The Open Source Vulnerability Database

OSVDB is an independent and open source database created by and for the community.
Our goal is to provide accurate, detailed, current, and unbiased technical information.

Latest OSVDB Vulnerabilities

51227 Disclosed: 2008-04-05 Blogator-script init_pass2.php Arbitrary User Password Manipulation
51226 Disclosed: 2006-03-03 AS/400 iSeries Access for Windows Remote Command rexec Remote Command Execution
51225 Disclosed: 2006-03-03 AS/400 LDAP Service User Account List Disclosure
51224 Disclosed: 2006-03-03 AS/400 FTP qsys.lib Symlink User Account List Disclosure
51223 Disclosed: 2006-03-03 AS/400 FTP Error Message Account Enumeration
51222 Disclosed: 2006-03-03 AS/400 POP3 Error Message Account Enumeration
51221 Disclosed: 2006-03-03 AS/400 Telnet Error Message Account Enumeration
51220 Disclosed: 2001-11-08 IBM HTTP Server on AS/400 Trailing Slash Source Code Disclosure
51219 Disclosed: 2008-05-16 AS/400 730 Port Scan Remote DoS
51218 Disclosed: 2003-05-12 Horde test.php3 Direct Request Information Disclosure

OSVDB News Feed

2008-12-31Welcoming in 2009
2008-11-20No Safety In Numbers
2008-11-10Looking for Volunteer Rails Developers!
2008-07-31OSVDB in Vegas.....
2008-07-14OSF To Maintain Attrition.org's Data Loss Database
2008-07-07Stop using Google, it's dangerous!
2008-07-07The Black Market Code Industry
2008-07-06VDBs Devolving?
2008-06-21OSVDB Featured in the Open Source Business Resource (OSBR)
2008-06-18Coffee makers are SCADA, right?!

Support OSVDB!

OSVDB needs your support! Donations get you enhanced access to the watch-list feature:

  • Watch unlimited products AND vendors, as opposed to just 10 products.
  • Receive notifications via RSS and email.

Pricing is in place for both individuals and organizations.

Visit the Support Page for details.

Sponsors

Sponsor

Member Highlight

Swtornio


Top Viewed Vulnerabilities this week

18293 Views: 445 Belkin 54G Routers Admin Account Default Null Password
25257 Views: 397 Big Webmaster Guestbook addguest.cgi Multiple Field XSS
49243 Views: 277 Microsoft Windows Server Service Crafted RPC Request Handling Unspecified Remote Code Execution
40621 Views: 254 Simple PHP Blog (SPHPBlog) add_link.php link_id Variable CSRF
592 Views: 192 ZyXEL Multiple Routers Default Administrator Password
44643 Views: 116 Realtek HD Audio Codec Driver RTKVHDA.sys / RTKVHDA64.sys IOCTL Request Handling Overflow
31308 Views: 110 YACS tables/populate.php context[path_to_root] Variable Remote File Inclusion
382 Views: 108 PostgreSQL Server Default Password
31310 Views: 105 YACS users/populate.php context[path_to_root] Variable Remote File Inclusion
16866 Views: 105 Terminator 3: War of the Machines Client CD-key Overflow

Top Blogged Vulnerabilities this Month

50622 Blogs: 86 Microsoft IE mshtml.dll XSML Nested SPAN Element Handling Unspecified Arbitrary Code Execution
49243 Blogs: 14 Microsoft Windows Server Service Crafted RPC Request Handling Unspecified Remote Code Execution
50585 Blogs: 9 Microsoft Office SharePoint Server Administrative URL Security Bypass
50611 Blogs: 8 Microsoft IE Navigation Methods Parameter Validation Memory Corruption
50578 Blogs: 7 Microsoft Visual Basic FlexGrid ActiveX (msflxgrd.ocx) Unspecified Memory Corruption
50610 Blogs: 7 Microsoft IE EMBED Tag File Name Extension Overflow
50580 Blogs: 6 Microsoft Visual Basic Animation ActiveX (mscomct2.ocx) AVI Parsing Memory Corruption
50581 Blogs: 6 Microsoft Visual Basic Charts Control ActiveX (Mschrt20.ocx) Unspecified Memory Corruption
50612 Blogs: 6 Microsoft IE Object Handling Uninitialized Memory Corruption
49736 Blogs: 5 Microsoft Windows SMB NTLM Authentication Credential Replay Remote Code Execution

Blogs provided by Technorati

DONATE NOW!

User Status

Quick Searches

Advertisements

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2008 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use