|
348491
|
- |
|
ibm
|
webi
|
Multiple cross-site scripting (XSS) vulnerabilities in the IBM Web Interface for Content Management (aka WEBi) before 1.0.4 allow remote attackers to inject arbitrary web script or HTML via unspecifi…
|
CWE-79
Cross-site Scripting
|
CVE-2010-1242
|
2011-04-7 12:18 |
2010-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348492
|
- |
|
ibm
|
webi
|
The IBM Web Interface for Content Management (aka WEBi) before 1.0.4 creates persistent cookies on client workstations, which has unspecified impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2010-1243
|
2011-04-7 12:18 |
2010-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348493
|
- |
|
apple
|
safari webkit
|
The Cascading Style Sheets (CSS) implementation in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, does not properly handle the :visited …
|
CWE-200
Information Exposure
|
CVE-2010-2264
|
2011-03-18 11:50 |
2010-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348494
|
- |
|
apple
|
itunes
|
Unquoted Windows search path vulnerability in iTunesHelper.exe in iTunes 4.7.1.30 and iTunes 5 for Windows might allow local users to gain privileges via a malicious C:\program.exe file.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2005-2938
|
2011-03-10 14:00 |
2005-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348495
|
- |
|
django_project
|
django
|
The administration application in Django 0.91, 0.95, and 0.96 stores unauthenticated HTTP POST requests and processes them after successful authentication occurs, which allows remote attackers to con…
|
CWE-352
Origin Validation Error
|
CVE-2008-3909
|
2011-03-8 12:11 |
2008-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348496
|
- |
|
cchost
|
cchost
|
SQL injection vulnerability in Creative Commons Tools ccHost before 3.0 allows remote attackers to execute arbitrary SQL commands via a crafted URL, which is used to populate the file ID. NOTE: Some…
|
NVD-CWE-Other
|
CVE-2006-4778
|
2011-03-8 11:42 |
2006-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348497
|
- |
|
roxio
|
toast
|
Race condition in Deja Vu, as used in Roxio Toast Titanium 7 and possibly other products, allows local users to execute arbitrary code via temporary files, including dejavu_manual.rb, which are execu…
|
CWE-362
Race Condition
|
CVE-2006-4801
|
2011-03-8 11:42 |
2006-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348498
|
- |
|
iodine
|
iodine
|
Unspecified vulnerability in IP over DNS is now easy (iodine) before 0.3.2 has unknown impact and attack vectors, related to "potential security problems."
|
NVD-CWE-Other
|
CVE-2006-4831
|
2011-03-8 11:42 |
2006-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348499
|
- |
|
iodine
|
iodine
|
This vulnerability is addressed in the following product release:
Iodine, Iodine, 0.3.2
|
NVD-CWE-Other
|
CVE-2006-4831
|
2011-03-8 11:42 |
2006-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348500
|
- |
|
joomla
|
joomla
|
Unspecified vulnerability in com_content in Joomla! before 1.0.11, when $mosConfig_hideEmail is set, allows attackers to perform the emailform and emailsend tasks.
|
NVD-CWE-Other
|
CVE-2006-4473
|
2011-03-8 11:41 |
2006-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|