A vulnerability classified as critical has been found in Linux Kernel up to 3.14.72/4.4.13/4.6.2. This affects the function compat_setsockopt. The manipulation leads to improper access controls.
This vulnerability is uniquely identified as CVE-2016-4997. Local access is required to approach this attack. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability, which was classified as critical, has been found in Freedirectoryscript Free Directory Script 1.1.1. Affected by this issue is some unknown functionality of the file init.php. The manipulation of the argument API_HOME_DIR leads to code injection.
This vulnerability is handled as CVE-2008-6305. The attack may be launched remotely. Furthermore, there is an exploit available.
A vulnerability has been found in E-topbiz Link Back Checker 1 and classified as critical. This vulnerability affects unknown code. The manipulation leads to improper authentication.
This vulnerability was named CVE-2008-6307. The attack can be initiated remotely. Furthermore, there is an exploit available.
A vulnerability was found in Pluck-cms Pluck 4.5.3. It has been declared as critical. This vulnerability affects unknown code in the library data/inc/lib/pcltar.lib.php. The manipulation of the argument g_pcltar_lib_dir leads to path traversal.
This vulnerability was named CVE-2008-6253. The attack can be initiated remotely. Furthermore, there is an exploit available.
A vulnerability was found in PunBB Private Messaging System up to 1.2.1. It has been classified as problematic. Affected is an unknown function of the file functions_navlinks.php. The manipulation of the argument pun_user[language] leads to path traversal.
This vulnerability is traded as CVE-2008-6308. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
A vulnerability classified as critical was found in Jaia Interactive MyTopix 1.2.3/1.3.0. This vulnerability affects unknown code of the file index.php. The manipulation of the argument send leads to sql injection.
This vulnerability was named CVE-2008-6330. The attack can be initiated remotely. Furthermore, there is an exploit available.
A vulnerability classified as very critical has been found in Vitalwerks No-IP DUC up to 2.1.7. Affected is the function GetNextLine. The manipulation leads to memory corruption.
This vulnerability is traded as CVE-2008-5297. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.
A vulnerability was found in Fabrice Bellard QEMU. It has been classified as problematic. Affected is the function process_tx_desc of the file hw/net/e1000.c of the component e1000. The manipulation leads to infinite loop.
This vulnerability is traded as CVE-2015-6815. Access to the local network is required for this attack. There is no exploit available.
It is recommended to apply a patch to fix this issue.
A vulnerability was found in Libraw up to 0.17.0. It has been rated as critical. Affected by this issue is the function phase_one_correct. The manipulation leads to improper initialization.
This vulnerability is handled as CVE-2015-8367. The attack may be launched remotely. There is no exploit available.
It is recommended to upgrade the affected component.
A vulnerability classified as critical was found in itsourcecode Tailoring Management System 1.0. This vulnerability affects unknown code of the file /incadd.php. The manipulation of the argument inccat/desc/date/amount leads to sql injection.
This vulnerability was named CVE-2024-11074. The attack can be initiated remotely. Furthermore, there is an exploit available.
The initial researcher advisory only mentions the parameter "inccat" to be affected. But it must be assumed "desc", "date", and "amount" are affected as well.
A vulnerability classified as problematic has been found in SourceCodester Hospital Management System 1.0. This affects an unknown part of the file /vm/patient/delete-account.php. The manipulation of the argument id leads to improper authorization.
This vulnerability is uniquely identified as CVE-2024-11073. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.