|
346941
|
- |
|
intervations
|
filecopa
|
Directory traversal vulnerability in the FTP service in FileCOPA before 5.03 allows remote attackers to read or overwrite arbitrary files via unknown vectors. NOTE: the provenance of this informatio…
|
CWE-22
Path Traversal
|
CVE-2010-2112
|
2010-06-1 13:00 |
2010-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346942
|
- |
|
brekeke
|
pbx
|
Cross-site request forgery (CSRF) vulnerability in pbx/gate in Brekeke PBX 2.4.4.8 allows remote attackers to hijack the authentication of users for requests that change passwords via the pbxadmin.we…
|
CWE-352
Origin Validation Error
|
CVE-2010-2114
|
2010-06-1 13:00 |
2010-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346943
|
- |
|
solarwinds
|
tftp_server
|
SolarWinds TFTP Server 10.4.0.10 allows remote attackers to cause a denial of service (no new connections) via a crafted read request.
|
CWE-20
Improper Input Validation
|
CVE-2010-2115
|
2010-06-1 13:00 |
2010-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346944
|
- |
|
hp
|
mercury_testdirector_for_quality_center
|
Unspecified vulnerability in HP TestDirector for Quality Center 9.2 before Patch8 allows remote attackers to modify data via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2010-1959
|
2010-05-29 14:47 |
2010-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346945
|
- |
|
microsoft
|
asp.net
|
Microsoft ASP.NET 2.0 does not prevent setting the InnerHtml property on a control that inherits from HtmlContainerControl, which allows remote attackers to conduct cross-site scripting (XSS) attacks…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2084
|
2010-05-28 13:00 |
2010-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346946
|
- |
|
microsoft
|
.net_framework
|
The default configuration of ASP.NET in Microsoft .NET before 1.1 has a value of FALSE for the EnableViewStateMac property, which allows remote attackers to conduct cross-site scripting (XSS) attacks…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2085
|
2010-05-28 13:00 |
2010-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346947
|
- |
|
apache
|
myfaces
|
Apache MyFaces 1.1.7 and 1.2.8, as used in IBM WebSphere Application Server and other applications, does not properly handle an unencrypted view state, which allows remote attackers to conduct cross-…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2086
|
2010-05-28 13:00 |
2010-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346948
|
- |
|
microsoft
|
asp.net
|
ASP.NET in Microsoft .NET 3.5 does not properly handle an unencrypted view state, which allows remote attackers to conduct cross-site scripting (XSS) attacks against the form control via the __VIEWST…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2088
|
2010-05-28 13:00 |
2010-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346949
|
- |
|
cmsqlite
|
cmsqlite
|
SQL injection vulnerability in index.php in CMSQlite 1.2 and earlier allows remote attackers to execute arbitrary SQL commands via the c parameter.
|
CWE-89
SQL Injection
|
CVE-2010-2095
|
2010-05-28 13:00 |
2010-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
346950
|
- |
|
cmsqlite
|
cmsqlite
|
Directory traversal vulnerability in index.php in CMSQlite 1.2 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the mod parameter.
|
CWE-22
Path Traversal
|
CVE-2010-2096
|
2010-05-28 13:00 |
2010-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|