5636 |
CVE-2008-5905 |
The web interface plugin in KTorrent before 3.1.4 allows remote attackers to bypass intended access restrictions and upload arbitrary torrent files, and trigger the start of downloads and seeding, via a crafted HTTP POST request. |
|
2 |
4.3 |
Medium |
2017-01-03 |
2009-05-09 |
View
|
5637 |
CVE-2008-5906 |
Eval injection vulnerability in the web interface plugin in KTorrent before 3.1.4 allows remote attackers to execute arbitrary PHP code via unspecified parameters to this interface"s PHP scripts. |
|
2 |
6.8 |
Medium |
2017-01-03 |
2009-05-09 |
View
|
5638 |
CVE-2008-5907 |
The png_check_keyword function in pngwutil.c in libpng before 1.0.42, and 1.2.x before 1.2.34, might allow context-dependent attackers to set the value of an arbitrary memory location to zero via vectors involving creation of crafted PNG files with keywords, related to an implicit cast of the " |