|
348151
|
- |
|
je_form_creator
|
je_form_creator
|
Directory traversal vulnerability in the JE Form Creator (com_jeformcr) component for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via directory travers…
|
CWE-22
Path Traversal
|
CVE-2010-1217
|
2013-07-23 17:57 |
2010-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348152
|
- |
|
mcafee
|
epolicy_orchestrator
|
Format string vulnerability in ePO service for McAfee ePolicy Orchestrator 2.0, 2.5, and 2.5.1 allows remote attackers to execute arbitrary code via a POST request with format strings in the computer…
|
NVD-CWE-Other
|
CVE-2003-0616
|
2013-07-23 14:04 |
2003-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348153
|
- |
|
hp
|
mpe_ix
|
Local users can gain privileges using the debug utility in the MPE/iX operating system.
|
NVD-CWE-Other
|
CVE-1999-0447
|
2013-07-23 13:04 |
1999-04-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348154
|
- |
|
hp
|
hp-ux
|
HP-UX vgdisplay program gives root access to local users.
|
NVD-CWE-Other
|
CVE-1999-0309
|
2013-07-21 13:11 |
1997-02-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348155
|
- |
|
aspcodecms
|
aspcode_cms
|
Cross-site request forgery (CSRF) vulnerability in default.asp in ASPCode CMS 1.5.8, 2.0.0 Build 103, and possibly other versions, allows remote attackers to hijack the authentication of an administr…
|
CWE-352
Origin Validation Error
|
CVE-2010-0711
|
2013-07-20 15:53 |
2010-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348156
|
- |
|
sun
|
solaris
|
Unknown vulnerability in Solaris 10 allows local users to cause a denial of service (panic) via unknown vectors related to the "/proc" filesystem, which trigger a null dereference.
|
NVD-CWE-Other
|
CVE-2005-3250
|
2013-07-20 14:20 |
2005-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348157
|
- |
|
iatek
|
portalapp
|
Cross-site scripting (XSS) vulnerability in login.asp in PortalApp 3.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the ret_page parameter.
|
NVD-CWE-Other
|
CVE-2005-4482
|
2013-07-18 22:37 |
2005-12-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348158
|
- |
|
speartek
|
speartek
|
Cross-site scripting (XSS) vulnerability in SpearTek 6.0 and earlier allows remote attackers to inject arbitrary web script or HTML via unspecified search parameters.
|
NVD-CWE-Other
|
CVE-2005-4493
|
2013-07-17 23:41 |
2005-12-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348159
|
- |
|
osticket
|
osticket
|
Multiple cross-site scripting (XSS) vulnerabilities in osTicket allow remote attackers to inject arbitrary web script or HTML via (1) the t parameter to view.php, (2) the osticket_title parameter to …
|
NVD-CWE-Other
|
CVE-2005-1436
|
2013-07-14 13:38 |
2005-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348160
|
- |
|
symantec
|
discovery on_command_discovery
|
The installation of ON Symantec Discovery 4.5.x and Symantec Discovery 6.0 creates the (1) DiscoveryWeb and (2) DiscoveryRO database accounts with null passwords, which could allow attackers to gain …
|
NVD-CWE-Other
|
CVE-2005-3316
|
2013-07-7 13:45 |
2005-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|