajauctionpro-search-xss(45431) CVE-2008-6004
XF:ajauctionpro-sellersothers-sql-injection(45430) CVE-2008-6003
XF:ajauctionpro-subcat-sql-injection(32789) CVE-2007-1298
XF:ajax-settingsinc-file-include(36604) CVE-2007-4921
XF:ajaxchat-chatid-information-disclosure(28085) CVE-2006-3972
XF:ajaxchat-userid-xss(28086) CVE-2006-3971
XF:ajaxchecklist-save-sql-injection(45410) CVE-2008-5998
XF:ajaxchecklist-unspecified-xss(45412) CVE-2008-5999
XF:ajaxplorer-admin-csrf(42694) CVE-2008-6639
XF:ajaxportal-login-search-sql-injection(27644) CVE-2006-3666
XF:ajaxtable-unspecified-security-bypass(52818) CVE-2009-3122
XF:ajaxtable-unspecified-xss(52819) CVE-2009-3121
XF:ajaxterm-ajaxterm-session-hijacking(50464) CVE-2009-1629
XF:ajchat-directory-sql-injection(39600) CVE-2008-7210
XF:ajclassifieds-admin-security-bypass(46547) CVE-2008-7041
XF:ajclassifieds-postingdetails-sql-injection(32786) CVE-2007-1296
XF:ajdating-userid-sql-injection(42326) CVE-2007-1297
XF:ajdating-viewprofile-sql-injection(32788) CVE-2007-1297
XF:ajforum-topictitle-sql-injection(32785) CVE-2007-1295
XF:ajhyip-news-sql-injection(43247) CVE-2008-2893
XF:ajhyipacme-comment-sql-injection(44803) CVE-2008-4043 CVE-2008-4044
XF:ajhyipacme-readarticle-sql-injection(45201) CVE-2008-4044
XF:ajhyipacme-topicdetail-sql-injection(42382) CVE-2008-2532
XF:ajlogin-ajlogin-info-disclosure(31331) CVE-2007-0153
XF:ajoxpoll-managepoll-auth-bypass(51809) CVE-2009-3596
XF:ajportal2php-pageprefix-file-include(33703) CVE-2007-2142
XF:akamai-download-code-execution(42117) CVE-2007-6339
XF:akamai-download-manager-bo(33697) CVE-2007-1892
XF:akarru-main-file-include(28760) CVE-2006-4645
XF:akarru-users-sql-injection(25115) CVE-2006-1051
XF:akfingerd-connect-dos(10794) CVE-2002-2243
XF:akfingerd-plan-symlink-dos(10795) CVE-2002-2244
XF:akfingerd-read-files(10796) CVE-2002-2274
XF:akismet-wordpress-unspecified(34338) CVE-2007-2714
XF:akkywarehouse-zip-bo(36459) CVE-2007-4725
XF:akobook-gb-xss(36471) CVE-2007-4745
XF:akocomment-akocomment-sql-injection(25451) CVE-2006-1421
XF:akocomment-akocomments-file-include(28458) CVE-2006-4281
XF:akogallery-index-sql-injection(40141) CVE-2008-0561
XF:akopia-interchange-gain-access(6273) CVE-2001-0372
XF:aktivate-shopping-css(7717) CVE-2001-1212
XF:aktueldownload-haberdetay-sql-injection(32527) CVE-2007-1015
XF:al-caricatier-ss-bypass-security(22840) CVE-2005-4653
XF:alabanza-unauthorized-access CVE-2000-1023
XF:aladdin-etoken-pin-reset CVE-2000-0427
XF:alathkar-include-file-include(35818) CVE-2007-4170
XF:albatross-context-command-execution(24130) CVE-2006-0044
XF:alberghi-index-sql-injection(41285) CVE-2008-1459
XF:albert-easysite-logout-file-include(28584) CVE-2006-4426
XF:albinator-multiple-xss(26240) CVE-2006-2181
XF:album-photo-getimg-file-include(29473) CVE-2006-5320
XF:albumpl-command-execution(11878) CVE-2003-1456
XF:alcaricatier-catviewed-xss(35810) CVE-2007-4167
XF:alcaricatier-viewcaricatier-xss(25493) CVE-2006-1556
XF:alcatel-blank-password(6335) CVE-2001-1424
XF:alcatel-expert-account(6354) CVE-2001-1425
XF:alcatel-omniswitch-backdoor(10664) CVE-2002-1272
XF:alcatel-omniswitch-nessus-dos(15318) CVE-2004-2377
XF:alcatel-speedtouch-nmap-dos(7893) CVE-2002-0119
XF:alcatel-tftp-lan-access(6336) CVE-2001-1426 CVE-2001-1484
XF:alcatel-unified-mastercgi-command-execution(36632) CVE-2007-3010
XF:alcatellucent-voip-unauthorized-access(34760) CVE-2007-2512
XF:alchemy-http-dot-commands(7625) CVE-2001-0871
XF:alchemy-http-dot-variant(7626) CVE-2001-0871
XF:alchemy-http-view-log(7630) CVE-2001-0870
XF:aldap-bind-manager-access(10733) CVE-2002-2279
XF:alexis-http-plaintext-information(7205) CVE-2001-1253
XF:alexnews-newscomments-sql-injection(26946) CVE-2006-2879
XF:alftp-mkd-dir-traversal(30282) CVE-2006-5949
XF:alftp-ren-path-disclosure(30281) CVE-2006-5950
XF:alftpftp-list-directory-traversal(42900) CVE-2008-2702
XF:alguest-php-admin-access(8623) CVE-2002-0491
XF:alibaba-url-file-manipulation CVE-1999-0885
XF:aliboard-usercp-file-upload(40276) CVE-2008-7029
XF:alice-cms-index-file-include(29633) CVE-2006-5433
XF:alice-messenger-hp-unauth-access(36408) CVE-2007-4740
XF:alicegate2pluswifi-admin-security-bypass(41110) CVE-2008-1269
XF:alicegate2pluswifi-cp06wifimnocifr-csrf(39831) CVE-2008-7165
XF:alien-arena-clientconnect-dos(36465) CVE-2007-4755
XF:alien-arena-safebprintf-format-string(36463) CVE-2007-4754
XF:alien-cmd-sa-f-bo(25200) CVE-2006-1146
XF:alien-com-sprintf-dos(25201) CVE-2006-1147
XF:alien-safe-cprintf-format-string(25199) CVE-2006-1145
XF:alienarena-clientconnect-dos(36465) CVE-2007-4755
XF:alienarena-safebprintf-format-string(36463) CVE-2007-4754
XF:alienform2-directory-traversal(9325) CVE-2002-0934
XF:alipager-chat-xss(27269) CVE-2006-3345
XF:alipager-elementz-sql-injection(26378) CVE-2006-2344
XF:alipager-elementz-xss(26379) CVE-2006-2345
XF:alipay-activex-code-execution(32367) CVE-2007-0827
XF:alisveristr-login-sql-injection(23507) CVE-2005-4081
XF:alitalk-adminindex-sql-injection(39735) CVE-2008-0371
XF:alitalk-index-sql-injection(39745) CVE-2008-0371
XF:alitalk-receivertwo-sql-injection(39733) CVE-2008-0371
XF:alitalk-usercp-sql-injection(39736) CVE-2008-0371
XF:alivesites-sql-injection(17730) CVE-2004-2212
XF:alivesites-xss(17725) CVE-2004-2211
XF:alkalinephp-adduser-security-bypass(42502) CVE-2008-2346
XF:alkalinephp-thread-sql-injection(42520) CVE-2008-2395
XF:allaire-clustercats-url-redirect CVE-2000-0382
XF:allaire-forums-allaccess CVE-2000-0297
XF:allaire-forums-file-read(1748) CVE-1999-0800
XF:allaire-forums-message-spoofing(7841) CVE-2002-0108
XF:allaire-jrun-jsessionid-appended(7679) CVE-2001-1545
XF:allaire-jrun-jsp-execute CVE-2000-1053
XF:allaire-jrun-jws-directory-traversal(7678) CVE-2001-1544
XF:allaire-jrun-servlet-dos CVE-2000-1049
XF:allaire-jrun-sessionid-duplicated(7680) CVE-2001-1513
XF:allaire-jrun-ssifilter-url CVE-2000-1051
XF:allaire-jrun-view-directory(7623) CVE-2001-1510
XF:allaire-jrun-view-jsp-source(7676) CVE-2001-1511
XF:allaire-jrun-view-source(7622) CVE-2001-0926
XF:allaire-jrun-webinf-access CVE-2000-1050
XF:allaire-jrun-webinf-metainf-jsp(7677) CVE-2001-1512
XF:allaire-spectra-admin-access CVE-2000-0862
XF:allaire-spectra-config-dos CVE-2000-0051
XF:allaire-spectra-container-editor-preview CVE-2000-0334
XF:allaire-spectra-ras-access(4025) CVE-2000-0120
XF:allaire-webtop-access CVE-2000-0050
XF:allclubcms-accms-info-disclosure(47121) CVE-2008-7069
XF:allcommerce-temp-symlink(6830) CVE-2001-1146
XF:allfaclassfieds-level2-file-include(33798) CVE-2007-2254
XF:alliedtelesis-vlan-security-bypass(30924) CVE-2006-6717
XF:allmyguests-index-sql-injection(41910) CVE-2008-1961
XF:allmyguests-multiple-file-include(31310) CVE-2007-0172
XF:allmyguests-php-file-include(15227) CVE-2004-0285
XF:allmyguests-signin-file-include(29064) CVE-2006-4993
XF:allmylinks-file-include(15226) CVE-2004-0285
XF:allmylinks-index-file-include(31314) CVE-2007-0171
XF:allmyvisitors-file-include(15228) CVE-2004-0285
XF:allmyvisitors-index-file-include(31316) CVE-2007-0170
XF:allonsvoter-admin-authentication-bypass(32431) CVE-2007-0874
XF:alm-read-sql-injection(42320) CVE-2008-2529
XF:almnzm-orderid-information-disclosure(34574) CVE-2007-3173
XF:alpass-alpass-db-file-bo(36235) CVE-2007-4549
XF:alpass-apw-bo(36257) CVE-2007-4549
XF:alpass-apw-format-string(36256) CVE-2007-4550
XF:alphablackzero-udp-packet-dos(17545) CVE-2004-1207
XF:alphacontent-index-sql-injection(41428) CVE-2008-1559
XF:alphadmin-cookie-security-bypass(43970) CVE-2008-3300
XF:alphamail-logging-password-disclosure(28907) CVE-2006-4787
XF:alpoll-admin-auth-bypass(28737) CVE-2006-4652 CVE-2006-4653
XF:alpoll-login-security-bypass(28737) CVE-2006-4652 CVE-2006-4653
XF:alsaplayer-cddblookup-bo(28308) CVE-2006-4089
XF:alsaplayer-command-line-bo(10157) CVE-2002-1896
XF:alsaplayer-gtkplaylist-bo(28307) CVE-2006-4089
XF:alsaplayer-reconnect-bo(28306) CVE-2006-4089
XF:alsaplayer-vorbis-input-bo(36996) CVE-2007-5301
XF:alstrasoft-efriends-index-xss(26650) CVE-2006-2564
XF:alstrasoft-epay-index-directory-traversal(22313) CVE-2005-3026
XF:alstrasoft-getstartoptions-file-include(29006) CVE-2006-4913
XF:alstrasoft-index-sql-injection(34400) CVE-2007-2824
XF:alstrasoft-indexphp-sql-injection(39820) CVE-2008-0429
XF:alstrasoft-livesupport-manag-info-disclosure(34395) CVE-2007-2775
XF:alstrasoft-myajax-file-include(28583) CVE-2006-4443
XF:alstrasoft-pgm-sql-injection(43848) CVE-2008-3240
XF:alstrasoft-seid-sql-injection(38599) CVE-2007-6106
XF:alstrasoft-template-addsptemp-file-upload(34398) CVE-2007-2777
XF:alstrasoft-template-addstemp-file-upload(34398) CVE-2007-2777
XF:alstrasoft-template-changeinfo-unauth-access(34396) CVE-2007-2776
XF:alstrasoft-vse-msg-sql-injection(33546) CVE-2007-2018
XF:alstrasoft-vse-useredit-insecure-permissions(33548) CVE-2007-2017
XF:alstrasoftepay-multiple-parameters-xss(23852) CVE-2005-4530
XF:altermime-snprintf-dos(8992) CVE-2002-1721
XF:alternc-multiple-directory-traversal(30626) CVE-2006-6259
XF:alternc-multiple-xss(30625) CVE-2006-6256 CVE-2006-6258
XF:altiris-agent-aclient-info-disclosure(41771) CVE-2008-1754
XF:altiris-gain-unauth-access(17814) CVE-2004-2622
XF:altnet-download-activex-bo(36929) CVE-2007-5217
XF:alzip-filename-bo(22526) CVE-2005-3194
XF:am-ips5500-http-dos(17125) CVE-2004-1749
XF:amanda-amindexd-bo(9181) CVE-2002-0901
XF:amanda-operator-bo(9182) CVE-2002-0901
XF:amandacdrwtaper-amlabelcdrw-symlink(44842) CVE-2008-4945
XF:amarok-magnatunebrowser-symlink(44399) CVE-2008-3699
XF:amavis-command-execute(2349) CVE-1999-1512
XF:amavis-securetar-tar-dos(10056) CVE-2002-1109
XF:amaxus-change-directory-traversal(40002) CVE-2005-4376
XF:amaya-html-tags-bo(48325) CVE-2009-0323
XF:amaya-htmltag-bo(47399) CVE-2009-1209
XF:amaya-various-attribute-bo(25791) CVE-2006-1900
XF:amazon-search-directory-search-xss(23408) CVE-2005-4044
XF:amazonia-zufallscodepart-file-include(29566) CVE-2006-6593
XF:amberscript-showcontent-file-include(38617) CVE-2007-6129
XF:ambicom-bluetooth-objectpush-bo(24179) CVE-2006-0253
XF:amd-bo CVE-1999-0704
XF:amd-fpu-information-disclosure(25871) CVE-2006-1056
XF:amember-file-include(22157) CVE-2005-2865
XF:americancart-abspath-file-include(34165) CVE-2007-2559
XF:americasarmy-bell-dos(36898) CVE-2007-5250
XF:americasarmy-logging-dos(36897) CVE-2007-5249
XF:americasarmy-type4-dos(44152) CVE-2008-3492
XF:amevents-print-sql-injection(47360) CVE-2008-5768
XF:amiga-finger(522) CVE-1999-1218
XF:amiro-index-path-disclosure(53894) CVE-2009-3802
XF:amiro-loginname-xss(53893) CVE-2009-3803
XF:amiro-statusmessage-xss(53892) CVE-2009-3803
XF:amocourse-index-sql-injection(51358) CVE-2009-2609
XF:amp-3d-socket-dos(18789) CVE-2005-0212
XF:amp-base-file-include(33009) CVE-2007-1571
XF:ampache-gathermessages-symlink(44739) CVE-2008-3929
XF:ampache-match-sql-injection(36121) CVE-2007-4437
XF:ampache-session-hijacking(36122) CVE-2007-4438
XF:ampache-session-security-bypass(29892) CVE-2006-5668
XF:ampjuke-special-sql-injection(45665) CVE-2008-4525
XF:ampleshop-multiple-sql-injection(26064) CVE-2006-2038
XF:amr-talkbox-file-include(27122) CVE-2006-3040
XF:amsn-hotlog-obtain-passwords(16479) CVE-2004-2454
XF:amule-downloadlistctrl-command-execution(50205) CVE-2009-1440
XF:amule-url-information-disclosure(26953) CVE-2006-2691
XF:amx-amxsay-format-string(11427) CVE-2003-1381
XF:amxnetlinx-hostpasswordlogfile-bo(35155) CVE-2007-3536
XF:an-http-colon-xss(10487) CVE-2002-2378
XF:an-http-path-disclosure(10976) CVE-2003-1269
XF:an-http-script-dos(10978) CVE-2003-1270
XF:an-http-script-xss(10977) CVE-2003-1271
XF:an-http-socks4-bo(10410) CVE-2002-1930
XF:an-httpd-cmdisdll-bo(20029) CVE-2005-1086
XF:an-httpd-logfile-character-injection(20031) CVE-2005-1087
XF:anaconda-apexec-directory-traversal CVE-2000-0975
XF:anaconda-clipper-directory-traversal(6286) CVE-2001-0593
XF:analog-alias-bo(6105) CVE-2001-0301
XF:analog-anlgform-dos(10344) CVE-2002-1154
XF:analog-logfile-css(8656) CVE-2002-0166
XF:analog-remote-file(1410) CVE-1999-1287
XF:analogx-proxy-http-bo(9455) CVE-2002-1001
XF:analogx-proxy-socks4a-bo(9456) CVE-2002-1001
XF:analogx-proxy-url-bo(12068) CVE-2003-0410
XF:analogx-simpleserver-at-dos(9338) CVE-2002-0968
XF:analogx-simpleserver-aux-dos(6395) CVE-2001-0386
XF:analogx-simpleserver-directory-path CVE-2000-0664
XF:analogx-simpleserver-shout-bo(9427) CVE-2002-1000
XF:anata-change-auth-bypass(43119) CVE-2008-6665
XF:and-format-string(7606) CVE-2001-0920
XF:andonetblog-index-sql-injection(24309) CVE-2006-0462
XF:android-dalvikapi-dos(53654) CVE-2009-3698
XF:android-dynamic-linker-privilege-escalation(48840) CVE-2009-0606
XF:android-malloc-overflow(48841) CVE-2009-0607
XF:android-permission-security-bypass(51798) CVE-2009-2348
XF:android-showlog-bo(48842) CVE-2009-0608
XF:android-smswappush-dos(53655) CVE-2009-2999
XF:androidsdk-bmpreadfromstream-int-overflow(40999) CVE-2008-0986
XF:androidsdk-gifimagedecoderondecode-bo(40998) CVE-2008-0985
XF:andromeda-script-xss(24031) CVE-2006-0142
XF:andyschat-register-file-include(27187) CVE-2006-7036
XF:andysphpknowledgebase-saa-file-upload(46977) CVE-2008-6513
XF:anews-unspecified-xss(50679) CVE-2009-2292
XF:angband-bo CVE-1999-0826
XF:angelinecms-adodbmssqlinc-path-disclosure(26383) CVE-2006-2329
XF:angelinecms-loadkernel-file-include(25658) CVE-2006-1653
XF:angelinecms-server-sql-injection(26382) CVE-2006-2328
XF:angellms-default-sql-injection(32756) CVE-2007-1250
XF:angeloemlak-deafult-xss(42155) CVE-2008-2048
XF:angeloemlak-profil-sql-injection(42018) CVE-2008-2047
XF:anguestbook-sendemail-xss(42489) CVE-2008-2414
XF:anguestbook-sign1-xss(48018) CVE-2009-0424
XF:anguestbook-unspecified-xss(44671) CVE-2008-3847
XF:anhttpd-script-source-disclosure(25591) CVE-2006-1598
XF:animagegallery-path-directory-traversal(53148) CVE-2009-3366
XF:animated-final-file-include(30794) CVE-2006-6541
XF:anjel-index-file-include(28449) CVE-2006-4280
XF:annoncescripthp-email-xss(30804) CVE-2006-6479
XF:annoncescripthp-fiche-info-disclosure(30805) CVE-2006-6480
XF:annoncescripthp-multiple-sql-injection(30803) CVE-2006-6478
XF:annoncev-annonce-file-include(28742) CVE-2006-4622
XF:annotationsdk-activex-annosavetotiff-bo(42982) CVE-2008-2745
XF:annuaire-1two-index-sql-injection(28730) CVE-2006-4601
XF:annuaire-includelangen-path-disclosure(25668) CVE-2006-1433
XF:annuaire-inscription-xss(25669) CVE-2006-1434
XF:ansel-albumname-xss(18374) CVE-2004-2267
XF:ansel-image-sql-injection(18373) CVE-2004-2266
XF:ansell-gain-access(17767) CVE-2004-2203
XF:ansilove-filename-code-execution(24684) CVE-2006-0695
XF:ansilove-load-information-disclosure(24681) CVE-2006-0694
XF:answerbook2-admin-scripts-access(9756) CVE-2002-2425
XF:answerquestion-userid-security-bypass(50627) CVE-2009-1665
XF:answers-answer-xss(45112) CVE-2008-6413
XF:antepe-giris-sql-injection(30919) CVE-2006-6337
XF:anthill-bug-tracking-css(8770) CVE-2002-0549
XF:anthill-buglist-query-sql-injection(27373) CVE-2006-3244
XF:anthill-postbug-auth-bypass(8771) CVE-2002-0548
XF:anthologia-adsfile-file-include(33705) CVE-2007-2094
XF:antiboard-feedback-xss(16830) CVE-2004-2063
XF:antiboard-get-sql-injection(16828) CVE-2004-2062
XF:antigen-subject-bypass-security(22327) CVE-2005-3027
XF:antigen-zip-file-dos(15470) CVE-2004-2348
XF:antikeylogger-akeprotect-priv-escalation(46465) CVE-2008-5049
XF:antisniff-dns-overflow CVE-2000-0405
XF:antispyware-vstlib-bo(36144) CVE-2007-3873
XF:antitrojan-unacev2-bo(26302) CVE-2005-2856
XF:antitrojanelite-atepmom-priv-escalation(46464) CVE-2008-5048
XF:antivir-notepad-gain-privilege(25244) CVE-2006-1274
XF:antivir-tmpfile-insecure(14214) CVE-2004-0058
XF:antivirus-nav-fail-open CVE-2000-0478
XF:antivirus-nav-zip-bo CVE-2000-0477
XF:antivirus-upx-bo(32352) CVE-2007-0851
XF:antivirus-zip-protection-bypass(17761) CVE-2004-0932 CVE-2004-0933 CVE-2004-0934 CVE-2004-0935 CVE-2004-0936 CVE-2004-0937 CVE-2004-1096
XF:antiword-tmp-file-symlink(24194) CVE-2005-3126
XF:antville-unknown-xss(23032) CVE-2005-3530
XF:anubis-filesize-information-disclosure(42652) CVE-2008-2780
XF:anubis-format-string(15346) CVE-2004-0354
XF:anubis-ident-bo(15345) CVE-2004-0353
XF:anyinventory-environment-file-include(36436) CVE-2007-4744
XF:anyportalphp-siteman-directory-traversal(25396) CVE-2003-1298
XF:anyportalphp-siteman-information-disclosure(25441) CVE-2000-1240
XF:aoblogger-create-security-bypass(24143) CVE-2006-0312
XF:aoblogger-login-sql-injection(24142) CVE-2006-0311
XF:aoblogger-url-xss(24141) CVE-2006-0310
XF:aol-cddbcontrol-bo(30790) CVE-2006-6442
XF:aol-default-insecure-permissions(28445) CVE-2006-0948
XF:aol-deskbar-toolbar-dos(33309) CVE-2007-1767
XF:aol-icq-code-execution(30059) CVE-2006-5650
XF:aol-insecure-default-permissions(24498) CVE-2006-0526
XF:aol-malformed-url-dos CVE-2001-0314
XF:aol-radio-ampx-bo(38397) CVE-2007-5755
XF:aol-sipmessage-dos(35070) CVE-2007-3437
XF:aol-siprequest-dos(35068) CVE-2007-3350
XF:aol-subfolder-weak-security(24324) CVE-2005-2597
XF:aol-superbuddy-activex-code-exec(53614) CVE-2009-3658
XF:aol-superbuddy-activex-code-execution(33347) CVE-2006-5820
XF:aol-ygp-addpicturenoalbum-bo(29795) CVE-2006-5502
XF:aol-ygp-downloadfiledirectory-bo(29797) CVE-2006-5501
XF:aol-ygp-pic-downloader-bo(29410) CVE-2006-3888
XF:aol-ygp-screensaver-bo(29411) CVE-2006-3887
XF:aol-ygp-setalbumname-bo(29494) CVE-2006-3888
XF:aol-youvegotpictures-activex-bo(24160) CVE-2006-0316
XF:aolim-buddyicon-bo CVE-2000-1094
XF:aolim-file-path CVE-2000-0383
XF:aolradio-ampx-bo(39592) CVE-2007-6250
XF:aolserver-dbproxy-format-string(8860) CVE-2002-0586
XF:aolserver-long-password-dos(7030) CVE-2001-1067
XF:aolserver-protected-file-access(7825) CVE-2002-0100
XF:aop-linkid-sql-injection(45801) CVE-2008-4574
XF:ap-embedded-http-dos(10537) CVE-2002-1865
XF:apa-apaphpinclude-file-include(21562) CVE-2005-2413
XF:apache-403-xss(42303) CVE-2008-2168
XF:apache-413error-xss(38800) CVE-2007-6203
XF:apache-access-data(9808) CVE-2002-0661
XF:apache-allowoverrides-security-bypass(50808) CVE-2009-1195
XF:apache-apachebench-response-bo(10281) CVE-2002-0843
XF:apache-apgetmimeheaderscore-dos(16524) CVE-2004-0493
XF:apache-aplogrerror-path-disclosure(9623) CVE-2002-1592
XF:apache-aprpasswordvalidate-dos(12091) CVE-2003-0189
XF:apache-aprpsprintf-code-execution(12090) CVE-2003-0245
XF:apache-aprstrmatchprecompile-dos(50964) CVE-2009-0023
XF:apache-authldap-format-string(24030) CVE-2006-0150
XF:apache-axis-wsdl-path-disclosure(34167) CVE-2007-2353
XF:apache-byterange-dos(22006) CVE-2005-2728
XF:apache-cgi-path-disclosure(9876) CVE-2002-0654
XF:apache-checkforensic-symlink(18993) CVE-2004-1387
XF:apache-child-process-dos(35095) CVE-2007-3304
XF:apache-chunked-encoding-bo(9249) CVE-2002-0392
XF:apache-cygwin-directory-traversal(15293) CVE-2004-0173
XF:apache-debian-usrdoc CVE-1999-0678
XF:apache-device-code-execution(11125) CVE-2003-0016
XF:apache-device-name-dos(11124) CVE-2003-0016
XF:apache-dos CVE-1999-0107
XF:apache-dos-batch-command-execution(8589) CVE-2002-0061
XF:apache-double-reverse-spoof(8629) CVE-2002-2103
XF:apache-env-configuration-bo(17384) CVE-2004-0747
XF:apache-esc-seq-injection(11412) CVE-2003-0020
XF:apache-hfs-file-disclosure(18348) CVE-2004-1083
XF:apache-hfs-obtain-info(18349) CVE-2004-1084
XF:apache-hidden-http-request(7363) CVE-2001-1556
XF:apache-htdigest-bo(10414) CVE-2002-1658
XF:apache-htdigest-tmpfile-race(10413) CVE-2002-1233
XF:apache-htpasswd-strcpy-bo(31236) CVE-2006-1078
XF:apache-htpasswd-tmpfile-race(10412) CVE-2002-1233
XF:apache-http-get-dos(17930) CVE-2004-0942
XF:apache-http-host-xss(10241) CVE-2002-0840
XF:apache-http-unexpected-behavior(7810) CVE-2002-2012
XF:apache-httpd-bypass-restriction(15015) CVE-2004-2343
XF:apache-ipv6-aprutil-dos(17382) CVE-2004-0786
XF:apache-james-smtp-dos(26786) CVE-2006-2806
XF:apache-juli-logging-weak-security(39201) CVE-2007-5342
XF:apache-log-file-overwrite(7419) CVE-2001-0730
XF:apache-mime-information-disclosure(11438) CVE-2003-1418
XF:apache-mod-dav-dos(10208) CVE-2002-1593
XF:apache-modaccess-obtain-information(15422) CVE-2003-0993
XF:apache-modalias-information-disclosure(28357) CVE-2006-4110
XF:apache-modalias-modrewrite-bo(13400) CVE-2003-0542
XF:apache-modauthkerb-offbyone-bo(30456) CVE-2006-5989
XF:apache-modcgi-info-disclosure(13552) CVE-2003-0789
XF:apache-moddav-lock-dos(17366) CVE-2004-0809
XF:apache-moddigest-response-replay(15041) CVE-2003-0987
XF:apache-moddiskcache-obtain-info(15547) CVE-2004-1834
XF:apache-modfrontpage-bo(8400) CVE-2002-0427
XF:apache-modimagemap-xss(39002) CVE-2007-5000
XF:apache-modimap-xss(39001) CVE-2007-5000
XF:apache-modinclude-bo(17785) CVE-2004-0940
XF:apache-modnegotiation-response-splitting(39893) CVE-2008-0456
XF:apache-modnegotiation-xss(39867) CVE-2008-0455
XF:apache-modproxy-contentlength-bo(16387) CVE-2004-0492
XF:apache-modproxy-module-dos(42987) CVE-2008-2364
XF:apache-modproxyajp-information-disclosure(50059) CVE-2009-1191
XF:apache-modproxybalancer-dos(39476) CVE-2007-6422
XF:apache-modproxybalancer-xss(39474) CVE-2007-6421
XF:apache-modproxyftp-utf7-xss(39615) CVE-2008-0005
XF:apache-modproxyftp-xss(44223) CVE-2008-2939
XF:apache-modrewrite-offbyone-bo(28063) CVE-2006-3747
XF:apache-modssl-bo(8308) CVE-2002-0082
XF:apache-modssl-dos(17200) CVE-2004-0748
XF:apache-modssl-format-string(16705) CVE-2004-0700
XF:apache-modssl-host-xss(10457) CVE-2002-1157
XF:apache-modssl-htaccess-bo(9415) CVE-2002-0653
XF:apache-modssl-plain-dos(15419) CVE-2004-0113
XF:apache-modssl-speculative-dos(17273) CVE-2004-0751
XF:apache-modssl-uuencode-bo(16214) CVE-2004-0488
XF:apache-modstatus-xss(35097) CVE-2006-5752
XF:apache-modusertrack-predicticable-sessionid(7494) CVE-2001-1534
XF:apache-multiviews-directory-listing(8275) CVE-2001-0731
XF:apache-php-disclose-files CVE-2001-0042
XF:apache-php-options-information(8119) CVE-2002-0240
XF:apache-php-view-files(7815) CVE-2002-2029
XF:apache-postgresql-authentication-module(7054) CVE-2001-1379
XF:apache-postgresqlsys-authentication-module(7059) CVE-2001-1379
XF:apache-printenv-acuparam-xss(35597) CVE-2000-1205
XF:apache-printenv-xss(10938) CVE-2000-1205
XF:apache-rewrite-bypass-directives(8633) CVE-2001-1072
XF:apache-rewrite-view-files CVE-2000-0913
XF:apache-satisfy-gain-access(17473) CVE-2004-0811
XF:apache-scorecard-memory-overwrite(10280) CVE-2002-0839
XF:apache-server-dos(6527) CVE-2001-1342
XF:apache-singlesignon-information-disclosure(39804) CVE-2008-0128
XF:apache-slash-directory-listing(6921) CVE-2001-0925
XF:apache-socket-starvation-dos(15540) CVE-2004-0174
XF:apache-solaris-pollset-dos(53666) CVE-2009-2699
XF:apache-source-asp-file-write CVE-2000-0628
XF:apache-sslciphersuite-restriction-bypass(17671) CVE-2004-0885
XF:apache-status-page-xss(39472) CVE-2007-6388
XF:apache-stderr-dos(10200) CVE-2002-1850
XF:apache-suexec-privilege-escalation(33584) CVE-2007-1741
XF:apache-tomcat-file-contents(4205) CVE-2000-1210
XF:apache-tomcat-hostmanager-xss(42816) CVE-2008-1947
XF:apache-tomcat-url-information-disclosure(27902) CVE-2006-3835
XF:apache-tomcat-valve-security-bypass(45791) CVE-2008-3271
XF:apache-tomcat-webdav-dir-traversal(37243) CVE-2007-5461
XF:apache-utf7-xss(36586) CVE-2007-4465
XF:apache-var-path-disclosure(9875) CVE-2002-0654
XF:apache-webdav-cgi-source(10499) CVE-2002-1156
XF:apache-webdav-directory-listings CVE-2000-0869
XF:apache-windows-share-info-disclosure(39158) CVE-2007-6514
XF:apachecocoon-directory-traversal-bootini(13499) CVE-2003-1172
XF:apachessl-default-password(15065) CVE-2004-0009
XF:apartment-listtesst-file-upload(46283) CVE-2008-6684
XF:apartment-listtest-sql-injection(41902) CVE-2008-1919
XF:apartment-listtest-xss(46282) CVE-2008-6683
XF:apb-addbookmark-authentication-bypass(11011) CVE-2003-1255
XF:apb-apbpath-file-include(30518) CVE-2006-6167
XF:apb-apbsettings-file-include(11010) CVE-2003-1254
XF:apb-viewgroup-sql-injection(44548) CVE-2008-3748
XF:apbn-head-file-include(33065) CVE-2007-1621
XF:apboard-multiple-sql-injection(27163) CVE-2006-3078
XF:apboard-protected-forum-bypass(10611) CVE-2002-2398
XF:apboard-thread-sql-injection(23200) CVE-2005-3746
XF:apc-apcsearchpaths-bo(41420) CVE-2008-1488
XF:apc-apcupsd-dos CVE-2001-0040
XF:apc-pdu-unspecified-security-bypass(38783) CVE-2007-6226
XF:apc-smartslot-default-password(15238) CVE-2004-0311
XF:apc-telnet-dos(6199) CVE-2001-0564
XF:apcupsd-logevent-format-string(11334) CVE-2003-0098
XF:apcupsd-vsprintf-multiple-bo(11491) CVE-2003-0099
XF:ape-appenhancer-privilege-escalation(31349) CVE-2007-0162
XF:apertium-multiple-symlink(44854) CVE-2008-4939
XF:apertoblog-categories-sql-injection(47346) CVE-2008-5775
XF:aphpkb-multiple-scripts-xss(25666) CVE-2006-1438
XF:apmd-apmscript-symlink(8268) CVE-2001-0946
XF:apoll-index-sql-injection(46286) CVE-2008-6270 CVE-2008-6272
XF:apoll-user-sql-injection(48982) CVE-2008-6270
XF:apollo-crp-root-access(7158) CVE-1999-1493
XF:apollo-suidexec-unauthorized-access(6721) CVE-1999-1115
XF:apple-airport-dos(18865) CVE-2005-0289
XF:apple-bonjour-mdnsresponder-dos(45005) CVE-2008-2326
XF:apple-coregraphics-gain-privileges(20954) CVE-2005-1726
XF:apple-cups-ipptag-dos(50926) CVE-2009-0949
XF:apple-iphone-sms-info-disclosure(46062) CVE-2008-4593
XF:apple-itunes-mpeg4-bo(20498) CVE-2005-1248
XF:apple-laserwriter-telnet-access(10476) CVE-2002-2373
XF:apple-macosx-ardagent-command-execution(43294) CVE-2008-2830
XF:apple-mail-smime-information-disclosure(45688) CVE-2008-4491
XF:apple-quicktime-ftyp-code-execution(45144) CVE-2008-1739
XF:apple-quicktime-itunes-mov-bo(46984) CVE-2008-5406
XF:apple-quicktime-javaapplet-code-execution(38271) CVE-2007-3751
XF:apple-quicktime-movie-code-execution(38266) CVE-2007-2395
XF:apple-quicktime-pict-bo(38279) CVE-2007-4672
XF:apple-quicktime-pict-image-bo(42945) CVE-2008-1583
XF:apple-quicktime-qtplugin-bo(40475) CVE-2008-0778
XF:apple-quicktime-stsd-atoms-bo(38268) CVE-2007-3750
XF:apple-remote-desktop-gain-privileges(29060) CVE-2006-4887
XF:apple-safari-alink-dos(47724) CVE-2008-5821
XF:apple-safari-documentlocation-dos(34912) CVE-2007-3274
XF:apple-safari-documentwrite-dos(41985) CVE-2008-2000
XF:apple-safari-file-dos(41984) CVE-2008-2001
XF:apple-safari-filedownload-code-execution(41864) CVE-2008-1024
XF:apple-safari-multiple-bo(34978) CVE-2007-3187
XF:apple-safari-unspecified-code-execution(49388) CVE-2009-1042
XF:apple-safari-unspecified-code-execution1(49463) CVE-2009-1060
XF:apple-safari-user-addressbar-spoofing(41981) CVE-2008-1999
XF:apple-safari-webkit-hostname-xss(41862) CVE-2008-1025
XF:apple-safari-webkit-pcrecompile-bo(41859) CVE-2008-1026
XF:apple-safari-windows-code-execution(42765) CVE-2008-2540
XF:apple-xcode-funhouse-bo(43733) CVE-2008-2304
XF:apple-xcode-webobjects-info-disclosure(43735) CVE-2008-2318
XF:applefileserver-afp-pathname-bo(16049) CVE-2004-0430
XF:applefileserver-dos(14051) CVE-2003-1007
XF:applefileserver-reporting-error(16288) CVE-2004-0518
XF:applettrap-bypass-ip-restrictions(6818) CVE-2001-1026
XF:applettrap-unicode-bypass-filter(6817) CVE-2001-1026
XF:applettrap-zero-bypass-restrictions(6819) CVE-2001-1026
XF:application-rpc-config1-bo(39918) CVE-2008-0012
XF:application-rpc-config2-bo(39919) CVE-2008-0013
XF:application-rpc-config3-bo(39920) CVE-2008-0014
XF:application-rpc-file-read-bo(39050) CVE-2007-0073
XF:application-rpc-folder-read-bo(39051) CVE-2007-0074
XF:application-rpc-interface-bo(31113) CVE-2006-5269
XF:application-rpc-read-bo(38760) CVE-2007-0072
XF:application-unauth-admin-access(31112) CVE-2006-5268
XF:applicationsmanager-search-xss(41505) CVE-2008-1566
XF:appscan-activex-file-overwrite(42077) CVE-2008-2015
XF:appserv-default-account(18163) CVE-2004-1532
XF:appserv-index-xss(42546) CVE-2008-2398
XF:apricot-apricot-xss(49948) CVE-2009-1448
XF:aproxcmsengine-index-sql-injection(43905) CVE-2008-3291
XF:aproxengine-index-file-include(43245) CVE-2008-2895
XF:aproxphpportal-index-directory-traversal(15014) CVE-2004-0237
XF:apsfilter-elevate-privileges CVE-2000-0534
XF:apt-aptget-gpgv-security-bypass(50086) CVE-2009-1358
XF:apt-webshop-sql-injection(25731) CVE-2006-1685
XF:apt-www-proxy-dos(10816) CVE-2002-2286
XF:apt-www-proxy-format-string(10815) CVE-2002-2236
XF:aptcacher-command-execution(21664) CVE-2005-1854
XF:aptlinex-gambasaptlock-symlink(41956) CVE-2008-1901
XF:aptlinex-gui-security-bypass(41954) CVE-2008-1902
XF:aptoncd-xmlfile-symlink(44756) CVE-2008-4940
XF:aqualung-metareadflac-bo(28310) CVE-2006-7075
XF:aquonics-filemanager-directory-traversal(9929) CVE-2002-1815 CVE-2002-1926
XF:aquonics-filemanager-userlist-access(9930) CVE-2002-1927
XF:arabcms-rss-file-include(45514) CVE-2008-4667
XF:arabportal-forum-sql-injection(25656) CVE-2006-1666
XF:arabportal-mod-directory-traversal(46404) CVE-2008-5787
XF:arabportal-multiple-xss(25657) CVE-2006-1665
XF:arabportal-online-download-xss(25515) CVE-2006-1504
XF:aratix-init-file-include(31282) CVE-2007-0135
XF:arbcommon-arbfastdnaml-symlink(44844) CVE-2008-4941
XF:arbitroweb-rawurl-xss(16481) CVE-2004-0617
XF:arblog-count-xss(26787) CVE-2006-2809
XF:arblog-index-xss(24246) CVE-2006-0333
XF:arblog-print-xss(25834) CVE-2006-1893
XF:arcadebuilder-usercookie-sql-injection(35198) CVE-2007-3521
XF:arcadescript-index-sql-injection(46935) CVE-2008-5629
XF:arcadescript-register-xss(49472) CVE-2009-1228
XF:arcadescript-user-sql-injection(49500) CVE-2009-1229
XF:arcadia-tradecli-directory-traversal(6737) CVE-2001-0705
XF:arcadia-tradecli-dos(6739) CVE-2001-0703
XF:arcadia-tradecli-reveal-path(6738) CVE-2001-0704
XF:archangel-admin-auth-bypass(24984) CVE-2006-0944 CVE-2006-0945
XF:archangel-get-gain-access(24984) CVE-2006-0944 CVE-2006-0945
XF:archangel-index-file-include(25142) CVE-2006-0945
XF:archangel-index-sql-injection(42475) CVE-2008-2356
XF:archangel-name-comment-xss(28287) CVE-2006-4091
XF:archive-extraction-directory-traversal(10224) CVE-2001-1267 CVE-2002-0399 CVE-2002-1216
XF:archivexpert-archive-directory-traversal(33539) CVE-2007-1954
XF:arcsde-tcpport-bo(33457) CVE-2007-1770
XF:arcsde-three-tiered-dos(33282) CVE-2007-1770
XF:arcserve-aremote-plaintext(7122) CVE-2001-0959 CVE-2001-0960
XF:arcserveit-clientagent-temp-file(5023) CVE-2000-0781
XF:arctic-index-sql-injection(43872) CVE-2008-3250
XF:arctic-search-xss(27285) CVE-2006-3342
XF:arecacli-cli32-bo(35546) CVE-2007-4027
XF:ares-longconfstring-bo(21557) CVE-2005-2425
XF:aresfileshare-long-string-bo(21818) CVE-2005-2425
XF:argent-office-change-music(6956) CVE-2001-1261
XF:argent-office-community-string(6955) CVE-2001-1262
XF:argent-office-udp-dos(6953) CVE-2001-1259
XF:argent-office-weak-encryption(6954) CVE-2001-1260
XF:argoncms-tftpsrvs-directory-traversal(41076) CVE-2008-1281
XF:argosoft-autoresponse-dos(9759) CVE-2002-1005
XF:argosoft-bruteforce(18722) CVE-2004-1429
XF:argosoft-dotdot-directory-traversal(9477) CVE-2002-1004
XF:argosoft-ftp-rnto-bo(26197) CVE-2006-2170
XF:argosoft-ftp-weak-encryption(6848) CVE-2001-1142
XF:argosoft-information-disclosure(18721) CVE-2004-1428
XF:argosoft-ink-file-upload(17939) CVE-2005-0519
XF:argosoft-mail-server-add-new-mail-account(20228) CVE-2005-1284
XF:argosoft-mail-server-dir-traversal(20229) CVE-2005-1283
XF:argosoft-mail-server-eml-files-dir-traversal(20226) CVE-2005-1283
XF:argosoft-mail-server-html-tag-filter-xss(20225) CVE-2005-1282
XF:argosoft-mailserverpro-viewheaders-xss(24945) CVE-2006-0978
XF:argosoft-site-copy-files(19442) CVE-2005-0520
XF:argosoft-webmail-xss(10301) CVE-2002-1893
XF:argosoftftp-site-bo(15410) CVE-2004-2673
XF:argosoftftp-site-pass-dos(15412) CVE-2004-2675
XF:argosoftftp-unzip-file-disclosure(15411) CVE-2004-2674
XF:aria-effect-file-include(39712) CVE-2008-0332
XF:aria-genmessage-xss(25688) CVE-2006-1435
XF:ariadne-index-xss(33987) CVE-2007-2433
XF:ariadne-loaderphp-file-include(20611) CVE-2005-1181
XF:ariadne-pinp-command-execution(40989) CVE-2008-7125
XF:ariadne-storeconfig-file-include(30018) CVE-2006-5776
XF:ariba-url-plaintext-password(22116) CVE-2005-2845
XF:arkeia-backup-client-bo(19398) CVE-2005-0491
XF:arkeia-backup-client-gain-access(20667) CVE-2005-0496
XF:arkeia-insecure-file-permissions(6885) CVE-2001-0988
XF:arkiea-backup-nlserverd-remote-dos CVE-1999-0788
XF:arkoon-portal-xss(29993) CVE-2006-5771
XF:armagetron-idreqhandler-dos(27793) CVE-2006-3674
XF:armagetron-nnetobject-dos(27787) CVE-2006-3673 CVE-2006-3674
XF:armed-assault-von-dos(51820) CVE-2009-2547
XF:armemberscript-usercp-file-include(30891) CVE-2006-6590
XF:army-men-rts-format-string(18065) CVE-2004-1522
XF:aroundme-multiple-file-include(33427) CVE-2007-1986
XF:aroundme-pnewpasswordtpl-file-include(29555) CVE-2006-5401
XF:aroundme-polviewtpl-file-include(29743) CVE-2006-5533
XF:arsc-language-path-disclosure(8472) CVE-2002-0463
XF:article-article-sql-injection(35977) CVE-2007-4332
XF:article-manager-multi-scripts-path-disclosure(26676) CVE-2006-2565 CVE-2006-2566
XF:article-manager-profile-sql-injection(26674) CVE-2006-2565
XF:article-manager-submitarticle-xss(26673) CVE-2006-2567
XF:article-signup-xss(35978) CVE-2007-4333
XF:article-system-includedir-file-include(31446) CVE-2007-0314
XF:articlebeach-index-file-include(29785) CVE-2006-5590
XF:articledashboard-login-sql-injection(39657) CVE-2008-0286
XF:articledirectory-index-file-include(35632) CVE-2007-4007
XF:articlefriend-searchadvance-xss(52207) CVE-2009-3146
XF:articlefriendly-authordetail-sql-injection(44120) CVE-2008-3670
XF:articlefriendly-categorydet-sql-injection(44121) CVE-2008-3649
XF:articlelive-articleid-xss(19817) CVE-2005-0881
XF:articlelive-bypass-security(20431) CVE-2005-1482
XF:articlelive-multiple-xss(20430) CVE-2005-1483
XF:articlemanager-admin-sql-injection(46588) CVE-2008-5649
XF:articlemodule-article-sql-injection(41943) CVE-2008-2094
XF:articlepublisher-category-sql-injection(25898) CVE-2006-1852
XF:articlepublisherpro-admin-sql-injection(46373) CVE-2008-4901
XF:articlepublisherpro-multiple-sql-injection(46266) CVE-2008-4902
XF:articlepublisherpro-userid-sql-injection(46266) CVE-2008-4902
XF:articles-caarticles-info-disclosure(47351) CVE-2008-5900
XF:articlescript-addpen-file-upload(47374) CVE-2008-6900
XF:articlescript-articles-sql-injection(45019) CVE-2008-4371
XF:articlescript-articles-xss(45020) CVE-2008-4372
XF:articlescript-rss-sql-injection(30038) CVE-2006-5765
XF:articlescript-view-sql-injection(45294) CVE-2008-6037
XF:articlesystem-volume-file-include(29988) CVE-2006-5766
XF:artlinks-dispnew-file-include(28075) CVE-2006-3949
XF:artmedic-event-index-file-include(26150) CVE-2006-2119
XF:artmedic-index-file-include(37240) CVE-2007-5489
XF:artmedic-link-index-file-include(29013) CVE-2006-4905
XF:artmedic-newsletter-code-execution(26597) CVE-2006-2608
XF:artmedic-url-file-disclosure(16518) CVE-2004-0624
XF:artmedicweblog-artmedicprint-file-include(40522) CVE-2008-0798
XF:artportal-portalid-sql-injection(52962) CVE-2009-3054
XF:arts-artwrapper-privilege-escalation(27221) CVE-2006-2916
XF:aruba-guestaccount-privilege-escalation(32461) CVE-2007-0932
XF:aruba-management-interface-bo(32459) CVE-2007-0931
XF:aruba-mobility-login-xss(35605) CVE-2007-4023
XF:aruba-tacacs-security-bypass(42434) CVE-2008-2273
XF:aruba-webui-xss(42433) CVE-2008-2272
XF:as400-firewall-dos CVE-2000-1038
XF:as400-system-request-information(8179) CVE-2002-1731
XF:asa5520-webvpn-xss(49528) CVE-2009-1220
XF:asante-fm2008-default-account(18521) CVE-2004-1320
XF:ascdc-afterstep-bo CVE-2001-0459
XF:ascend-150-kill CVE-1999-0221
XF:ascend-config-kill CVE-1999-0060
XF:ascend-ppp-isdn-dos(7498) CVE-1999-1203
XF:ascended-embedded-file-include(29756) CVE-2006-5531
XF:ascom-timeplex-debug(1824) CVE-1999-1141
XF:asgastracker-admin-security-bypass(42435) CVE-2008-2269
XF:asgsentry-fcheck-dos(41080) CVE-2008-1322
XF:asgsentry-fxagent-bo(41082) CVE-2008-1320
XF:asgsentry-fxialist-bo(41086) CVE-2008-1320
XF:asgsentry-fxialist-weak-security(41084) CVE-2008-1321
XF:ashnews-ashnews-xss(24365) CVE-2006-0524
XF:ashop-filebrowser-file-deletion(35483) CVE-2007-3936
XF:ashop-multiple-scripts-xss(31178) CVE-2007-0056
XF:ashop-unspecified-sql-injection(35484) CVE-2007-3937
XF:ashopdeluxe-catalogue-sql-injection(43537) CVE-2008-3136
XF:ashopkart-database-file-access(15599) CVE-2006-2823
XF:ashopkart-multiple-sql-injection(11029) CVE-2003-1268
XF:asicms-envasicmspath-file-include(45684) CVE-2008-4529
XF:asix-command-execution(17076) CVE-2004-2425
XF:ask-rave-end-file-include(29825) CVE-2006-5621
XF:askmepro-profile-sql-injection(43106) CVE-2008-2902
XF:askpert-index-sql-injection(46732) CVE-2008-6309
XF:asksam-webpub-css(9003) CVE-2002-1727
XF:asksam-webpub-path-disclosure(9004) CVE-2002-1728
XF:asktoolbar-shortformat-bo(36757) CVE-2007-5107
XF:asm-unspecified-security-bypass(42139) CVE-2008-2174 CVE-2008-6109
XF:asn1-constructed-heap-overflow(20870) CVE-2005-1935
XF:asn1c-any-type(17695) CVE-2004-2644
XF:asn1c-choice-type(17696) CVE-2004-2645
XF:asp-calendar-gain-access(18474) CVE-2004-1400
XF:asp-http-xss(28658) CVE-2006-3436
XF:asp-inline-corporate-calendar-sql-injection(20416) CVE-2005-1481
XF:asp-message-printer-sql-injection(38264) CVE-2007-5887
XF:asp-rider-default-sql-injection(23300) CVE-2005-3931
XF:asp-rider-verify-sql-injection(18479) CVE-2004-1401
XF:asp-validaterequest-xss(44741) CVE-2008-3842
XF:asp-validaterequestfilter-xss(44743) CVE-2008-3843
XF:asp-ziyaretcidefteri-mesajformu-xss(35445) CVE-2007-3887
XF:asp-ziyaretcudefteri-mesajformu-xss(35445) CVE-2007-3887
XF:asp2php-preparse-bo(18585) CVE-2004-1261
XF:aspautodealer-auto-info-disclosure(47124) CVE-2008-5608
XF:aspautodealer-detail-sql-injection(47123) CVE-2008-5595
XF:aspbb-aspbb-info-disclosure(31230) CVE-2007-0075
XF:aspbb-multiple-sql-injection(40004) CVE-2005-4259
XF:aspbb-performsearch-xss(26819) CVE-2006-2648
XF:aspbb-profile-default-xss(26530) CVE-2006-2497
XF:aspcc-sql-injection(9015) CVE-2002-1699
XF:aspdevxmforum-multiple-sql-injection(23511) CVE-2005-4165
XF:aspdiscussionforum-forumsearch-xss(26929) CVE-2006-2870
XF:aspdotnetstorefront-improper-validation(16377) CVE-2004-2699
XF:aspdotnetstorefront-signin-xss(16426) CVE-2004-2701
XF:aspedge-user-sql-injection(31723) CVE-2007-0560
XF:aspfolder-download-information-disclosure(34906) CVE-2007-3158
XF:aspforum-forum-sql-injection(46514) CVE-2008-6527
XF:aspforum-messages-newmessage-xss(47002) CVE-2008-6891
XF:aspforum-messages-sql-injection(47000) CVE-2008-6890
XF:aspinline-activeappointments-sql-injection(50667) CVE-2009-2242 CVE-2009-2243
XF:aspinline-search-xss(50666) CVE-2009-2241
XF:aspintranet-default-sql-injection(30267) CVE-2006-5987
XF:aspired2blog-blog-info-disclosure(47294) CVE-2008-5931
XF:aspired2blog-blogcomments-sql-injection(47295) CVE-2008-5930
XF:aspired2protect-login-sql-injection(39989) CVE-2008-0487
XF:aspired2quote-quote-info-disclosure(47325) CVE-2008-5885
XF:aspjar-delete-message-deletion(19301) CVE-2005-0424
XF:aspjar-guest-login-sql-injection(19299) CVE-2005-0423
XF:aspjar-guestbook-css(9005) CVE-2002-1729
XF:aspjar-guestbook-delete-messages(9006) CVE-2002-1730
XF:aspknowledgebase-admin-bypass-security(23038) CVE-2005-3596
XF:asplist-listpics-xss(27068) CVE-2006-2989
XF:asplistpics-listpics-sql-injection(30511) CVE-2006-6210
XF:aspmforum-multiple-sql-injection(23535) CVE-2005-4141
XF:aspnews-newsdetail-sql-injection(31719) CVE-2007-0566
XF:aspnewsmanagement-multiple-info-disclosure(47032) CVE-2008-5274
XF:aspnewsmanagement-news-info-disclosure(45838) CVE-2008-4511
XF:aspnewsmanagement-viewnews-sql-injection(42964) CVE-2008-5273
XF:aspnuke-account-hijacking(8832) CVE-2002-0522
XF:aspnuke-cookie-privilege-escalation(30541) CVE-2006-7152
XF:aspnuke-cookie-reveal-information(8833) CVE-2002-0523 CVE-2002-0524
XF:aspnuke-downloads-post-css(8830) CVE-2002-0521
XF:aspnuke-image-css(8829) CVE-2002-0520
XF:aspnuke-news-xss(34769) CVE-2007-2892
XF:aspnuke-register-sql-injection(30397) CVE-2006-6070
XF:aspnuke-user-profile-css(8831) CVE-2002-0521
XF:aspphotogallery-multiple-sql-injection(39646) CVE-2008-0256
XF:asppired2-moreinfo-sql-injection(30160) CVE-2006-5892
XF:aspplaygroundnet-calendar-xss(28352) CVE-2006-4206
XF:aspportal-classifieds-events-sql-injection(47127) CVE-2008-5605
XF:aspportal-classifieds-sql-injection(47268) CVE-2008-5605
XF:aspportal-default1-sql-injection(30186) CVE-2006-5879
XF:aspportal-multiple-aspscripts-sql-injection(25346) CVE-2006-1353
XF:aspportal-multiple-scripts-sql-injection(25234) CVE-2006-1262
XF:aspportal-multiple-xss(25235) CVE-2006-1261
XF:aspportal-reply-sql-injection(42977) CVE-2008-5268
XF:aspproduct-aspproductcatalog-info-disc(49859) CVE-2009-1322
XF:aspproduct-search-xss(49858) CVE-2009-1321
XF:aspproductcatalog-catalog-sql-injection(36894) CVE-2008-6875
XF:aspproductcatalog-default-sql-injection(52433) CVE-2008-6875
XF:aspproject-cookie-security-bypass(48172) CVE-2009-0280
XF:aspreadyfaq-aradmin-sql-injection(22538) CVE-2005-3199
XF:aspreferral-merchantsadd-sql-injection(46957) CVE-2008-6889
XF:asprunner-database-file-access(16802) CVE-2004-2060
XF:asprunner-information-disclosure(16800) CVE-2004-2058
XF:asprunner-sql-injection(16799) CVE-2004-2057
XF:asprunner-xss(16801) CVE-2004-2059
XF:aspscriptzgb-submit-xss(26944) CVE-2006-2882
XF:aspseek-scgi-bo CVE-2001-0476
XF:aspshoppingcartscript-unspecified-xss(47003) CVE-2008-6500
XF:aspsitem-anket-sql-injection(26858) CVE-2006-2793
XF:aspsitem-haberler-sql-injection(25932) CVE-2006-1964
XF:aspsitem-hesabim-information-disclosure(26859) CVE-2006-2794
XF:aspsmiley-default-sql-injection(30259) CVE-2006-5952
XF:aspstatsgenerator-pages-sql-injection(27283) CVE-2006-3580
XF:aspstatsgenerator-settingsskin-code-execution(27284) CVE-2006-3184
XF:aspsurvey-loginvalidate-sql-injection(24087) CVE-2006-0192
XF:aspthai-aspthaiforum-info-disclosure(46960) CVE-2008-6872
XF:aspthai-login-sql-injection(24359) CVE-2006-0490
XF:aspticker-admin-sql-injection(31152) CVE-2006-6848
XF:aspticker-news-info-disclosure(47143) CVE-2008-5603
XF:asptopsites-goto-sql-injection(24072) CVE-2006-0184
XF:aspupload-directory-browsing-download(7629) CVE-2001-0938
XF:aspupload-upload-directory-traversal(7628) CVE-2001-0938
XF:aspuserengine-users-information-disclosure(49400) CVE-2008-6494
XF:aspwebalbum-album-sql-injection(44877) CVE-2004-1553
XF:aspwebalbum-album-xss(44878) CVE-2008-6977
XF:aspwebalbum-image-file-upload(44876) CVE-2004-1553 CVE-2008-6978
XF:aspwebalbum-sql-injection(17507) CVE-2004-1553
XF:aspwebcalendar-calendar-info-disclosure(49885) CVE-2009-1223
XF:aspwebcalendar-calendar-sql-injection(33157) CVE-2004-1552
XF:aspwebcalendar-calendaradmin-file-upload(43201) CVE-2008-2832
XF:aspwebcalendar-sql-injection(17506) CVE-2004-1552
XF:aspweblinks-links-sql-injection(26937) CVE-2006-2847
XF:assetman-multiple-xss(26702) CVE-2006-2641
XF:assetman-searchinv-sql-injection(45233) CVE-2008-4161
XF:associated-index-xss(27255) CVE-2006-3151
XF:associated-rootpath-file-include(26931) CVE-2006-2841
XF:assp-assp-unspecified(35910) CVE-2007-4296
XF:assp-getfile-url-file-access(28392) CVE-2006-4258
XF:astaro-firewall-info-disclosure(17960) CVE-2004-2252
XF:astaro-http-proxy-dos(34884) CVE-2007-3253
XF:astaro-http-proxy-tcp-connect(22021) CVE-2005-2729
XF:astaro-insecure-file-permissions(8190) CVE-2002-1737
XF:astaro-packetfilter-dos(35823) CVE-2007-4243
XF:astaro-pop3-security-bypass(35827) CVE-2007-4242
XF:astaro-pptp-info-disclosure(17959) CVE-2004-2251
XF:astaro-proxy-information-disclosure(22024) CVE-2005-2730
XF:astaro-smtp-proxy-dos(34882) CVE-2007-3253
XF:astats-symlink(18698) CVE-2004-2605
XF:astatspro-countdlorlink-sql-injection(40852) CVE-2008-0918
XF:astatspro-refer-sql-injection(40611) CVE-2008-0839
XF:asteridex-callboth-command-execution(35270) CVE-2007-3621
XF:asterisk-addons-ooh323-dos(42869) CVE-2008-2543
XF:asterisk-asturidecode-dos(42823) CVE-2008-2119
XF:asterisk-astverbose-dos(41301) CVE-2008-1333
XF:asterisk-audio-directory-traversal(25996) CVE-2006-2021
XF:asterisk-bye-also-dos(39361) CVE-2008-0095
XF:asterisk-cdraddonmysql-sql-injection(37235) CVE-2007-5488
XF:asterisk-cdrpqsql-sql-injection(38765) CVE-2007-6170
XF:asterisk-channeldriver-dos(29664) CVE-2006-5445
XF:asterisk-contentheader-bo(37052) CVE-2007-5358
XF:asterisk-downloadprotocol-dos(43955) CVE-2008-3264
XF:asterisk-getinput-code-execution(29663) CVE-2006-5444
XF:asterisk-httpmanagerid-weak-security(41304) CVE-2008-1390
XF:asterisk-iax2-information-disclosure(34085) CVE-2007-2488
XF:asterisk-iax2-videoframe-bo(27045) CVE-2006-2898
XF:asterisk-iax2channeldriver-bo(35466) CVE-2007-3762
XF:asterisk-iax2protocol-ack-dos(41966) CVE-2008-1897
XF:asterisk-interface-dos(33886) CVE-2007-2294
XF:asterisk-mail-disclose-information(25993) CVE-2006-2020
XF:asterisk-manager-interface-bo(21115) CVE-2005-2081
XF:asterisk-mgcp-bo(28542) CVE-2006-4345
XF:asterisk-mime-body-dos(36261) CVE-2007-4521
XF:asterisk-new-dos(42049) CVE-2008-1923
XF:asterisk-poke-dos(43942) CVE-2008-3263
XF:asterisk-processsdp-bo(33895) CVE-2007-2293
XF:asterisk-record-code-execution(28544) CVE-2006-4346
XF:asterisk-record-directory-traversal(28564) CVE-2006-4346
XF:asterisk-registration-security-bypass(39124) CVE-2007-6430
XF:asterisk-resconfigpgsql-sql-injection(38766) CVE-2007-6171
XF:asterisk-rtp-codecpayload-bo(41305) CVE-2008-1289
XF:asterisk-rtp-dos(52046) CVE-2009-2651
XF:asterisk-rtppayload-bo(41302) CVE-2008-1289
XF:asterisk-sip-channeldriver-dos(32830) CVE-2007-1306
XF:asterisk-sip-dialoghistory-dos(36145) CVE-2007-4455
XF:asterisk-sip-invite-dos(33068) CVE-2007-1561
XF:asterisk-sip-response-dos(33892) CVE-2007-2297
XF:asterisk-sip-security-bypass(41308) CVE-2008-1332
XF:asterisk-skinny-channel-dos(35870) CVE-2007-4280
XF:asterisk-skinny-driver-dos(35478) CVE-2007-3764
XF:asterisk-sprintf-bo(37051) CVE-2007-5358
XF:asterisk-stun-dos(35480) CVE-2007-3765
XF:asterisk-username-info-disclosure(45059) CVE-2008-3903
XF:asterisk-vmail-obtain-information(23002) CVE-2005-3559
XF:astrocam-cgi-command-execution(10538) CVE-2002-1874
XF:astrocam-pic-xss(42122) CVE-2008-2075
XF:astrospaces-profile-sql-injection(45915) CVE-2008-4642
XF:asus-asbm3-dpcproxy-bo(41358) CVE-2008-1491
XF:asus-asmb3-dpcproxy-bo(41358) CVE-2008-1491
XF:asus-image-security-bypass(48962) CVE-2009-0656
XF:asxmp3-m3u-bo(49840) CVE-2009-1324
XF:asxmp3-ram-asxf-bo(50374) CVE-2009-1642
XF:at-f-read-files(7577) CVE-1999-1409
XF:atarone-appages-xss(45706) CVE-2008-4488
XF:atarone-apsave-file-include(45705) CVE-2008-4489
XF:atarone-apsave-sql-injection(45704) CVE-2008-4487
XF:atcontenator-nav-file-include(32453) CVE-2007-0983
XF:aten-kvm-client-weak-security(50849) CVE-2009-1473
XF:aten-kvm-mouse-weak-security(50850) CVE-2009-1474
XF:aten-kvm-ssl-weak-security(50851) CVE-2009-1477
XF:aterr-functions-common-file-include(41903) CVE-2008-1962
XF:atftp-strcpy-bo(10142) CVE-2002-2396
XF:atguard-firewall-bypass(8962) CVE-2002-2063
XF:atheos-dot-directory-traversal(8108) CVE-2002-0244
XF:atheros-as5416ac1e-associationrequest-dos(44921) CVE-2007-5474
XF:atheros-management-frames-dos(35788) CVE-2007-2927
XF:athoc-toolbar-bo(17627) CVE-2005-0187
XF:athoc-toolbar-format-string(17628) CVE-2005-0188
XF:atm-include-file-include(28874) CVE-2006-4749
XF:atmail-buildpleskupgrade-info-disclosure(44145) CVE-2008-3579
XF:atmail-config-htpasswd-info-disclosure(44144) CVE-2008-3395
XF:atmail-connection-dos(15320) CVE-2004-2378
XF:atmail-func-xss(38758) CVE-2007-6196
XF:atmail-parse-showmail-abook-xss(44860) CVE-2008-4045
XF:atmail-readmsg-xss(34376) CVE-2007-2825
XF:atmail-util-xss(15324) CVE-2004-2379
XF:atmel-snmp-community-dos(7734) CVE-2001-0888
XF:atmel-vnetb-ap-snmp-security(6576) CVE-2001-0514
XF:atmonlinux-les-command-bo(11903) CVE-2003-0396
XF:atnbaseloader100-activex-bo(34548) CVE-2007-2938
XF:atom-photoblog-atomphotoblog-xss(34767) CVE-2007-3134
XF:atom-photoblog-tag-xss(34768) CVE-2007-3135
XF:atomicphotoalbum-album-sql-injection(45433) CVE-2008-4335
XF:atomicphotoalbum-album-xss(45432) CVE-2008-4336
XF:atomixmp3-mp3-bo(34022) CVE-2007-2487
XF:atomixmp3-plsm3u-bo(30633) CVE-2006-6287
XF:atomphotoblog-atomphotoblog-sql-injection(43982) CVE-2008-3351
XF:atphttpd-sockgets-bo(10362) CVE-2002-1816
XF:atsar-root-access CVE-2000-0171
XF:att-rexecd(3159) CVE-1999-1059
XF:attachmate-multiple-unspecified(48536) CVE-2008-6021
XF:attachment-mod-directory-traversal(18437) CVE-2004-1399
XF:attachment-mod-file-upload(18438) CVE-2004-1404
XF:attachment-uploaded-xss(28788) CVE-2006-7073
XF:attftp-filename-bo(30539) CVE-2006-6184
XF:atutor-import-file-include(44051) CVE-2008-3368
XF:atutor-index-sql-injection(27620) CVE-2006-3662
XF:atutor-login-search-xss(21910) CVE-2005-2649
XF:atutor-orderby-sql-injection(28082) CVE-2006-3996
XF:atutor-passwordreminder-sql-injection(22282) CVE-2005-2954
XF:atutor-registration-xss(27619) CVE-2006-3821
XF:atutor-section-file-include(29693) CVE-2006-5734
XF:auction-weaver-delete-files CVE-2000-0810
XF:auction-weaver-username-bidfile CVE-2000-0811
XF:auctionxl-viewfaqs-sql-injection(42214) CVE-2008-2189
XF:audienceview-error-xss(23168) CVE-2005-4682
XF:audins-index-sql-injection(32837) CVE-2007-1242
XF:audins-setup-xss(32839) CVE-2007-1241
XF:audins-unistall-authentication-bypass(32707) CVE-2007-1243
XF:audio-audiocdripperocx-dos(34206) CVE-2007-2603
XF:audiogalaxy-plaintext-password(7621) CVE-2001-1536
XF:audiolibplayer-m3u-bo(51873) CVE-2009-3221
XF:audiolink-audiolink-symlink(44757) CVE-2008-4942
XF:audioplus-lst-m3u-bo(51484) CVE-2009-2362
XF:audioplus-pls-bo(51485) CVE-2009-2363
XF:auditwizard-remoteaudit-password-disclosure(28743) CVE-2006-4642
XF:auracms-index-file-include(36541) CVE-2007-4908
XF:auracms-index-file-upload(36539) CVE-2007-4905
XF:auracms-komentar-sql-injection(35814) CVE-2007-4171
XF:auracms-multiple-sql-injection(36519) CVE-2007-4804
XF:auracms-name-pesan-sql-injection(27705) CVE-2006-3559
XF:auracms-online-sql-injection(41217) CVE-2008-1398
XF:auracms-pagesdata-security-bypass(43682) CVE-2008-3203
XF:auracms-stat-code-execution(39777) CVE-2008-0390
XF:auracms-teman-xss(27703) CVE-2006-3558
XF:auracms-title-xss(27704) CVE-2006-3558
XF:auracms-user-security-bypass(41529) CVE-2008-1715
XF:aurigma-imageuploader41-bo(40152) CVE-2008-1490
XF:auroraframework-dbmysql-sql-injection(38999) CVE-2007-6345
XF:auth-multiple-injections(24854) CVE-2006-0868
XF:auth2db-unspecified-sql-injection(49518) CVE-2009-1208
XF:authentium-command-antivirus-activex-bo(34657) CVE-2007-2917
XF:authoria-hr-athcgi-xss(10324) CVE-2002-2348
XF:auto-carimages-file-upload(52445) CVE-2008-6929
XF:autobeuser-unspecified-sql-injection(45255) CVE-2008-6459
XF:autoclassifiedssoftware-image-file-upload(46608) CVE-2008-6944
XF:autodealer-detail-sql-injection(31219) CVE-2007-0053
XF:autodealer-type-sql-injection(47365) CVE-2008-6874
XF:autodealerscms-id-sql-injection(45200) CVE-2008-4074
XF:autodealerscms-index-sql-injection(45049) CVE-2008-4073 CVE-2008-4074
XF:autodesk-backburner-command-execution(36582) CVE-2007-4749
XF:autodesk-gain-privileges(24460) CVE-2005-4710
XF:autofs-hostsmap-weak-securtiy(39188) CVE-2007-6285
XF:autogallery-index-xss(25756) CVE-2006-1750
XF:autoindex-index-dos(38437) CVE-2007-5984
XF:autoindex-index-xss(38436) CVE-2007-5983
XF:autolinks-alinitialize-file-include(22061) CVE-2005-2782
XF:automate-unacev2-bo(26982) CVE-2005-2856
XF:automatedlinkexchange-catid-sql-injection(42401) CVE-2008-2263
XF:automatticstats-wordpress-header-xss(34934) CVE-2007-3288
XF:automountd-dos(19437) CVE-2003-1065
XF:autonessus-bulkupdate-xss(45634) CVE-2008-4520
XF:autonomy-keyview-applix-dos(41722) CVE-2007-5406
XF:autonomy-keyview-applix-multiple-bo(41721) CVE-2007-5405
XF:autonomy-keyview-eml-multiple-bo(41723) CVE-2007-5399
XF:autonomy-keyview-foliosr-bo(41716) CVE-2007-6020
XF:autonomy-keyview-html-multiple-bo(41724) CVE-2008-0066
XF:autonomy-keyview-kvdocve-bo(41725) CVE-2008-1101
XF:autonomy-keyview-wp6sr-bo(49284) CVE-2008-4564
XF:autonomy-mimesr-bo(41856) CVE-2008-1718
XF:autoproducer-dxttextouteffect-activex-bo(43036) CVE-2008-2910
XF:autorankpro-adminmain-xss(27552) CVE-2006-3377
XF:autostand-modascategory-file-include(33660) CVE-2007-2319
XF:autostart-backbone-code-execution(48197) CVE-2009-0311
XF:autotheme-pnadminphp-gain-access(20490) CVE-2005-1608
XF:autovue-filename-bo(27968) CVE-2006-3350
XF:avactis-checkout-xss(44929) CVE-2008-6969
XF:avactis-multiple-scripts-sql-injection(26178) CVE-2006-2164
XF:avactis-multiple-scripts-xss(26179) CVE-2006-2165
XF:avahi-assert-dos(35036) CVE-2007-3372
XF:avahi-core-bo(26331) CVE-2006-2289
XF:avahi-mdns-name-dos(26330) CVE-2006-2288
XF:avahi-netlink-security-bypass(30207) CVE-2006-5461
XF:availscript-Photoalbum-pics-xss(45018) CVE-2008-4370
XF:avantbrowser-contenttype-dos(33049) CVE-2007-1501
XF:avantbrowser-http-bo(12974) CVE-2003-1321
XF:avantbrowser-javascript-dos(45121) CVE-2008-4166
XF:avarcade-avauserid-unauthorized-access(35234) CVE-2007-3643
XF:avarcade-index-sql-injection(35209) CVE-2007-3563
XF:avast-aavmker4-privilege-escalation(41527) CVE-2008-1625
XF:avast-aswmon2-bo(53456) CVE-2009-3522
XF:avast-cab-bo(34477) CVE-2007-2845
XF:avast-chm-unpacker-unspecified(26927) CVE-2006-2869
XF:avast-default-insecure-permissions(25336) CVE-2006-1355
XF:avast-home-iso-rpm-bo(47251) CVE-2008-6846
XF:avast-password-security-bypass(32269) CVE-2007-0829
XF:avast-sis-bo(34501) CVE-2007-2846
XF:avast-tar-code-execution(38877) CVE-2007-6265
XF:avax-writemovie-file-overwrite(35089) CVE-2007-3459
XF:avaya-cajun-default-passwords(10374) CVE-2002-1229
XF:avaya-cajun-default-snmp(9769) CVE-2002-1448
XF:avaya-cm-backuphistory-cmd-execution(45747) CVE-2008-5709
XF:avaya-cm-configuration-info-disclosure(45750) CVE-2008-5710
XF:avaya-cm-interface-code-execution(43386) CVE-2008-6710
XF:avaya-cm-log-command-execution(43391) CVE-2008-6711
XF:avaya-cm-setstatic-command-execution(45749) CVE-2008-5709
XF:avaya-cnonce-call-hijacking(34972) CVE-2007-3319
XF:avaya-ipsoftphone-h323-dos(45745) CVE-2008-6141
XF:avaya-mss-ftpstorage-command-execution(43424) CVE-2008-3081
XF:avaya-mss-nameserver-command-execution(43423) CVE-2008-3081
XF:avaya-mss-tcpip-command-execution(43422) CVE-2008-3081
XF:avaya-onex-sip-dos(45748) CVE-2008-6140
XF:avaya-onex-sipuac-dos(34952) CVE-2007-3317 CVE-2007-3318
XF:avaya-rtp-port-weak-security(34968) CVE-2007-3322
XF:avaya-ses-application-info-disclosure(43394) CVE-2008-6707
XF:avaya-ses-application-unauth-access(43389) CVE-2008-6707
XF:avaya-ses-certificate-info-disclosure(43384) CVE-2008-6707
XF:avaya-ses-command-execution(43380) CVE-2008-6709
XF:avaya-ses-databasepassword-info-disclosure(43387) CVE-2008-6706
XF:avaya-ses-databaseserver-info-disclosure(43388) CVE-2008-6706
XF:avaya-ses-help-information-disclosure(43395) CVE-2008-6707
XF:avaya-ses-objectsfolder-code-execution(43381) CVE-2008-6707
XF:avaya-ses-parameters-code-execution(43390) CVE-2008-6708
XF:avaya-ses-passwordencryption-info-disclosure(43383) CVE-2008-6706
XF:avaya-ses-servers-info-disclosure(44586) CVE-2008-3777
XF:avaya-ses-servers-security-bypass(44585) CVE-2008-3778
XF:avaya-ses-sip-sql-injection(41733) CVE-2008-6573
XF:avaya-ses-spim-sql-injection(41730) CVE-2008-6573
XF:avaya-ses-statesfolder-code-execution(43393) CVE-2008-6707
XF:avaya-ses-tablepasswords-info-disclosure(43382) CVE-2008-6706
XF:avaya-ses-unspecified-dos(49849) CVE-2008-6575
XF:avaya-ses-unspecified-unauthorized-access(41734) CVE-2008-6574 CVE-2008-6575
XF:avaya-sipinvite-security-bypass(34971) CVE-2007-3320
XF:avaya-sipmessage-dos(35072) CVE-2007-3318
XF:avaya-udp-port-dos(34970) CVE-2007-3321
XF:avbook-edit-sql-injection(48084) CVE-2009-0332
XF:aventail-connect-dns-bo(33972) CVE-2007-2434
XF:avg-avg7core-code-execution(35345) CVE-2007-3777
XF:avg-cab-dos(30246) CVE-2006-5938
XF:avg-doc-dos(30247) CVE-2006-5939
XF:avg-linux-upx-dos(47254) CVE-2008-6662
XF:avg-update-gain-privilieges(25139) CVE-2006-1125
XF:avg-upx-dos(44057) CVE-2008-3373
XF:avg-zip-security-bypass(50426) CVE-2009-1784
XF:aview-asciiview-symlink(44837) CVE-2008-4935
XF:avira-antivir-lzh-bo(34551) CVE-2007-2974
XF:avira-antivir-tar-dos(34557) CVE-2007-2973
XF:avira-antivir-upx-dos(34556) CVE-2007-2972
XF:avira-createprocess-privilege-escalation(46568) CVE-2009-2761
XF:avira-ioctl-privilege-escalation(46567) CVE-2008-6962
XF:avirt-gateway-telnet-access(7915) CVE-2002-0134
XF:avirt-http-proxy-bo(7916) CVE-2002-0133
XF:avirt-mail-from-dos CVE-2000-0971
XF:avirt-rcpt-to-dos CVE-2000-0971
XF:avirt-rover-pop3-dos(3765) CVE-2000-0060
XF:avirt-soho-multiple-bo(15286) CVE-2004-0316
XF:avirt-telnet-proxy-bo(7918) CVE-2002-0133
XF:avirt-voice-get-bo(15288) CVE-2004-0315
XF:avlcforum-vlcforum-sql-injection(43740) CVE-2008-3200
XF:avocent-connect-security-bypass(22302) CVE-2005-2984
XF:avp2-long-query-bo(17665) CVE-2004-1587
XF:avt-rightfax-predict-session CVE-2000-0111
XF:avtutorialscript-changepw-data-manipulation(35295) CVE-2007-3630
XF:avtutorialscript-changepw-sql-injection(35487) CVE-2007-3691
XF:awbs-cart2-file-include(33860) CVE-2007-2272
XF:awbs-contact-xss(28069) CVE-2006-3956
XF:awbs-news-sql-injection(43110) CVE-2008-2903
XF:awbs-unspecified-sql-injection(46160) CVE-2007-4112
XF:awcm-a-file-include(51979) CVE-2009-3219
XF:awcm-login-sql-injection(51980) CVE-2009-3218
XF:aweb-dotdot-directory-traversal(16048) CVE-2004-1991
XF:aweb-path-disclosure(16047) CVE-2004-1990
XF:awebbannergenerator-index-xss(25782) CVE-2006-1699
XF:awebbb-multiple-sql-injection(25587) CVE-2006-1638
XF:awebbb-multiple-xss(25585) CVE-2006-1637
XF:awebnews-multiple-sql-injection(25590) CVE-2006-1613
XF:awebnews-pathtonews-file-include(32770) CVE-2007-1247
XF:awebnews-visview-xss(25589) CVE-2006-1612
XF:awesometemplateengine-multiple-xss(39396) CVE-2008-0190
XF:awffull-multiple-bo(31731) CVE-2007-0510
XF:awrate-search-file-include(30708) CVE-2006-6368
XF:awstats-awstatpl-obtain-information(19333) CVE-2005-0435
XF:awstats-awstats-xss(44504) CVE-2008-3714
XF:awstats-eval-execute-commands(21769) CVE-2005-1527
XF:awstats-function-code-execution(19336) CVE-2005-0436
XF:awstats-information-disclosure(19477) CVE-2005-0438
XF:awstats-migrate-command-execution(26287) CVE-2006-2237
XF:awstats-multiple-path-disclosure(25880) CVE-2006-3682
XF:awstats-multiple-xss(25879) CVE-2006-3681
XF:awstats-querystring-xss(47116) CVE-2008-5080
XF:awstatstotals-multisort-command-execution(44712) CVE-2008-3922
XF:awstatstotals-unspecified-xss(44706) CVE-2008-3921
XF:awzmb-settingoptincludepath-file-include(37272) CVE-2007-5592
XF:axalto-password-information-disclosure(29839) CVE-2006-5600
XF:axdcms-index-file-include(38224) CVE-2007-5820
XF:axent-netprowler-ipfrag-dos CVE-2000-0394
XF:axentforum-viewposts-xss(27136) CVE-2006-3080
XF:axentguestbook-guestbook-xss(27160) CVE-2006-3077
XF:axesstel-axwd800-multiple-auth-bypass(44044) CVE-2008-3411
XF:axigen-aximilter-format-string(39803) CVE-2008-0434
XF:axigen-memcpy-dos(32342) CVE-2007-0886
XF:axigen-nullpointer-dos(32345) CVE-2007-0887
XF:axiom-template-file-include(31372) CVE-2007-0200
XF:axis-activex-savebmp-bo(34133) CVE-2007-2239
XF:axis-admin-authentication-bypass(12104) CVE-2003-0240
XF:axis-default-admin-passwd(7665) CVE-2001-1543
XF:axis-directory-traversal(17079) CVE-2004-2426
XF:axis-messages-unauth-access(11440) CVE-2003-1386
XF:axis-storpoint-auth CVE-2000-0191
XF:axis2100-logpage-xss(36842) CVE-2007-5214
XF:axis2100-networksettings-xss(36840) CVE-2007-5214
XF:axis2100-videoviewing-xss(36841) CVE-2007-5214
XF:axspawn-pam-login-bo(7974) CVE-2002-2098
XF:axyl-prerm-symlink(41406) CVE-2008-1417
XF:ayeview-bitmap-dos(48183) CVE-2008-5937
XF:ayeview-gif-dos(45678) CVE-2008-5884
XF:aysystem-main-file-include(28593) CVE-2006-4440
XF:az-bulletin-board-file-existence(20183) CVE-2005-1201
XF:az-bulletin-board-file-include(20181) CVE-2005-1200
XF:az-bulletin-board-file-modification(20180) CVE-2005-1201
XF:azboard-list-adminok-sql-injection(26495) CVE-2006-2504
XF:azbulletinboard-post-xss(24274) CVE-2006-0407
XF:azdgdating-index-view-xss(15796) CVE-2004-1911
XF:azdgdating-platinum-sql-injection(20051) CVE-2005-1082
XF:azdgdating-platinum-viewphp-xss(20052) CVE-2005-1081
XF:azdgdating-securityinc-code-execution(22258) CVE-2005-2951
XF:azdgdatingplatinum-view-sql-injection(27436) CVE-2005-1082
XF:azdgvote-intpath-file-inclusion(25762) CVE-2006-1770
XF:aznews-news-sql-injection(26136) CVE-2006-2136
XF:azphotoalbum-index-xss(26679) CVE-2006-2680
XF:aztech-adsl224-interface-command-execution(41492) CVE-2008-6554
XF:aztech-router-default-password(50068) CVE-2008-6588
XF:aztek-forum-xss(18057) CVE-2004-2725
XF:aztekforum-info-disclosure(25036) CVE-2006-1111
XF:aztekforum-multiple-xss(25035) CVE-2006-1110
XF:azucar-index-file-include(30935) CVE-2006-6720
XF:azureus-index-xss(27300) CVE-2006-3230
XF:b1gbb-footerinc-file-include(35035) CVE-2007-3401
XF:b1gbb-id-sql-injection(35129) CVE-2007-3589
XF:b1gbb-visitenkarte-xss(35131) CVE-2007-3590
XF:b1gmail-hilfe-xss(36668) CVE-2007-4975
XF:b2-b2inc-command-execution(9013) CVE-2002-0734
XF:b2-b2inc-file-include(33884) CVE-2007-2290
XF:b2-gpc-xss(9835) CVE-2002-1464
XF:b2-tableposts-sql-injection(9836) CVE-2002-1465
XF:b2blog-b2verifauth-file-include(31139) CVE-2006-6830
XF:b2evolution-importmt-file-include(30580) CVE-2006-6417
XF:b2evolution-index-file-include(33687) CVE-2007-2681
XF:b2evolution-login-xss(31368) CVE-2007-0175
XF:b2evolution-multiple-messages-xss(30562) CVE-2006-6197
XF:b2evolution-multiple-scripts-file-include(33907) CVE-2007-2358
XF:baal-admin-password-modify(17499) CVE-2004-2144
XF:baalasp-addpost1-xss(30344) CVE-2006-6089
XF:baalasp-login-security-bypass(30342) CVE-2006-6090
XF:baalasp-search-sql-injection(30343) CVE-2006-6090
XF:babbleboard-index-csrf(47396) CVE-2008-6905
XF:babbleboard-username-xss(47403) CVE-2008-6906
XF:baboviolent-map-names-dos(36016) CVE-2007-4379
XF:baboviolent-messages-format-string(36015) CVE-2007-4378
XF:baboviolent-packets-dos(36014) CVE-2007-4379
XF:baboviolent-udp-dos(36017) CVE-2007-4379
XF:baby-ftp-information-disclosure(25413) CVE-2006-1383
XF:baby-web-asp-disclosure(25417) CVE-2006-1391
XF:back-end-includes-file-include(29172) CVE-2006-5076
XF:backend-htdocs-xss(33685) CVE-2007-2099
XF:backend-index-file-include(29605) CVE-2006-5076
XF:backend-multiple-scripts-file-include(33668) CVE-2007-2097
XF:backendcms-beconfig-file-inclusion(26699) CVE-2006-2682
XF:backlinkspider-catid-sql-injection(42189) CVE-2008-2096
XF:backoffice-bypass-authentication(8862) CVE-2002-0736
XF:backoffice-lite-administrative-bypass(19010) CVE-2005-0301
XF:backoffice-lite-sql-injection(19013) CVE-2005-0302
XF:backoffice-lite-xss(19014) CVE-2005-0303
XF:backup-invalid-input(27638) CVE-2006-4902
XF:backup-manager-password-plaintext(34489) CVE-2007-2766
XF:backup-product-buffer-overflow(29343) CVE-2006-5171
XF:backup-product-string-overflow(29344) CVE-2006-5172
XF:backupexec-app-memory-dos(25309) CVE-2006-1297
XF:backupexec-bengine-dos(38677) CVE-2007-4347
XF:backupexec-bengine-format-string(25310) CVE-2006-1298
XF:backupexec-bengine-null-dos(38676) CVE-2007-4346
XF:backupexec-dataprotocol-bo(46731) CVE-2008-5408
XF:backupexec-ndmp-gain-access(21793) CVE-2005-2611
XF:backupexec-remoteagent-security-bypass(46730) CVE-2008-5407
XF:backupexec-rpc-interface-bo(28336) CVE-2006-4128
XF:backupninja-backupninja-script-symlink(22461) CVE-2005-3111
XF:backupwordpress-bkpwp-file-include(38212) CVE-2007-5800
XF:backweb-activex-liteinstactivator-bo(42991) CVE-2008-0956
XF:backweb-cleartext-passwords(1565) CVE-1999-1277
XF:backweb-polite-agent-protocol CVE-1999-0395
XF:bacula-makecatalogbackup-info-disclosure(37336) CVE-2007-5626
XF:badblue-cleansearchstring-xss(9514) CVE-2002-1683
XF:badblue-directory-contents-disclosure(9239) CVE-2002-0800
XF:badblue-dotdotdot-directory-traversal(8295) CVE-2002-0325
XF:badblue-ext-reveal-path(6130) CVE-2001-0276
XF:badblue-extdll-xss(9513) CVE-2002-1685
XF:badblue-file-source-disclosure (7021) CVE-2001-1140
XF:badblue-get-dos(9528) CVE-2002-1023
XF:badblue-msoffice-script-directory-traversal(7946) CVE-2002-1684
XF:badblue-mult-connection-dos(17064) CVE-2004-1727
XF:badblue-multiple-weak-security(42090) CVE-2008-2003
XF:badblue-null-file-disclosure(9557) CVE-2002-1021
XF:badblue-phptestphp-path-disclosure(15311) CVE-2004-2374
XF:badblue-plaintext-passwords(9558) CVE-2002-1022
XF:badblue-protected-file-access(10466) CVE-2002-1541
XF:badblue-soinfo-odbc-passwords(10690) CVE-2002-2289
XF:badblue-unauth-admin-access(9642) CVE-2002-2170
XF:badblue-url-css(8294) CVE-2002-0326
XF:bahar-download-aspkat-sql-injection(46032) CVE-2008-6075
XF:baidu-baidubar-code-execution(35692) CVE-2007-4105
XF:baiduhi-cstransfer-bo(45117) CVE-2008-6444
XF:bair-security-removal CVE-2000-0802
XF:bajie-error-message-xss(11687) CVE-2003-1543
XF:bajie-view-arbitrary-files(5021) CVE-2000-0773
XF:bakbone-netvault-gain-privileges(20302) CVE-2005-1372
XF:balabit-syslog-ng-dos(5576) CVE-2000-1165
XF:bamagalerie-viewcat-sql-injection(41188) CVE-2008-1349
XF:ban-connexion-sql-injection(29863) CVE-2006-7089
XF:bandcms-news-sql-injection(52940) CVE-2009-3252
XF:bandersnatch-index-path-disclosure(38308) CVE-2007-5942
XF:bandersnatch-index-sql-injection(35406) CVE-2007-3909
XF:bandersnatch-index-xss(38360) CVE-2007-6001
XF:bandersnatch-resourcename-xss(35407) CVE-2007-3910
XF:bandmin-index-xss(12108) CVE-2003-0416
XF:bandsite-admin-security-bypass(30921) CVE-2006-6722
XF:bandsitecms-loginauth-security-bypass(46601) CVE-2008-5497
XF:bandsitecms-logout-csrf(44589) CVE-2008-7058
XF:bandsitecms-merchandise-xss(44590) CVE-2008-7057
XF:bandsitecms-phpmydump-info-disclosure(44588) CVE-2008-7056
XF:bandwebsite-info-xss(46817) CVE-2008-5338
XF:bandwebsite-lyrics-sql-injection(46816) CVE-2008-5337
XF:banktown-setbannerurl-bo(26214) CVE-2006-2233
XF:bannerexchange-logonlicense-sql-injection(47281) CVE-2008-6364
XF:bannerfarm-banners-xss(25919) CVE-2006-1950
XF:bannermanagement-tr-sql-injection(44551) CVE-2008-3749
XF:bannerwheel-badmin-cgi-bo(9115) CVE-2002-2411
XF:bans-search-xss(42373) CVE-2008-2531
XF:baofeng-backimage-titleimage-bo(36543) CVE-2007-4816
XF:baofeng-isdvdpath-bo(36542) CVE-2007-4816
XF:baofeng-mpsstormplayer-bo(36540) CVE-2007-4816
XF:barcode-bidib-code-execution(42896) CVE-2008-2684
XF:barcode-bidib-file-overwrite(42891) CVE-2008-2683
XF:barcode-bitiff-bo(42897) CVE-2008-2693
XF:barcodeax-activex-beginprint-bo(35011) CVE-2007-3435
XF:barcodegenerator-image-file-include(45406) CVE-2008-5993
XF:barcodewiz-barcodewiz-bo(34180) CVE-2007-2585
XF:barenukedcms-index-security-bypass(43471) CVE-2008-3133
XF:barenukedcms-index-sql-injection(43471) CVE-2008-3133
XF:barman-interface-file-include(30823) CVE-2006-6611
XF:barnowl-owl-zcrypt-bo(48824) CVE-2009-0363
XF:barosmini-barospath-file-include(53378) CVE-2009-3323
XF:barracuda-admin-default-account(28235) CVE-2006-4082
XF:barracuda-default-account(28213) CVE-2006-4001
XF:barracuda-email-xss(42594) CVE-2008-2333
XF:barracuda-img-command-execute(22120) CVE-2005-2848
XF:barracuda-index-sql-injection(26175) CVE-2006-2133
XF:barracuda-multiple-xss(24807) CVE-2006-0833
XF:barracuda-open-relay(19283) CVE-2005-0431
XF:barracuda-previewemail-command-execution(28234) CVE-2006-4081
XF:barracuda-previewemail-info-disclosure(28214) CVE-2006-4000
XF:barracuda-webadmin-xss(36716) CVE-2007-5058
XF:barracudadrive-group-chat-dos(38974) CVE-2007-6315
XF:barracudadrive-source-code-disclosure(38972) CVE-2007-6314
XF:barricade-router-gain-access(15993) CVE-2004-1976
XF:base-acid-sig1-xss(48848) CVE-2005-4878
XF:base-basemain-security-bypass(34724) CVE-2007-5578
XF:base-multiple-scripts-xss(25671) CVE-2006-1590
XF:base-path-file-include(26652) CVE-2006-2685
XF:basebuilder-maininc-file-include(45337) CVE-2008-6036
XF:bash-cmd CVE-1999-0234
XF:basiccms-index-sql-injection(43140) CVE-2008-2789
XF:basicforum-edit-sql-injection(30487) CVE-2006-6193
XF:basilic-index-sql-injection(51992) CVE-2009-2881
XF:basilix-bsxlibdir-file-include(29289) CVE-2006-5167
XF:basilix-webmail-attach-files(9386) CVE-2002-1710
XF:basilix-webmail-headers-css(9384) CVE-2002-1708
XF:basilix-webmail-retrieve-files(5934) CVE-2001-1044
XF:basilix-webmail-sql-injection(9385) CVE-2002-1709
XF:basilix-webmail-view-attachments(9387) CVE-2002-1711
XF:basilix-webmail-view-files(6873) CVE-2001-1045
XF:basomail-multiple-connection-dos(15002) CVE-2004-2168
XF:basp21-bsmtp-mail-relay(33211) CVE-2007-1713
XF:batalla-naval-bo(12087) CVE-2003-0407
XF:batmanportal-id-sql-injection(42231) CVE-2008-6640
XF:battleblog-article-sql-injection(43018) CVE-2008-2685
XF:battleblog-blankmaster-info-disclosure(31224) CVE-2007-0078
XF:battleblog-comment-sql-injection(42818) CVE-2008-2626
XF:battleblog-comment-xss(51807) CVE-2009-3719
XF:battleblog-uploadform-file-upload(50400) CVE-2009-1609
XF:battlefield-numplayers-dos(18400) CVE-2004-1220
XF:battlefield-remoteconsole-username-dos(11426) CVE-2003-1355
XF:battlefield-udp-query-dos(11084) CVE-2003-1354
XF:battlefieldvietnam-numplayers-dos(18402) CVE-2004-1220
XF:battlemages-incomplete-data-dos(15487) CVE-2004-2360
XF:battlenetclanscript-index-sql-injection(44262) CVE-2008-3556
XF:battlenetclanscript-members-sql-injection(42354) CVE-2008-2522
XF:bavo-unspecified-security-bypass(40988) CVE-2002-1719
XF:bazaarbuilder-index-sql-injection(48141) CVE-2009-0381
XF:bb4-netmon-execute-commands CVE-2000-0978
XF:bbace-functions-file-include(29315) CVE-2006-5187
XF:bbcaffe-xss(21913) CVE-2005-2653
XF:bblog-array-sql-injection(17552) CVE-2004-1570
XF:bblog-builtinhelp-sql-injection(44406) CVE-2008-4436
XF:bblog-name-xss(15635) CVE-2004-1865
XF:bbportals-tnews-sql-injection(37346) CVE-2007-5630
XF:bbpress-bblogin-xss(34947) CVE-2007-3243
XF:bbs-emarket-postscript-file-include(35476) CVE-2007-3934
XF:bbs100-shiftstringio-dos(35242) CVE-2007-3552
XF:bbs100-stateloginprompt-dos(35244) CVE-2007-3551
XF:bbs100-vprintf-dos(35245) CVE-2007-3552
XF:bbsemarket-index-xss(52157) CVE-2009-3152
XF:bbsnew-index2-file-include(29580) CVE-2006-5103
XF:bbsxp-error-xss(48187) CVE-2009-0285
XF:bbzlphp-index-directory-traversal(45497) CVE-2008-4707
XF:bbzlphp-phorumadminsession-security-bypass(45498) CVE-2008-4708
XF:bcb-compiler-integer-overflow(24514) CVE-2006-0634
XF:bcm5820-adddsabufbytes-integer-bo(16459) CVE-2004-0619
XF:bcoos-bid-sql-injection(46156) CVE-2007-6080
XF:bcoos-click-sql-injection(38594) CVE-2007-6080
XF:bcoos-common-file-include(38592) CVE-2007-6079
XF:bcoos-display-xss(38734) CVE-2007-6274
XF:bcoos-highlight-directory-traversal(42506) CVE-2008-2350
XF:bcoos-index-ratephoto-sql-injection(36752) CVE-2007-6266
XF:bcoos-index-sql-injection(36752) CVE-2007-5104
XF:bcoos-viewcat-sql-injection(46973) CVE-2008-6381
XF:bcwb-rootpathadmin-file-include(29905) CVE-2006-5816
XF:bcwb-startup-file-include(29039) CVE-2006-4946
XF:bdash-bo CVE-1999-0330
XF:bea-configxml-plaintext-password(15860) CVE-2004-1758
XF:bea-gain-privileges(15865) CVE-2004-0652
XF:bea-tuxedo-device-dos(13560) CVE-2003-0622
XF:bea-tuxedo-file-disclosure(13559) CVE-2003-0621
XF:bea-tuxedo-filename-xss(13561) CVE-2003-0623
XF:bea-tuxedo-remote-access(6326) CVE-2001-1477
XF:bea-weblogic-hrs(42901) CVE-2005-2092
XF:bea-weblogic-interactivequery-xss(13568) CVE-2003-0624
XF:beacon-splashlang-file-include(34270) CVE-2007-2663
XF:beagle-beagle-status-privilege-escalation(25303) CVE-2006-1296
XF:beagle-indexing-command-execution(26104) CVE-2006-1865
XF:beamospetition-index-sql-injection(43466) CVE-2008-3132
XF:bearshare-dot-download-files(6481) CVE-2001-0368
XF:bearshare-encoded-directory-traversal(10240) CVE-2002-2144
XF:beatcraft-bcproj-bo(44794) CVE-2008-4087
XF:beatnik-rss-feed-xss(34986) CVE-2007-3110
XF:becky-mail-message-bo(6531) CVE-2001-0611
XF:becky-readreceipt-bo(48684) CVE-2009-0569
XF:beehive-forum-links-xss(34827) CVE-2007-3212
XF:beehive-links-linksadd-xss(23879) CVE-2005-4460
XF:beehive-multiple-scripts-file-include(27386) CVE-2006-3266
XF:beehive-path-disclosure(21536) CVE-2005-2423
XF:beehiveforum-webtag-sql-injection(21535) CVE-2005-2421
XF:belkin-ap-snmp-dos(9960) CVE-2002-1811
XF:belkin-f5d72304-security-bypass(41120) CVE-2008-1242
XF:belkin-f5d72304-setupdns-security-bypass(41124) CVE-2008-1244
XF:belkin-f5d72304-setupvirtualserver-dos(41116) CVE-2008-1245
XF:belkin-gplus-hostname-xss(35380) CVE-2007-3784
XF:belkin-incorrect-ip(9324) CVE-2002-1431
XF:belkin-router-default-password(21412) CVE-2005-2374
XF:belkin-router-interface-security-bypass(44874) CVE-2008-7115
XF:belkin-savecfgfile-authentication-bypass(39793) CVE-2008-0403
XF:belkin-wireless-auth-bypass(23059) CVE-2005-3802
XF:belkin-wirelessg-logstm-dos(38576) CVE-2007-6040
XF:belongsitebuilder-admin-security-bypass(39842) CVE-2008-4585
XF:benderscalendar-sql-injection(24120) CVE-2006-0252
XF:benhur-protected-port-scan(9644) CVE-2002-2307
XF:benja-multiple-xss(43284) CVE-2008-2987
XF:benja-upload-file-upload(43282) CVE-2008-2988
XF:beos-networking-dos CVE-2000-0279
XF:beos-syscall-dos CVE-2000-0276
XF:beos-tcp-frag-dos CVE-2000-0463
XF:berthanas-yonetici-sql-injection(35684) CVE-2007-4119
XF:berylium-berylium-file-include(34158) CVE-2007-2531
XF:beryo-downloadpic-directory-traversal(33479) CVE-2007-1929
XF:bestcrypt-bctool-gain-privileges(6648) CVE-2001-1345
XF:besttoplist-bannerupload-file-upload(35979) CVE-2007-4376
XF:betaboard-editprofile-xss(25838) CVE-2006-1891
XF:betaparticle-blog-authentication-bypass(19781) CVE-2005-0854
XF:betaparticle-web-root-information-disclosure(19779) CVE-2005-0853
XF:betsie-parserl-xss(9468) CVE-2002-1006
XF:bettermember-view-sql-injection(48612) CVE-2009-0531
XF:bfcommand-bypass-authentication(22055) CVE-2005-2789
XF:bfcommand-client-gain-privileges(22057) CVE-2005-2790
XF:bfcommand-connection-dos(22060) CVE-2005-2791
XF:bfexplorer-dologin-sql-injection(29942) CVE-2006-5606
XF:bfexplorer-lib-slq-injection(29932) CVE-2006-5719
XF:bfs-viewgroup-sql-injection(45547) CVE-2008-6007
XF:bftelnet-username-dos CVE-1999-0904
XF:bftpd-getmget-dos(33594) CVE-2007-2010
XF:bftpd-site-chown-bo CVE-2001-0065
XF:bftpd-user-bo CVE-2000-0943
XF:bfup-activex-bo(41050) CVE-2008-1282
XF:bgguestbook-post-css(8474) CVE-2002-0457
XF:bibciter-projects-sql-injection(48080) CVE-2009-0324
XF:biblestudy-index-sql-injection(42788) CVE-2008-2643
XF:bibliography-title-xss(53483) CVE-2009-3488
XF:bibliography-unspecified-sql-injection(28296) CVE-2006-4108
XF:bibliography-unspecified-xss(28295) CVE-2006-4109
XF:bibtex-comjombib-sql-injection(36225) CVE-2007-4502
XF:bif-multiple-file-include(34362) CVE-2007-2762
XF:big-brother-filename-extension CVE-2000-0639
XF:bigace-globals-file-include(28585) CVE-2006-4423
XF:bigace-index-file-include(51444) CVE-2009-2379
XF:bigace-multiple-file-include(42343) CVE-2008-2520
XF:bigantmessenger-antserver-bo(41830) CVE-2008-1914
XF:bigape-tar-file-include(28468) CVE-2006-4296
XF:bigdump-bigdump-file-upload(46539) CVE-2008-6660
XF:bigfun-irc-dcc-dos(10757) CVE-2002-2271
XF:bigip-bigconf-view-files(7771) CVE-1999-1550
XF:bigsam-displaybegin-dos(8478) CVE-2002-0462
XF:bigsam-safemode-path-disclosure(8479) CVE-2002-0462
XF:bigview-getline-bo(42847) CVE-2008-2542
XF:bigwareshop-mainbigware-sql-injection(40010) CVE-2008-0498
XF:bilboblog-delete-sql-injection(43765) CVE-2008-3302
XF:bilboblog-footer-pagination-info-disclosure(43766) CVE-2008-3304
XF:bilboblog-login-auth-bypass(43762) CVE-2008-3303
XF:bilboblog-multiple-xss(43764) CVE-2008-3301
XF:bilder-mitglieder-file-include(35922) CVE-2007-4326
XF:bildergalerie-multiple-file-include(35923) CVE-2007-4328
XF:bildergalerie-tumbnail-file-include(39314) CVE-2007-6649
XF:bind CVE-1999-0024
XF:bind-axfr-dos CVE-1999-0011
XF:bind-bo CVE-1999-0009
XF:bind-complain-bo CVE-2001-0011
XF:bind-complain-format-string CVE-2001-0013
XF:bind-dns-libresolv-bo(10624) CVE-2002-0029
XF:bind-dnssec-rrset-dos(28745) CVE-2006-4095
XF:bind-dos CVE-1999-0010
XF:bind-fdmax-dos CVE-1999-0848
XF:bind-findtype-dos(9250) CVE-2002-0400
XF:bind-inverse-query-disclosure CVE-2001-0012
XF:bind-local-key-exposure(6694) CVE-2001-0497
XF:bind-maxdname-bo CVE-1999-0849
XF:bind-named-dns-dos(19062) CVE-2005-0034
XF:bind-naptr-dos CVE-1999-0851
XF:bind-null-dereference-dos(10333) CVE-2002-1221
XF:bind-nxt-bo CVE-1999-0833
XF:bind-opt-rr-dos(10332) CVE-2002-1220
XF:bind-queryaddsoa-dos(33988) CVE-2007-2241
XF:bind-qusedns-bo(19063) CVE-2005-0033
XF:bind-recursive-insist-dos(28744) CVE-2006-4096
XF:bind-rrsets-dos(31838) CVE-2007-0494
XF:bind-sig-rr-bo(10304) CVE-2002-1219
XF:bind-sigrecord-dos CVE-1999-0835
XF:bind-solinger-dos CVE-1999-0837
XF:bind-srv-dos(5814) CVE-2000-0888
XF:bind-tsig-bo CVE-2001-0010
XF:bind-zxfr-dos(5540) CVE-2000-0887
XF:bindview-netinventory-plaintext-password(7992) CVE-2002-1676
XF:bingo-bnsmrep1-file-include(31328) CVE-2007-0145
XF:bingo-bpncom-file-include(28769) CVE-2006-4648
XF:bingocms-unspecified-csrf(52838) CVE-2009-3022
XF:binnsbuilder-fulltext-sql-injection(39634) CVE-2008-0253
XF:bintec-x4000-nmap-dos(6323) CVE-2001-0413
XF:binutils-libbfd-bo(26644) CVE-2006-2362
XF:binutils-resetvars-bo(44661) CVE-2005-4808
XF:biologon3-gina-bypass-authentication(8201) CVE-2002-0268
XF:bird-chat-dos(17080) CVE-2004-1739
XF:birdblog-admincore-sql-injection(19799) CVE-2005-0882
XF:birdblog-multiple-xss(30428) CVE-2006-6211
XF:birthsys-show-date-sql-injection(24617) CVE-2006-0775
XF:bisonftp-bdl-directory-traversal(6782) CVE-2001-0765
XF:bisonftp-ls-cwd-dos(11346) CVE-2003-1416
XF:bisonftp-ls-view-files(11347) CVE-2003-1380
XF:bisonware-command-bo(3234) CVE-1999-1510
XF:bisonware-port-crash(2254) CVE-1999-1156
XF:bit5blog-addcomment-xss(24129) CVE-2006-0361
XF:bit5blog-processlogin-sql-injection(24124) CVE-2006-0320
XF:bitchx-ehostname-symlink(38262) CVE-2007-5839
XF:bitchx-hook-command-execution(34969) CVE-2007-3360
XF:bitchx-irc-namreply-dos(11363) CVE-2003-1450
XF:bitchx-mode-change-dos(12008) CVE-2003-0334
XF:bitchx-pmode-bo(36306) CVE-2007-4584
XF:bitcomet-torrent-publisher-bo(24229) CVE-2006-0339
XF:bitdefender-avxscanonline-code-execution(15911) CVE-2004-1947
XF:bitdefender-http-server-directory-traversal(39802) CVE-2008-0396
XF:bitdefender-pdf-dos(46750) CVE-2008-5409
XF:bitdefender-pe-overflow(47219) CVE-2008-6661
XF:bitdefender-pefile-bo(30904) CVE-2006-6627
XF:bitdefender-scanjob-format-string(31608) CVE-2007-0391
XF:bitdefender-ssdt-dos(42081) CVE-2008-1735
XF:bitflu-storagefarabdb-security-bypass(39269) CVE-2007-6636
XF:bitkinex-webdav-ftp-directory-traversal(42842) CVE-2008-2635
XF:bitlbee-multiple-unspecified-security-bypass(45132) CVE-2008-3969
XF:bitlbee-unspecified-security-bypass(44699) CVE-2008-3920
XF:bitrix-redirect-security-bypass(42157) CVE-2008-2052
XF:bitrix-serverdocumentroot-file-include(21018) CVE-2005-1996
XF:bitrix-site-path-disclosure(21019) CVE-2005-1995
XF:bitrixcms-admin-interface-xss(26544) CVE-2006-2477
XF:bitrixcms-backurl-url-redirect(26543) CVE-2006-2478
XF:bitrixcms-update-cache-poisoning(26548) CVE-2006-2479
XF:bitrixcms-updaterlog-information-disclosure(26542) CVE-2006-2476 CVE-2006-2479
XF:bitscast-pubdate-dos(34344) CVE-2007-2726
XF:bitshifters-bitboard-xss(18871) CVE-2005-0374
XF:bittorrent-http-get-dos(16228) CVE-2004-2029
XF:bittorrent-peers-bo(39719) CVE-2008-0364
XF:bittorrent-utorrent-createdby-bo(44404) CVE-2008-4434
XF:bitweaver-crlf-header-injection(27348) CVE-2006-3105
XF:bitweaver-edit-information-disclosure(39322) CVE-2007-6651
XF:bitweaver-edit-post-xss(30167) CVE-2006-6925
XF:bitweaver-editlistindex-xss(45409) CVE-2008-4337
XF:bitweaver-index-path-disclosure(27214) CVE-2006-3104
XF:bitweaver-index-xss(27213) CVE-2006-3103
XF:bitweaver-listpages-index-sql-injection(38943) CVE-2007-6375
XF:bitweaver-modmime-file-upload(27215) CVE-2006-3102
XF:bitweaver-multiple-scripts-xss(31655) CVE-2007-0526
XF:bitweaver-multiple-sql-injection(23814) CVE-2005-4380
XF:bitweaver-mygroups-xss(23816) CVE-2005-4379
XF:bitweaver-register-index-login-xss(38942) CVE-2007-6374
XF:bitweaver-savefeed-code-execution(50631) CVE-2009-1677
XF:bitweaver-sortmode-sql-injection(30165) CVE-2006-6924
XF:bitweaver-titlefield-xss(25053) CVE-2006-1131
XF:bitweaver-upload-file-upload(39321) CVE-2007-6650
XF:bitzipper-extract-directory-traversal(26626) CVE-2006-2520
XF:bitzipper-unacev2-bo(27763) CVE-2005-2856
XF:bizdirectory-feed-xss(29002) CVE-2006-4883
XF:bl4-smtp-bo(26114) CVE-2006-2107
XF:blackberry-attachment-png-bo(24063) CVE-2005-2344
XF:blackberry-attachment-word-bo(24629) CVE-2006-0761
XF:blackberry-calendar-bo(17700) CVE-2004-1597
XF:blackberry-device-certificate-spoofing(53490) CVE-2009-3477
XF:blackberry-es-pdf-code-execution(43840) CVE-2008-3246
XF:blackberry-pdf-code-execution(50755) CVE-2009-2643
XF:blackberry-unite-pdf-code-execution(43843) CVE-2008-3246
XF:blackberry-unspecified-dos(29678) CVE-2006-5489
XF:blackboard-client-information-disclosure(41935) CVE-2008-1883
XF:blackboard-courseinfo-dbase-modification CVE-2000-0627
XF:blackboard-directory-traversal(17636) CVE-2004-1581
XF:blackboard-lang-file-include(17637) CVE-2004-1582
XF:blackboard-login-xss(9467) CVE-2002-1007
XF:blackboard-multiple-xss(28537) CVE-2006-4308
XF:blackboard-philboardforum-sql-injection(40368) CVE-2008-0750
XF:blackboard-searchtext-xss(41478) CVE-2008-1795
XF:blackboard-test-textbox-xss(27895) CVE-2006-3914
XF:blackboard-unspecified-csrf(43986) CVE-2008-3421
XF:blackbook-multiple-xss(42147) CVE-2008-2188
XF:blackice-appprotection-privilege-escalation(25423) CVE-2005-2711
XF:blackice-blackdexe-bo(14965) CVE-2004-2125
XF:blackice-excessive-memory-consumption(9405) CVE-2002-0957
XF:blackice-filelock-protection-bypass(29575) CVE-2006-7129
XF:blackice-firewall-dos(16959) CVE-2004-1714
XF:blackice-opengiffile-bo(43830) CVE-2008-3209
XF:blackice-ping-flood-dos(8058) CVE-2002-0237
XF:blackice-standby-inactivate(9275) CVE-2002-0956
XF:blackjumbodog-long-string-bo(16842) CVE-2004-1439
XF:blackmoon-ftpd-static-bo(7895) CVE-2002-0126
XF:blackorpheus-member-sql-injection(25902) CVE-2006-1917
XF:bladeenc-myfseek-code-execution(11227) CVE-2003-0075
XF:blahzdns-auth-bypass(8951) CVE-2002-0599
XF:blakord-portal-id-sql-injection(39284) CVE-2007-6565
XF:blanknberg-index-directory-traversal(25617) CVE-2006-1581
XF:blanknberg-index-xss(25618) CVE-2006-1582
XF:blankol-bol-xss(25488) CVE-2006-1404
XF:blaxxun-applicationxcc3d-bo(15625) CVE-2004-1903
XF:blazedvd-plf-bo(30567) CVE-2006-6199
XF:blazevideo-hdtv-plf-bo(48498) CVE-2009-0450
XF:blazix-jsp-source-disclosure(25485) CVE-2006-1483
XF:blazix-unauth-file-access(9952) CVE-2002-1451
XF:blender-file-unspecified(42153) CVE-2008-1103
XF:blender-imbloadhdr-bo(41917) CVE-2008-1102
XF:blender-kml-kmz-command-execution(32778) CVE-2007-1253
XF:blendportal-phpbb-file-include(26890) CVE-2006-2736
XF:blixed-wordpress-index-xss(35473) CVE-2007-4014
XF:blixkrieg-wordpress-index-xss(35474) CVE-2007-4014
XF:bllix-wordpress-index-xss(35472) CVE-2007-4014
XF:blob-bpost-xss(51959) CVE-2009-3594
XF:blockhosts-daemonlog-dos(34426) CVE-2007-2765
XF:blog-pixel-motion-config-code-execution(29217) CVE-2006-5085
XF:blog-pixel-motion-inserebase-security-bypass(29222) CVE-2006-5086
XF:blog-system-index-blog-sql-injection(23430) CVE-2005-4049
XF:blogatorscript-bsauth-xss(41930) CVE-2008-1892
XF:blogatorscript-sondresult-sql-injection(41658) CVE-2008-1763
XF:blogbuddies-multiple-scripts-xss(23331) CVE-2005-3954
XF:blogcms-index-sql-injection(27435) CVE-2006-3364
XF:blogcms-index-xss(39710) CVE-2008-0359
XF:blogcms-list-xss(30385) CVE-2006-6035
XF:blogcms-nplog-sql-injection(28808) CVE-2006-4748
XF:blogcms-npusersharing-file-include(30854) CVE-2006-6552
XF:blogengine-comment-sql-injection(42386) CVE-2008-2455
XF:blogengine-macgurublog-sql-injection(42715) CVE-2008-6438
XF:blogengine-search-xss(49307) CVE-2008-6476
XF:bloggage-checklogin-sql-injection(25955) CVE-2006-2010
XF:bloggielite-genscode-sql-injection(46299) CVE-2008-5004
XF:bloggit-admin-code-execution(27011) CVE-2006-7014
XF:bloghelper-commondb-info-disclosure(47799) CVE-2009-0826
XF:bloghoster-previewcomment-xss(28304) CVE-2006-4090
XF:bloginator-articlecall-sql-injection(49325) CVE-2009-1049
XF:bloginator-cookie-security-bypass(49324) CVE-2009-1050
XF:blogit-blog-information-disclosure(48075) CVE-2009-0336
XF:blogit-index-sql-injection(48074) CVE-2009-0334
XF:blogit-index-xss(48073) CVE-2009-0335
XF:blogmanager-incwebblogmanager-sql-injection(48054) CVE-2009-0339
XF:blogmanager-incwebblogmanager-xss(48053) CVE-2009-0338
XF:blogme-adminlogin-sql-injection(30285) CVE-2006-5976
XF:blogme-archshow-sql-injection(34253) CVE-2007-2661
XF:blogme-comments-xss(30286) CVE-2006-5975
XF:blogmephp-comments-sql-injection(42193) CVE-2008-2175
XF:blogmod-weblogposting-sql-injection(26198) CVE-2006-2127
XF:blogn-admin-xss(30565) CVE-2006-6176
XF:blogn-unspecified-csrf(44769) CVE-2008-3885
XF:blogn-unspecified-xss(44767) CVE-2008-3884
XF:blognplus-dm-sql-injection(43593) CVE-2008-3090
XF:blognplus-index-sql-injection(43592) CVE-2008-3090
XF:blognplus-unspecified-sql-injection(43136) CVE-2008-2819
XF:blogphp-blogphpusername-security-bypass(42372) CVE-2008-2524
XF:blogphp-index-bypass-security(24131) CVE-2006-0318 CVE-2006-0372
XF:blogphp-index-privilege-escalation(43275) CVE-2008-6745
XF:blogphp-user-xss(42369) CVE-2008-6631
XF:blogphp-username-xss(42370) CVE-2008-6631
XF:blogpixelmotion-index-sql-injection(41668) CVE-2008-1867
XF:blogpixelmotion-listearticle-xss(42011) CVE-2008-1986
XF:blogpixelmotion-modifconfig-file-upload(41670) CVE-2008-1866
XF:blogpixelmotion-sauvbase-info-disclosure(41671) CVE-2008-1868
XF:blogplus-file-theme-file-include(49446) CVE-2009-1246
XF:blogsa-widgets-xss(49024) CVE-2009-0814
XF:blogsitepro-index-sql-injection(35514) CVE-2007-3979
XF:blogsystem-image-sql-injection(46787) CVE-2008-5311
XF:blogtorrent-announce-xss(30350) CVE-2006-6020
XF:blogtorrent-btdownloadphp-dir-traversal(18356) CVE-2004-1212
XF:blogworx-view-sql-injection(41808) CVE-2008-1915
XF:blogwriter-historymonth-sql-injection(42220) CVE-2008-2197
XF:blojsom-formfields-xss(28951) CVE-2006-4829
XF:bloo-base-file-include(30336) CVE-2006-6023
XF:bloo-googlespell-xss(30326) CVE-2006-6019
XF:bloo-index-sql-injection(41141) CVE-2008-1313
XF:blood2-long-query-bo(17668) CVE-2004-1587
XF:bloofoxcms-dialog-file-include(47611) CVE-2008-5748
XF:bloofoxcms-file-directory-traversal(39795) CVE-2008-0427
XF:bloofoxcms-index-sql-injection(39794) CVE-2008-0428
XF:bloomooweb-activex-command-execution(29968) CVE-2006-5658
XF:bloomooweb-bwdeletetempfile-dos(29997) CVE-2006-5658
XF:bloq-multiple-file-include(29585) CVE-2006-6592
XF:blosxom-flav-xss(45600) CVE-2008-2236
XF:blubster-port701-dos(13012) CVE-2003-0760
XF:bluearc-port-traffic-hijacking(33721) CVE-2007-2150
XF:blueboy-config-information-disclosure(27576) CVE-2006-3370
XF:bluecoat-k9-referer-bo(44123) CVE-2007-2952
XF:bluecoat-k9-version-bo(44124) CVE-2007-2952
XF:bluecoat-management-interface-bo(34773) CVE-2007-1685
XF:bluecoat-sgos-icap-patience-xss(45625) CVE-2008-4485
XF:bluecoat-sgos-key-plaintext(16182) CVE-2004-2397
XF:bluecube-tienda-sql-injection(45322) CVE-2008-6026
XF:blueeyecms-blueeyecmslogin-sql-injection(49104) CVE-2009-0883
XF:bluemagicboard-footer-path-disclosure(28949) CVE-2006-4835
XF:bluememories-index-xss(35817) CVE-2007-4165
XF:bluemoon-unspecified-xss(42072) CVE-2008-2035
XF:bluepagecms-index-xss(45321) CVE-2008-6027
XF:bluepagecms-phpsessid-session-hijacking(45323) CVE-2008-6039
XF:bluesecurecontroller-admin-xss(30735) CVE-2006-6363
XF:blueshoes-google-file-include(29429) CVE-2006-5250
XF:blueshoes-multiple-scripts-file-include(26908) CVE-2006-2864
XF:blueskychat-v2-bo(35699) CVE-2007-4145
XF:bluesoleil-object-push-directory-traversal(19930) CVE-2005-0978
XF:bluetooth-btw-service-bo(16953) CVE-2004-0775
XF:bluetrait-trackback-sql-injection(30842) CVE-2006-6540
XF:blur6ex-blog-id-sql-injection(27120) CVE-2006-3065
XF:blur6ex-index-path-disclosure(25758) CVE-2006-1762
XF:blur6ex-index-sql-injection(25759) CVE-2006-1763
XF:blur6ex-index-xss(25757) CVE-2006-1761
XF:blur6ex-title-xss(28275) CVE-2006-4106
XF:bmail-gbkcharacterset-sql-injection(25073) CVE-2006-1118
XF:bmc-patrol-file-create(1388) CVE-1999-1459
XF:bmc-patrol-frames(2075) CVE-1999-0801
XF:bmc-patrol-replay CVE-1999-0443
XF:bmc-patrol-udp-dos(4291) CVE-1999-0921
XF:bmclassifieds-showad-sql-injection(41066) CVE-2008-1272
XF:bmcpatrol-bgssdservice-code-execution(33745) CVE-2007-2136
XF:bmforum-index-xss(42590) CVE-2008-6431
XF:bmforum-plugins-sql-injection(45611) CVE-2008-6091
XF:bmv-openpsfile-overflow(22815) CVE-2005-3278
XF:bmv-symlink(18823) CVE-2003-0014
XF:bnbt-trinedit-index-xss(27302) CVE-2006-3258
XF:bnbteasytracker-client-dos(22058) CVE-2005-2806
XF:bnc-backspace-command-execution(17672) CVE-2004-1482
XF:bnc-invalid-password-auth-bypass(18103) CVE-2004-2612
XF:bnc-irc-getnickuserhost-bo(18013) CVE-2004-1052
XF:bnc-proxy-bo(1546) CVE-1999-0968
XF:bnu-uucpd-bo CVE-1999-0303
XF:boa-webserver-get-dir-traversal CVE-2000-0920
XF:boardpower-icq-xss(16698) CVE-2004-1441
XF:boardsolution-index-xss(25805) CVE-2006-1889
XF:boardtnk-web-css(8475) CVE-2002-0459
XF:boastmachine-index-xss(34509) CVE-2007-2932
XF:boastmachine-login-user-session-hijacking(34462) CVE-2007-2860
XF:boastmachine-mail-sql-injection(39813) CVE-2008-0422
XF:boastmachine-phpself-xss(26518) CVE-2006-2491
XF:boastmachine-register-xss(27771) CVE-2006-3826
XF:boastmachine-search-sql-injection(27769) CVE-2006-3827
XF:boastmachine-search-xss(25914) CVE-2006-1841
XF:boatscripts-index-sql-injection(43182) CVE-2008-2846
XF:bochs-floppy-disk-dos(34513) CVE-2007-2894
XF:bochs-home-bo(15309) CVE-2004-2372
XF:bochs-ne2000-bo(34508) CVE-2007-2893
XF:bodington-uploadarea-obtain-information(14986) CVE-2004-2333
XF:bodybuilder-bypass-authentication(9359) CVE-2002-0951
XF:bogofilter-bogopass-symlink(10726) CVE-2002-2267
XF:bogofilter-dos(17916) CVE-2004-1007
XF:bogofilter-long-word-bo(24119) CVE-2005-4592
XF:bogofilter-unicode-bo(24118) CVE-2005-4591
XF:boinc-forum-search-xss(36577) CVE-2007-4899
XF:boitedenews-index-file-include(28297) CVE-2006-4123
XF:bolinos-gbincluder-file-include(41431) CVE-2008-1555
XF:bolinos-gbphpinfo-information-disclosure(41434) CVE-2008-1557
XF:bolinos-index-file-include(28991) CVE-2006-4850 CVE-2006-4851
XF:bolinos-multiple-xss(41432) CVE-2008-1556
XF:bombahaber-haberoku-sql-injection(41422) CVE-2008-1607
XF:bomberclone-error-message-bo(24764) CVE-2006-0460
XF:bomberclone-error-packet-dos(28093) CVE-2006-4005
XF:bomberclone-rscacheadd-dos(28090) CVE-2006-4005
XF:bomberclone-sendpkg-information-disclosure(28092) CVE-2006-4006
XF:bonsai-error-message-xss(9920) CVE-2003-0154
XF:bonsai-path-disclosure(9921) CVE-2003-0153
XF:bontago-nickname-bo(19406) CVE-2005-0501
XF:booby-bookmarks-information-disclosure(20605) CVE-2005-1631
XF:booby-error-message-xss(13557) CVE-2003-1194
XF:booby-renderer-file-include(42784) CVE-2008-2645
XF:bookcatalog-modulesphp-sql-injection(44434) CVE-2008-3513
XF:bookingcentre-cadenaofertas-sql-injection(46226) CVE-2008-6216
XF:bookingcentre-cadenaofertasext-xss(46225) CVE-2008-6215
XF:bookingcentre-hotelid-sql-injection(46913) CVE-2008-6809
XF:bookingcentre-index-sql-injection(46914) CVE-2008-6810
XF:bookit-plaintext-passwords(9316) CVE-2002-0933
XF:bookjoomlas-index-sql-injection(49682) CVE-2009-1263
XF:bookmark4u-config-sql-injection(25956) CVE-2006-7025
XF:bookmark4u-file-include(11009) CVE-2003-1253
XF:bookmark4u-includeprefix-file-include(26933) CVE-2006-2877
XF:bookmine-events-sql-injection(44067) CVE-2008-3393
XF:bookmine-search-xss(44068) CVE-2008-3394
XF:bookofguests-cgi-command-execution(7434) CVE-2001-0844
XF:books-bookid-sql-injection(46561) CVE-2008-5643
XF:books-cid-sql-injection(40857) CVE-2008-0827
XF:boost-drupal-file-overwrite(36939) CVE-2007-5270
XF:boost-unspecified-security-bypass(53553) CVE-2009-3654
XF:bootmanage-tftpserver-filename-bo(41226) CVE-2008-1403
XF:bootpd-bo CVE-1999-0799
XF:boozt-long-name-bo(7790) CVE-2002-0098
XF:bopup-unspecified-bo(51305) CVE-2009-2227
XF:bor-mod-file-format-string(26582) CVE-2006-2537
XF:bordermanager-bypass-url-restriction CVE-2000-0591
XF:bordermanager-vpn-syn-dos(6429) CVE-2001-0486
XF:borderware-mxtreme-web-admin(25325) CVE-2006-1254
XF:borderware-ping-dos CVE-2001-0313
XF:borland-ibserver-bo(41932) CVE-2008-1910
XF:borland-idsql32-bo(30583) CVE-2006-6201
XF:borland-multiple-functions-bo(36956) CVE-2007-5243 CVE-2007-5244
XF:borland-packet-bo(42558) CVE-2008-2559
XF:bosclassifieds-catid-sql-injection(46308) CVE-2008-6526
XF:bosclassifieds-index-sql-injection(41799) CVE-2008-1838
XF:bosclassifieds-multiple-scripts-file-include(27662) CVE-2006-3527
XF:bosdatagrid-multiple-xss(35026) CVE-2007-3413
XF:bosdates-calendar-sql-injection(15133) CVE-2004-0275
XF:bosdates-type-category-xss(41020) CVE-2008-1211
XF:bosnews-news-sql-injection(41806) CVE-2008-4703
XF:boutikonecms-search-xss(46621) CVE-2008-5126
XF:boxalino-default-directory-traversal(53932) CVE-2009-1479
XF:boxcar-index-xss(24019) CVE-2006-0111
XF:bpblog-blog-info-disclosure(47419) CVE-2005-0853
XF:bpblog-id-cat-sql-injection(42894) CVE-2008-2554
XF:bpblog-multiple-sql-injection(25327) CVE-2006-1333
XF:bpftp-gain-privilege(20301) CVE-2005-1371
XF:bpftp-obtain-credentials(6330) CVE-2001-0263
XF:bpm-http-device-dos(8299) CVE-2002-1780
XF:bpm-http-directory-traversal(8300) CVE-2002-0331
XF:bpms-packet-dos(39145) CVE-2007-6509
XF:bpp-rtfparser-file-include(27088) CVE-2006-3177
XF:bpstudent-students-sql-inection(53428) CVE-2009-3501
XF:brainf*ck-modbf-bo(7730) CVE-2001-1498
XF:branchenbuch-sql-injection(43482) CVE-2008-3054
XF:breakout2-home-bo(15229) CVE-2004-0158
XF:breed-udp-datagram-dos(18890) CVE-2005-0382
XF:breeze-remote-reboot(1544) CVE-1999-1281
XF:bremsserver-dotdot-directory-traversal(14954) CVE-2004-2112
XF:bremsserver-xss(14953) CVE-2004-2113
XF:brewblogger-index-security-bypass(43649) CVE-2008-6911
XF:brewblogger-printlog-sql-injection(30200) CVE-2006-5889
XF:bridge-unspecified-privilege-escalation(33570) CVE-2007-1279
XF:brightmail-consolescripts-priv-escalation(50075) CVE-2009-0064
XF:brightmail-controlcenter-xss(50074) CVE-2009-0063
XF:brightmail-datablob-directory-traversal(28058) CVE-2006-4013
XF:brightmail-post-dos(28059) CVE-2006-4013
XF:brightmail-static-database-security-bypass(20804) CVE-2005-1867
XF:brightstor-arcserv-discovery-bo(30791) CVE-2006-6379
XF:brightstor-caloggderd-dos(34322) CVE-2007-2772
XF:brightstor-catirpc-dos(32137) CVE-2007-0816
XF:brightstor-discovery-bo(19251) CVE-2005-0260
XF:brightstor-discovery-servicepc-bo(19320) CVE-2005-2535
XF:brightstor-enterprise-backup-bo(21656) CVE-2005-1272
XF:brightstor-igateway-http-get-bo(22560) CVE-2005-3190
XF:brightstor-mediasvr-code-execution(33316) CVE-2007-1785
XF:brightstor-mediasvr-dos(34319) CVE-2007-2772
XF:brightstor-messageengine-rpc-bo(31443) CVE-2007-0169
XF:brightstor-rpc-tapeengine-code-execution(33017) CVE-2007-1447
XF:brightstor-rpc-tapeengine-dos(33020) CVE-2007-1448
XF:brightstor-sun-rpc-bo(33854) CVE-2007-2139
XF:brightstor-tapeengine-code-execution(31442) CVE-2007-0168
XF:brightstor-tapeengine-rpc-bo(31433) CVE-2007-0169
XF:brightstor-unspecified-code-execution(34805) CVE-2007-3216
XF:brilliantgallery-bgchecklist-sql-injection(45411) CVE-2008-4338
XF:brilliantgallery-unspecified-sql-injection(45637) CVE-2008-4531
XF:brilliantgallery-unspecified-xss(45636) CVE-2008-4530
XF:brim-index-sql-injection(44789) CVE-2008-4082
XF:brim-index-xss(44790) CVE-2008-4083
XF:brim-renderer-file-include(29647) CVE-2006-5429
XF:brim-unspecified-information-disclosure(29650) CVE-2006-5414
XF:british-btwebcontrol-bo(34589) CVE-2007-2982 CVE-2007-2983
XF:broadboard-forgotasp-sql-injection(17502) CVE-2004-1555
XF:broadboard-profileasp-sql-injection(17500) CVE-2004-1555
XF:broadboard-reg2asp-sql-injection(17501) CVE-2004-1555
XF:broadboard-searchasp-sql-injection(17498) CVE-2004-1555
XF:broadcast-machine-login-xss(38418) CVE-2007-3694
XF:broadcastmachine-basedir-file-include(46939) CVE-2008-6287
XF:broadcom-bcmwl5-bo(30202) CVE-2006-5882
XF:broadvision-bv1to1-reveal-path CVE-2001-0031
XF:broderbund-activex-bo(36472) CVE-2007-4472
XF:broid-mp3-bo(52532) CVE-2009-3213
XF:broker-ftp-cd-directory-traversal(6674) CVE-2001-0687
XF:broker-ftp-delete-files CVE-2001-0450
XF:broker-ftp-dos(15241) CVE-2004-0296
XF:broker-ftp-dot-bo(6673) CVE-2002-0405
XF:broker-ftp-list-directories CVE-2001-0450
XF:broker-ftp-tsftpsrv-dos(15242) CVE-2004-0295
XF:broker-ftp-username-dos CVE-2000-1116
XF:brother-nc-password-bo(9701) CVE-2002-1055
XF:browscap-useragent-xss(53571) CVE-2009-3651
XF:browseftp-server-response-bo(7793) CVE-2002-2026
XF:browsegate-http-dos CVE-2000-0908
XF:browser-based-file-mgr-sql-injection(20504) CVE-2005-1602
XF:browsercrm-bcrmpubroot-file-include(42922) CVE-2008-2689 CVE-2008-2690
XF:browsercrm-results-xss(24390) CVE-2006-0521
XF:brs-webweaver-file-access(10467) CVE-2002-1546
XF:brswebweaver-useragent-bo(13571) CVE-2003-1165
XF:bru-execlog-env-variable CVE-2000-0537
XF:bru-tmp-file-symlink(8003) CVE-2002-0210
XF:bru-xbru-race-condition(10101) CVE-2002-1512
XF:brudagb-index-file-include(29141) CVE-2006-5068
XF:brudanews-index-file-include(29142) CVE-2006-5068
XF:brujula-Brujula4net-dos(34213) CVE-2007-2605
XF:bsafe-ssl-bypass-authentication(7112) CVE-2001-1105
XF:bsb2ppm-bsbopenheader-bo(18586) CVE-2004-1262
XF:bscounter-stats-sql-injection(53236) CVE-2009-3659
XF:bscw-default-installation-registration(7775) CVE-2002-0095
XF:bscw-extracted-file-symlink(7029) CVE-2001-0973
XF:bscw-remote-shell-execution(7774) CVE-2002-0094
XF:bsd-aio-overwrite-memory(7693) CVE-2001-1185
XF:bsd-arp-request-dos CVE-2000-0914
XF:bsd-broadcast-address(8485) CVE-2002-0381
XF:bsd-buffer-initialization-disclosure(24338) CVE-2006-0379
XF:bsd-buffer-length-disclosure(24340) CVE-2006-0380
XF:bsd-dump-tty-privileges(7037) CVE-2001-1091
XF:bsd-eeprom-format CVE-2000-0997
XF:bsd-exec-race-condition(7945) CVE-2002-2092
XF:bsd-fstat-format CVE-2000-0994
XF:bsd-fstatfs-dos(8112) CVE-2002-1674
XF:bsd-ftpd-replydirname-bo CVE-2001-0053
XF:bsd-fts-race-condition(8715) CVE-2001-1145
XF:bsd-ieee80211-bo(24192) CVE-2006-0226
XF:bsd-ifbridge-information-disclosure(25582) CVE-2006-1588
XF:bsd-ip-fragments-dos(6636) CVE-2001-0710
XF:bsd-ipsec-replay(25398) CVE-2006-0905
XF:bsd-kernel-dos(7023) CVE-2001-1133
XF:bsd-kernel-sendmsg-dos(6908) CVE-2001-0993
XF:bsd-libedit-editrc CVE-2000-0595
XF:bsd-libkvm-descriptor-leak(10109) CVE-2002-1125
XF:bsd-libutil-format CVE-2000-0993
XF:bsd-libutil-privilege-dropping(8697) CVE-2001-1029
XF:bsd-lpd CVE-1999-0061
XF:bsd-lpd-bo(7046) CVE-2001-0670
XF:bsd-lprbo CVE-1999-0032
XF:bsd-lprbo2 CVE-1999-0032
XF:bsd-mailrc-insecure-permissions(25581) CVE-2006-1587
XF:bsd-man-command-sequence(7348) CVE-1999-1313
XF:bsd-mmap CVE-1999-0304 CVE-1999-0323
XF:bsd-nfs-rpc-dos(9772) CVE-2002-0830
XF:bsd-opie-unauthorized-privileges(25397) CVE-2006-1283
XF:bsd-passwd-bo(7152) CVE-1999-1471
XF:bsd-pf-fragment-dos(24337) CVE-2006-0381
XF:bsd-photurisd-format CVE-2000-1004
XF:bsd-readline-permissions(6586) CVE-2001-0378
XF:bsd-rfork-signal-handlers(6829) CVE-2001-1180
XF:bsd-rogue-bo(10261) CVE-2002-1192
XF:bsd-sack-handling-dos(24453) CVE-2006-0433
XF:bsd-securelevel-immutable-file-bypass(24037) CVE-2005-4351
XF:bsd-securelevel-settimeofday-bypass(24036) CVE-2005-4352
XF:bsd-semaphore-dos CVE-2000-0461
XF:bsd-setsockopt-dos CVE-2000-0489
XF:bsd-sh3-sigreturn-privileges(6637) CVE-2001-0734
XF:bsd-shared-memory-dos(2351) CVE-1999-1518
XF:bsd-shmat-gain-privileges(15061) CVE-2004-0114
XF:bsd-siocgifalias-ioctl-dos(25766) CVE-2006-1797
XF:bsd-sourceroute(736) CVE-1999-0305
XF:bsd-sshd-authentication-error(9215) CVE-2002-0765
XF:bsd-strfmon-overflow(41504) CVE-2008-1391
XF:bsd-su-format CVE-2000-0996
XF:bsd-suid-apps-gain-privileges(8920) CVE-2002-0572
XF:bsd-syncache-inpcb-dos(8875) CVE-2002-0518
XF:bsd-syncookie-pointer-dos(8873) CVE-2002-0518
XF:bsd-syscall-cpu-dos CVE-2000-0456
XF:bsd-sysctl-dos(25764) CVE-2006-1814
XF:bsd-tel-tgetent CVE-1999-0192
XF:bsd-telnet(516) CVE-1999-1098
XF:bsd-uucp-bo(7633) CVE-2001-1541
XF:bsd-virecover-delete-files(10149) CVE-2001-1415
XF:bsd-yp-execute-shell(8625) CVE-2002-0557
XF:bsd-yp-passwd-format CVE-2000-0995
XF:bsdgames-tetrisbsd-checkscores-bo(25611) CVE-2006-1539
XF:bsdi-smp-dos CVE-1999-0747
XF:bsdmainutils-calendar-gain-privileges(17162) CVE-2004-0793
XF:bsguest-cgi-execute-commands CVE-2001-0099
XF:bslist-cgi-execute-commands CVE-2001-0100
XF:bsplayer-bsl-bo(49342) CVE-2009-1068
XF:bsplayer-srt-bo(41841) CVE-2008-6583
XF:bsq-sitestats-bsqtemplateinc-sql-injection(29268) CVE-2006-7123
XF:bsq-sitestats-http-referer-xss(29661) CVE-2006-7125
XF:bsq-sitestats-ip-xss(29266) CVE-2006-7122
XF:bsq-sitestats-rssfeeds-file-include(29269) CVE-2006-7124
XF:bsq-sitestats-uri-sql-injection(29662) CVE-2006-7126
XF:bt-voyager-password-plaintext(16472) CVE-2004-0616
XF:bthomehub-cgib-auth-bypass(41271) CVE-2007-5383 CVE-2008-1334
XF:btitracker-accountchange-sql-injection(34447) CVE-2007-2854
XF:btitracker-details-security-bypass(38416) CVE-2007-5987
XF:btitracker-multiple-scripts-xss(38413) CVE-2007-5985
XF:btitracker-shoutbox-security-bypass(38417) CVE-2007-5988
XF:btitracker-unspecified-sql-injection(38415) CVE-2007-5986
XF:btitracker-usercp-xss(38414) CVE-2007-5985
XF:btitracker-xbtit-scrape-sql-injection(44627) CVE-2008-3784
XF:btittracker-torrents-sql-injection(27216) CVE-2006-6972
XF:btp-cid-path-disclosure(8439) CVE-2002-0446
XF:btsavemysql-url-file-disclosure(30760) CVE-2006-6378
XF:btsondage-gestionsondage-file-include(33363) CVE-2007-1812
XF:bttlxeforum-failure-xss(24981) CVE-2006-0974
XF:btvoyager-config-information-disclosure(27652) CVE-2006-3561
XF:bubbling-dispatcher-directory-traversal(40008) CVE-2008-0521
XF:bubblinglibrary-page-uri-file-include(39969) CVE-2008-0545
XF:bubla-budir-file-include(31201) CVE-2006-6867
XF:bubla-process-file-include(31135) CVE-2006-6809 CVE-2006-6867
XF:buddy-zone-multiple-scripts-sql-injection(27514) CVE-2006-3494
XF:buddyzone-id-sql-injection(35187) CVE-2007-3526 CVE-2007-3549
XF:buddyzone-viewsubcat-sql-injection(35176) CVE-2007-3549
XF:bueditor-unspecified-xss(53132) CVE-2009-3363
XF:buffalo-aoss-management-csrf(36492) CVE-2007-4822
XF:bufferzone-redlight-privilege-escalation(36278) CVE-2007-4580
XF:bugmallshoppingcart-default-password(35040) CVE-2007-3446
XF:bugmallshoppingcart-index-xss(35037) CVE-2007-3448
XF:bugmallshoppingcart-search-sql-injection(35039) CVE-2007-3447
XF:bugport-index-path-disclosure(23921) CVE-2005-4609
XF:bugport-index-sql-injection(23919) CVE-2005-4608
XF:bugport-index-xss(23920) CVE-2005-4607
XF:bugport-obtain-information(15030) CVE-2004-2353
XF:bugtrackernet-bug-xss(39650) CVE-2008-0335
XF:bugtrackernet-http-csrf(39651) CVE-2008-0336
XF:bugzero-query-edit-xss(25601) CVE-2006-1580
XF:bugzila-metadata-information-disclosure(17842) CVE-2004-1635
XF:bugzilla-atom-feed-xss(32248) CVE-2007-0791
XF:bugzilla-attachment-csrf(49524) CVE-2009-1213
XF:bugzilla-bug-change(17840) CVE-2004-1633
XF:bugzilla-buglist-modify-sql(7807) CVE-2002-0010
XF:bugzilla-buglist-sql-logic(7813) CVE-2002-0010
XF:bugzilla-bugview-xss(42216) CVE-2008-2103
XF:bugzilla-buildid-xss(36241) CVE-2007-4543
XF:bugzilla-chart-view-password(16669) CVE-2004-0706
XF:bugzilla-config-obtain-information(22490) CVE-2005-3138
XF:bugzilla-database-password-disclosure(16673) CVE-2004-0702
XF:bugzilla-describecomponents-obtain-info(13602) CVE-2003-1046
XF:bugzilla-doeditvotes-login-information(7803) CVE-2002-0011
XF:bugzilla-duplicate-view-restricted(10479) CVE-2001-1407
XF:bugzilla-duplicates-sql-injection(42802) CVE-2006-0914
XF:bugzilla-edit-xss(16670) CVE-2004-0705
XF:bugzilla-editparams-sql-injection(24819) CVE-2006-0913
XF:bugzilla-edituser-user-delete(9303) CVE-2002-0806
XF:bugzilla-editusers-change-groupset(7814) CVE-2002-0010
XF:bugzilla-editusers-gain-privileges(16672) CVE-2004-0703
XF:bugzilla-editusers-sql-injection(16668) CVE-2004-0707
XF:bugzilla-email-sql-injection(10235) CVE-2002-1198
XF:bugzilla-emailappend-command-injection(10234) CVE-2002-1197
XF:bugzilla-emailin-security-bypass(42235) CVE-2008-2105
XF:bugzilla-gobalpl-gain-information(6489) CVE-2001-0330
XF:bugzilla-group-permissions-removal(10141) CVE-2002-0809
XF:bugzilla-groupid-gain-privileges(13597) CVE-2003-1044
XF:bugzilla-h1h2-tags-xss(29610) CVE-2006-5453
XF:bugzilla-htaccess-database-password(10970) CVE-2003-0013
XF:bugzilla-htaccess-information-disclosure(32252) CVE-2007-0792
XF:bugzilla-importxml-directory-traversal(44407) CVE-2008-4437
XF:bugzilla-ldap-auth-bypass(7812) CVE-2002-0007
XF:bugzilla-login-data-redirection(24821) CVE-2006-0916
XF:bugzilla-longlist-modify-sql(7811) CVE-2002-0010
XF:bugzilla-masschange-change-groupset(9305) CVE-2002-0808
XF:bugzilla-mining-world-writable(10971) CVE-2003-0012
XF:bugzilla-obtain-information(13600) CVE-2003-1045
XF:bugzilla-offeraccount-security-bypass(36692) CVE-2007-5038
XF:bugzilla-postbug-report-spoofing(7804) CVE-2002-0008
XF:bugzilla-postbug-weak-security(42797) CVE-2005-1564
XF:bugzilla-processbug-comment-spoofing(7805) CVE-2002-0008
XF:bugzilla-processbug-old-restrictions(10478) CVE-2001-1406
XF:bugzilla-product-name-disclosure(16671) CVE-2004-0704
XF:bugzilla-productname-sql-injection(13594) CVE-2003-1042
XF:bugzilla-queryhelp-obtain-information(9300) CVE-2002-0803
XF:bugzilla-quips-security-bypass(46424) CVE-2008-6098
XF:bugzilla-quips-xss(10707) CVE-2002-2260
XF:bugzilla-real-name-xss(9304) CVE-2002-0807
XF:bugzilla-reversedns-hostname-spoof(9301) CVE-2002-0804
XF:bugzilla-rss-title-xss(24820) CVE-2006-2420
XF:bugzilla-sendmail-command-execution(36243) CVE-2007-4538
XF:bugzilla-shadow-database-information(9306) CVE-2002-0810
XF:bugzilla-showbug-reveal-bugs(7802) CVE-2002-0009
XF:bugzilla-showdependencygraph(29619) CVE-2006-5453
XF:bugzilla-syncshadowdb-symlink(23863) CVE-2005-4534
XF:bugzilla-unchecked-system-call CVE-2000-0421
XF:bugzilla-url-modify-configuration(29618) CVE-2006-5455
XF:bugzilla-url-sql-injection(13596) CVE-2003-1043
XF:bugzilla-usebuggroups-permissions-leak(10233) CVE-2002-1196
XF:bugzilla-userprefs-change-groupset(7809) CVE-2002-0010
XF:bugzilla-usevisibilitygroup-info-disclosure(42799) CVE-2005-3139
XF:bugzilla-world-writable-dir(9302) CVE-2002-0805
XF:bugzilla-xml-information-disclosure(17841) CVE-2004-1634
XF:bugzilla-xmlrpc-information-disclosure(36244) CVE-2007-4539
XF:bugzilla-xmlrpc-security-bypass(42218) CVE-2008-2104
XF:bugzilla-xss(18728) CVE-2004-1061
XF:buildbot-unspecified-xss(52896) CVE-2009-2967
XF:burakyilmazblog-bry-sql-injection(33945) CVE-2007-2420
XF:burncms-multiple-script-file-include(33938) CVE-2007-2364
XF:burningboard-bbs-account-hijacking(9177) CVE-2002-0903
XF:burningboard-bbs-css(8841) CVE-2002-2021
XF:business-object-crystal-server-dos(21654) CVE-2005-4813
XF:businessdirect-showcategory-sql-injection(46558) CVE-2008-5496
XF:businessmail-smtp-dos(21636) CVE-2005-2472
XF:businessmanager-multiple-security-bypass(47794) CVE-2009-0700
XF:businessmanager-qub-bez74-xss(47795) CVE-2009-0699
XF:businessobjects-cms-xss(41875) CVE-2008-1894
XF:businessobjects-rptviewerax-bo(41256) CVE-2007-6254
XF:businessspace-index-sql-injection(48606) CVE-2009-0516
XF:businesssurvey-surveyresults-sql-injection(46420) CVE-2008-6349
XF:busybox-passwd-weak-security(25569) CVE-2006-1058
XF:butterfly-categorydelete-security-bypass(43067) CVE-2008-7181
XF:butterfly-mytable-sql-injection(49012) CVE-2008-6311
XF:butterfly-mytable-xss(43066) CVE-2008-6700
XF:butterfly-visitor-file-include(36147) CVE-2007-4485
XF:buxtoclone-cookie-auth-bypass(45640) CVE-2008-6162
XF:buydatingsite-profile-xss(53176) CVE-2009-3355
XF:buzzywall-download-directory-traversal(46123) CVE-2008-4759
XF:bwfm-index-xss(34817) CVE-2007-3049
XF:bwired-index-sql-injection(35540) CVE-2007-3976
XF:bwmguestbook-comment-xss(26246) CVE-2006-2231
XF:bws-directory-traversal(14948) CVE-2004-2121
XF:bxcp-index-sql-injection(27496) CVE-2006-3394
XF:bxcp-tid-sql-injection(24783) CVE-2006-0821
XF:bytecatcher-ftp-banner-bo(11235) CVE-2003-1369
XF:bytehoard-bhfilepath-file-include(26936) CVE-2006-2849
XF:bytehoard-dotdot-directory-traversal(13456) CVE-2003-1499
XF:bytehoard-index-directory-traversal(26705) CVE-2006-2633
XF:bytehoard-index-xss(26704) CVE-2006-2632
XF:bytehoard-view-file(13531) CVE-2003-1153
XF:bzflag-callsign-dos(23872) CVE-2005-4584
XF:bzip2-archives-code-execution(41249) CVE-2008-1372
XF:bzip2-compression-symlink(9128) CVE-2002-0761
XF:bzip2-decompression-file-overwrite(9126) CVE-2002-0759
XF:bzip2-decompression-race-condition(9127) CVE-2002-0760
XF:bzip2-toctou-symlink(19926) CVE-2005-0953
XF:c-client-dos(5223) CVE-2000-0847
XF:c5510mfp-configuration-info-disclosure(39775) CVE-2008-0374
XF:c5510mfp-password-security-bypass(39776) CVE-2008-0375
XF:c5emv-ceid-weak-security(26767) CVE-2006-2713
XF:c5emv-client-pathname-file-overwrite(26771) CVE-2006-2717
XF:c5evm-ceid-weak-security(26783) CVE-2006-2714
XF:c5evm-client-message-digest-replay(26781) CVE-2006-2712
XF:c5evm-console-operation-gain-access(26760) CVE-2006-2715
XF:c5evm-default-account(26763) CVE-2006-2716
XF:c5evm-emgetceparameter-bo(26778) CVE-2006-2708
XF:c5evm-emsetceparameter-bo(26745) CVE-2006-2708
XF:c5evm-key-weak-encryption(26740) CVE-2006-2711
XF:c5evm-peer-certificate-security-bypass(26758) CVE-2006-2707
XF:c5evm-registration-message-dos(26742) CVE-2006-2705
XF:c5evm-rsa-key-weak-security(26753) CVE-2006-2710
XF:c5evm-server-message-digest-replay(26765) CVE-2006-2712
XF:c5evm-server-plaintext-message(26751) CVE-2006-2704
XF:c5evm-server-source-message-spoofing(26747) CVE-2006-2709
XF:c5evm-sessionstart-dos(26779) CVE-2006-2706
XF:ca-abld-rxrpc-bo(44137) CVE-2008-3175
XF:ca-alertnotification-bo(35467) CVE-2007-3825
XF:ca-alertnotificationserver-bo(41639) CVE-2007-4620
XF:ca-antivirus-engine-security-bypass(48261) CVE-2009-0042
XF:ca-arclib-chm-dos(35573) CVE-2007-3875
XF:ca-arcserve-ascore-dos(51169) CVE-2009-1761
XF:ca-arcserve-listctrl-bo(41225) CVE-2008-1472
XF:ca-arcservebackup-authentication-dos(45777) CVE-2008-4400
XF:ca-arcservebackup-caloggerd-code-execution(42524) CVE-2008-2241
XF:ca-arcservebackup-database-engine-dos(45776) CVE-2008-4399
XF:ca-arcservebackup-lgserverservice-bo(41641) CVE-2008-1328
XF:ca-arcservebackup-message-command-execution(45774) CVE-2008-4397
XF:ca-arcservebackup-tape-engine-dos(45775) CVE-2008-4398
XF:ca-arcservebackup-xdrrwsstring-bo(42527) CVE-2008-2242
XF:ca-arcserverbackup-netbackup-code-execution(41642) CVE-2008-1329
XF:ca-brightstor-catirpc-dos(32137) CVE-2007-0816
XF:ca-brightstor-csagent-bo(36825) CVE-2007-5082
XF:ca-brightstor-csagent-integer-bo(36827) CVE-2007-5083
XF:ca-brightstor-csagent-sql-injection(36828) CVE-2007-5084
XF:ca-brightstor-dbasvr-code-execution(37068) CVE-2007-5329
XF:ca-brightstor-discovery-mailslot-bo(29365) CVE-2006-5142
XF:ca-brightstor-lqserver-code-execution(37071) CVE-2007-5331
XF:ca-brightstor-mediasvr-code-execution(37072) CVE-2007-5332
XF:ca-brightstor-messageengine-ascore-bo(37063) CVE-2007-5325
XF:ca-brightstor-messageengine-bo(37065) CVE-2007-5327
XF:ca-brightstor-rpc-code-execution(37070) CVE-2007-5330
XF:ca-brightstor-rpc-rpcx-bo(37064) CVE-2007-5327
XF:ca-brightstor-unspecified-security-bypass(37067) CVE-2007-5328
XF:ca-cam-port4105-dos(24448) CVE-2006-0529
XF:ca-cam-spoofed-message-dos(24449) CVE-2006-0530
XF:ca-console-server-bo(34204) CVE-2007-2522
XF:ca-cpp-search-sql-injection(33853) CVE-2007-2230
XF:ca-dbasvr-rpc-bo(29364) CVE-2006-5143
XF:ca-dsmguicmctrls-code-execution(41853) CVE-2008-1786
XF:ca-etrust-admin-authentication-bypass(32887) CVE-2007-1345
XF:ca-etrust-alert-replay(29107) CVE-2006-4901
XF:ca-etrust-caller-code-execution(35565) CVE-2007-3302
XF:ca-etrust-eppiservlet-path-disclosure(29102) CVE-2006-4899
XF:ca-etrust-esmpauditservlet-dir-traversal(29104) CVE-2006-4900
XF:ca-etrust-scm-ftp-bo(42821) CVE-2008-2541
XF:ca-hips-log-xss(37285) CVE-2007-5472
XF:ca-igateway-contentlength-bo(24269) CVE-2005-3653
XF:ca-kmxfw-dos(44393) CVE-2008-3174
XF:ca-kmxfw-privilege-escalation(44392) CVE-2008-2926
XF:ca-mlink-bo(8776) CVE-2002-1598
XF:ca-multiple-antivirus-cab-bo(34741) CVE-2007-2863
XF:ca-multiple-antivirus-cofffiles-bo(34737) CVE-2007-2864
XF:ca-multiple-dtscore-bo(52322) CVE-2009-2026
XF:ca-multiple-unspecified-bo(31704) CVE-2007-0449
XF:ca-rar-code-execution(53697) CVE-2009-3587
XF:ca-rar-dos(53698) CVE-2009-3588
XF:ca-scan-job-description-format-string(27374) CVE-2006-3223
XF:ca-scm-ecsqdmn-dos(41890) CVE-2008-1984
XF:ca-servicedesk-webforms-xss(45416) CVE-2008-4119
XF:ca-siteminder-smpwservicescgi-xss(21305) CVE-2005-2204
XF:ca-vetmonnt-vetfddnt-dos(30909) CVE-2006-6496
XF:cabacos-searchform-xss(27063) CVE-2006-2963
XF:cabarc-dotdot-directory-traversal(17693) CVE-2004-2643
XF:cabextract-directory-traversal(17766) CVE-2004-0916
XF:cabrightstorarcserve-tapeeng-bo(30453) CVE-2006-6076
XF:cabronconnector-inclusion-file-include(33716) CVE-2007-2154
XF:cacert-analyse-xss(45515) CVE-2008-7017
XF:cacheos-unresolved-error-xss(9674) CVE-2002-1060
XF:cachos-insecure-web-interface(7835) CVE-2002-0107
XF:cacti-authlogin-sql-injection(17011) CVE-2004-1737
XF:cacti-cmd-sql-injection(31177) CVE-2006-6799
XF:cacti-config-world-readable(10049) CVE-2002-1479
XF:cacti-configsettings-file-include(21119) CVE-2005-1526
XF:cacti-configsettings-sql-injection(21120) CVE-2005-1525
XF:cacti-console-mode-commands(10050) CVE-2002-1478
XF:cacti-datainput-xss(50575) CVE-2008-0783
XF:cacti-error-path-disclosure(17014) CVE-2004-1736
XF:cacti-graph-label-commands(10048) CVE-2002-1477
XF:cacti-graph-post-cookie-sql-injection(21266) CVE-2005-2148
XF:cacti-graph-sql-injection(38559) CVE-2007-6035
XF:cacti-graphstart-graphend-dos(34747) CVE-2007-3112 CVE-2007-3113
XF:cacti-request-array-command-execution(21270) CVE-2005-2148
XF:cacti-topgraphheader-file-include(21118) CVE-2005-1524
XF:cactus-shell-lock-retrieve-shell-code(3356) CVE-1999-1540
XF:cactus-shell-lock-root-privs(3358) CVE-1999-1541
XF:cactushop-cactushop-information-disclosure(34706) CVE-2007-3061
XF:cactushop-multiple-sql-injection(15686) CVE-2004-1881
XF:cactushop-popularlargeimageasp-xss(15687) CVE-2004-1882
XF:cactushoplite-backdoor(15063) CVE-2004-0260
XF:cadant-c3-ip-dos(34822) CVE-2007-2796
XF:cadenix-index-sql-injection(47344) CVE-2008-5777
XF:cadre-classquickconfigbrowser-file-include(32005) CVE-2007-0677
XF:cafeengine-dish-menu-sql-injection(45929) CVE-2008-4605
XF:cafreeforum-post-xss(26888) CVE-2006-2927
XF:cahierdetexte-index-security-bypass(31132) CVE-2006-6849
XF:cahierdetexte-lire-sql-injection(29388) CVE-2006-5221
XF:cain-abel-http-filter-bo(19744) CVE-2005-0807
XF:cain-abel-ikepsk-bo(19742) CVE-2005-0807
XF:cainabel-rdp-bo(46940) CVE-2008-5405
XF:cairim-lmp-privilege-escalation(26234) CVE-2006-2201
XF:cakephp-error-xss(28256) CVE-2006-4067
XF:cakephp-vendors-information-disclosure(29115) CVE-2006-5031
XF:calcium-calcium40-xss(42704) CVE-2008-2507
XF:calcium-eventtext-xss(24907) CVE-2006-0889
XF:caldera-ident-server-dos CVE-2000-0369
XF:caldera-smail-rmail-command CVE-2000-0370
XF:calendar-caladmin-sql-injection(38628) CVE-2007-6158
XF:calendarexpress-search-xss(25467) CVE-2006-1401
XF:calendarix-calconfig-file-include(28349) CVE-2006-4135
XF:calendarix-calendar-path-disclosure(35047) CVE-2007-3258
XF:calendarix-calendar-sql-injection(35046) CVE-2007-3183
XF:calendarix-id-sql-injection(27186) CVE-2006-3094
XF:calendarix-multiple-path-disclosure(35041) CVE-2007-3259
XF:calendarix-multiple-sql-injection(24332) CVE-2006-0492
XF:calendarix-multiple-xss(35045) CVE-2007-3182
XF:calendarix-yearcal-xss(25874) CVE-2006-1835
XF:calendarmanager-o12cal-info-disclosure(46694) CVE-2008-5130
XF:calendarmanagerpro-main-xss(26335) CVE-2006-2265
XF:calendarmanagerpro-multiple-sql-injection(26334) CVE-2006-2264
XF:calendarmx-calendareventup-sql-injection(47040) CVE-2008-6378
XF:calendarscript-calendarpl-xss(20103) CVE-2005-1146
XF:calendarscript-path-disclosure(20102) CVE-2005-1147 CVE-2005-1148
XF:calife-long-password-bo(15335) CVE-2004-0188
XF:calimba-rbauth-sql-injection(24578) CVE-2006-0693
XF:calimero-phpsessid-session-hijacking(34685) CVE-2007-3053
XF:calisto-dos(10694) CVE-2002-2291
XF:callcenter-admin-sql-injection(50665) CVE-2009-2234
XF:callcenter-edit-privilege-escalation(29486) CVE-2006-7145
XF:callmanager-openser-sip-call-hijacking(37197) CVE-2007-5468 CVE-2007-5469
XF:callofduty-callvotemap-bo(29129) CVE-2006-5058
XF:callofduty-dos(17286) CVE-2004-1664
XF:callofduty4-stats-dos(42163) CVE-2008-2106
XF:calogic-calendars-userreg-sql-injection(42391) CVE-2008-2444
XF:calogic-newevent-xss(24077) CVE-2006-0180
XF:calogic-reconfig-srxclr-file-include(26590) CVE-2006-2570
XF:cameracontrol-activex-bo(48176) CVE-2008-5260
XF:cameralife-album-sql-injection(45803) CVE-2008-6086
XF:cameralife-image-file-upload(45492) CVE-2008-4366
XF:cameralife-multiple-scripts-xss(46285) CVE-2008-6295
XF:cameralife-sitemapxml-sql-injection(43991) CVE-2008-3355
XF:cameralife-topic-xss(45805) CVE-2008-6087
XF:cameralife-unspecified-security-bypass(35839) CVE-2007-4234
XF:camlimages-gifread-jpegread-bo(52649) CVE-2009-2660
XF:camouflage-password-security-bypass(31375) CVE-2007-0164
XF:campsite-notifyendsubs-plaintext-password(23106) CVE-2005-4661
XF:campusbulletinboard-book-xss(42661) CVE-2008-2493
XF:campusbulletinboard-multiple-sql-injection(42660) CVE-2008-2492
XF:campusmanager-directory-info-disclosure(34042) CVE-2007-2629
XF:camshot-http-get-overflow CVE-2000-0043
XF:camshot-password-bo CVE-2000-0836
XF:camunzip-archive-bo(26549) CVE-2006-2161
XF:candypress-logon-xss(37391) CVE-2007-5629
XF:candypress-openpolicy-sql-injection(30346) CVE-2006-6109
XF:candypress-prodlist-xss(34389) CVE-2007-2804
XF:canews-addnews-xss(26587) CVE-2006-2500
XF:canews-admindefault-sql-injection(26586) CVE-2006-2499
XF:canftool-index-xss(25437) CVE-2006-1482
XF:canna-bin-execute-bo CVE-2000-0584
XF:canna-improper-request-validation(10832) CVE-2002-1159
XF:canna-irwthrough-bo(10831) CVE-2002-1158
XF:canon-imagerunner-dos(17512) CVE-2004-2166
XF:canon-imagerunner-information-disclosure(28795) CVE-2006-4680
XF:capi4hylafax-c2faxrecvdbgdatafile-symlink(25262) CVE-2006-1231
XF:captcha-imagestring-codebg-weak-security(42152) CVE-2008-2020
XF:captcha-response-security-bypass(31994) CVE-2007-0658
XF:captiva-pixtools-activex-file-overwrite(53555) CVE-2009-3573
XF:captivate-gallery-xss(26589) CVE-2006-2796
XF:caravan-dotdot-directory-traveral(15004) CVE-2004-2170
XF:carbon-optionupdate-sql-injection(41961) CVE-2008-1900
XF:carboncommunities-carbon2-info-disclosure(31253) CVE-2007-0096
XF:carboncommunities-id-sql-injection(41845) CVE-2008-1895
XF:carboncommunities-login-membersend-xss(41846) CVE-2008-1896
XF:carboncopy-help-gain-privileges(17838) CVE-2004-1624
XF:carbre-annotations-file-include(33816) CVE-2007-2261
XF:carbre-rootpath-file-include(33238) CVE-2007-1721
XF:cardboard-recipient-command-execution(7178) CVE-2001-1584
XF:cardinal-upload-file-upload(44455) CVE-2007-5156
XF:care2002-include-read-files(9552) CVE-2002-0998
XF:care2002-sql-injection(9553) CVE-2002-0999
XF:care2x-rootpath-file-include(32981) CVE-2007-1458
XF:carello-file-duplication CVE-2000-0396
XF:carello-local-file-execution(9521) CVE-2002-0683
XF:carello-url-code-execution(6532) CVE-2001-0614
XF:cares-aresinitrandomizekey-weak-security(34980) CVE-2007-3153
XF:cares-transactionid-dns-spoofing(34979) CVE-2007-3152
XF:cario-readpng-bo(38771) CVE-2007-5503
XF:carmanager-index-sql-injection(33193) CVE-2007-1704
XF:carom3d-langame-dos(51219) CVE-2009-2173
XF:carportal-image-sql-injection(46786) CVE-2008-5310
XF:cars-portal-index-sql-injection(23428) CVE-2005-4055
XF:carscriptsclassifieds-cat-sql-injection(43170) CVE-2008-2844
XF:carsitemanager-listings-sql-injection(30273) CVE-2006-5945
XF:carsitemanager-listings-xss(30274) CVE-2006-5944 CVE-2006-6012
XF:carsvehicle-page-sql-injection(45210) CVE-2008-4172
XF:cart32-c32web-information-disclosure(36954) CVE-2007-5253
XF:cart32-expdate CVE-2000-0430
XF:cart32-getlatestbuilds-xss(16535) CVE-2004-0675
XF:cartweaver-details-sql-injection(43099) CVE-2008-2918
XF:cartweaver-multiple-path-disclosure(26061) CVE-2006-2047
XF:cartweaver-multiple-sql-injection(26060) CVE-2006-2046
XF:cartwiz-multiple-script-xss(20249) CVE-2005-1292
XF:cartwiz-multiple-sql-injection(20246) CVE-2005-1291
XF:cartwiz-viewcart-xss(21554) CVE-2005-2427
XF:cascadeserver-xlst-command-execution(49332) CVE-2009-1088
XF:cascadeview-tftp-symlink CVE-2000-0015
XF:cascadianfaq-index-sql-injection(31968) CVE-2007-0631
XF:casino-index-sql-injection(50645) CVE-2009-2239
XF:casinosoft-config-sql-injection(29684) CVE-2006-5446
XF:castor-rs-file-include(29704) CVE-2006-5480
XF:catalogshop-absolutepath-file-include(28462) CVE-2006-4275
XF:catalogshop-index-sql-injection(40142) CVE-2008-0557
XF:catdoc-xlsview-symlink(16335) CVE-2003-0193
XF:cattadoc-download2-directory-traversal(33474) CVE-2007-1930
XF:catviz-index-sql-injection(43468) CVE-2008-3129
XF:caucho-resin-file-xss(43367) CVE-2008-2462
XF:caudium-configvar-symlink(44768) CVE-2008-3883
XF:cauposhop-index-file-include(38122) CVE-2007-5784
XF:cauposhop-user-info-css(8431) CVE-2002-0439
XF:cauposhopclassic-saarticleid-sql-injection(43200) CVE-2008-2866
XF:cavoxcms-index-sql-injection(27249) CVE-2006-3150
XF:cayman-dsl-dos CVE-2000-0418
XF:cayman-dsl-insecure-permissions(6841) CVE-2001-1430
XF:cayman-dsl-portscan-dos(6825) CVE-2001-0773
XF:cayman-router-dos CVE-2000-0417
XF:cbauthority-main-sql-injection(52547) CVE-2009-3205
XF:cbms-php-sql-injection(9295) CVE-2002-0961
XF:cbms-php-xss(9294) CVE-2002-0960
XF:cbrpager-archive-command-execution(42741) CVE-2008-2575
XF:cbsms-multiple-scripts-file-include(27374) CVE-2006-3294 CVE-2006-3302
XF:cccounter-index-xss(33213) CVE-2007-1714
XF:cck-fieldlabels-contenttype-xss(46377) CVE-2008-6229
XF:cck-multiple-fields-xss(44915) CVE-2008-6972
XF:cck-node-user-xss(49317) CVE-2009-1069
XF:cck-nodereference-autocomplete-xss(36002) CVE-2007-4363
XF:cck-nodereference-plain-xss(36000) CVE-2007-4363
XF:ccleaguepro-admin-security-bypass(43281) CVE-2008-5125
XF:ccleaguepro-admin-sql-injection(43280) CVE-2008-5123
XF:ccmail-update-file-include(32999) CVE-2007-1516
XF:ccportal-multiple-sql-injection(26313) CVE-2006-2255
XF:ccproxy-connection-bo(45304) CVE-2008-6415
XF:ccs-servletexec-gain-privileges(16553) CVE-2004-0650
XF:cctiddly-cctbase-file-include(47072) CVE-2008-5949
XF:cdcontrol-writtercontrol-symlink(44839) CVE-2008-4944
XF:cddbcontrol-activex-bo(33773) CVE-2007-0443
XF:cddbd-bo(2203) CVE-1999-1240
XF:cde-dtaction-username-bo CVE-1999-0691
XF:cde-dtlogin CVE-1999-0713
XF:cde-dtlogin-double-free(15581) CVE-2004-0368
XF:cde-dtprintinfo CVE-1999-0806
XF:cde-dtprintinfo-gain-privileges(13914) CVE-2003-1057
XF:cde-dtsession-env-bo CVE-1999-0693
XF:cde-dtspcd-bo(7396) CVE-2001-0803
XF:cde-dtspcd-file-auth CVE-1999-0689
XF:cde-mac-priv-escalation(53461) CVE-2009-3468
XF:cde-mailtool-bo(3732) CVE-1999-0841
XF:cde-ttsession-rpc-auth CVE-1999-0687
XF:cde-xterm-gain-privileges(7666) CVE-2001-1577
XF:cdex-ogg-bo(49304) CVE-2009-1039
XF:cdf-read32s64-bo(42219) CVE-2008-2080
XF:cdrecord-rsh-gain-privileges(17303) CVE-2004-0806
XF:cdrtools-scsiopen-format-string(12007) CVE-2003-0289
XF:cdsagenda-send-file-include(29519) CVE-2006-5384
XF:cdsinvenio-alert-weak-security(41546) CVE-2008-1627
XF:cecilia-locatecsound-symlink(41837) CVE-2008-1832
XF:cedric-email-file-include(11278) CVE-2003-1410 CVE-2003-1411
XF:cedstat-index-xss(32537) CVE-2007-1020
XF:ceilidh-post-dos CVE-2000-0555
XF:ceilidh-textcgi-xss(11638) CVE-2003-1531
XF:cellfactor-message-bo(36507) CVE-2007-4838
XF:cellfactor-nickname-code-execution(36506) CVE-2007-4832
XF:celoxis-user-xss(45595) CVE-2008-6094
XF:censornet-cgi-xss(13507) CVE-2003-1506
XF:censtore-page-command-execution(25905) CVE-2006-1799
XF:censura-itemid-sql-injection(51663) C