|
295211
|
- |
|
alexander_palmo
|
simple_php_blog
|
Multiple cross-site scripting (XSS) vulnerabilities in Simple PHP Blog 0.7.0 and possibly earlier allow remote attackers to inject arbitrary web script or HTML via the (1) entry parameter to delete.p…
|
CWE-79
Cross-site Scripting
|
CVE-2011-5029
|
2024-11-21 10:33 |
2011-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295212
|
- |
|
novell
|
sentinel_log_manager
|
Directory traversal vulnerability in novelllogmanager/FileDownload in Novell Sentinel Log Manager 1.2.0.1_938 and earlier, as used in Novell Sentinel before 7.0.1.0, allows remote authenticated users…
|
CWE-22
Path Traversal
|
CVE-2011-5028
|
2024-11-21 10:33 |
2011-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295213
|
- |
|
zabbix
|
zabbix
|
Cross-site scripting (XSS) vulnerability in ZABBIX before 1.8.10 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors related to the profiler.
|
CWE-79
Cross-site Scripting
|
CVE-2011-5027
|
2024-11-21 10:33 |
2011-12-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295214
|
- |
|
yaws
|
yaws
|
Multiple cross-site scripting (XSS) vulnerabilities in the wiki application in Yaws 1.88 allow remote attackers to inject arbitrary web script or HTML via (1) the tag parameter to editTag.yaws, (2) t…
|
CWE-79
Cross-site Scripting
|
CVE-2011-5025
|
2024-11-21 10:33 |
2011-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295215
|
- |
|
gnu
|
mailman
|
Cross-site scripting (XSS) vulnerability in mmsearch/design in the Mailman/htdig integration patch for Mailman allows remote attackers to inject arbitrary web script or HTML via the config parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2011-5024
|
2024-11-21 10:33 |
2011-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295216
|
- |
|
pligg
|
pligg_cms
|
Cross-site scripting (XSS) vulnerability in Pligg CMS 1.1.4 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the search program, a different vulnerability than CVE-…
|
CWE-79
Cross-site Scripting
|
CVE-2011-5023
|
2024-11-21 10:33 |
2011-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295217
|
- |
|
pligg
|
pligg_cms
|
SQL injection vulnerability in search.php in Pligg CMS 1.1.2 allows remote attackers to execute arbitrary SQL commands via the status parameter.
|
CWE-89
SQL Injection
|
CVE-2011-5022
|
2024-11-21 10:33 |
2011-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295218
|
- |
|
winn
|
winn_guestbook
|
Cross-site scripting (XSS) vulnerability in the addPost function in data/functions.php in Winn GuestBook before 2.4.8d allows remote attackers to inject arbitrary web script or HTML via the name para…
|
CWE-79
Cross-site Scripting
|
CVE-2011-5026
|
2024-11-21 10:33 |
2011-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295219
|
- |
|
phpids
|
phpids
|
PHPIDS before 0.7 does not properly implement Regular Expression Denial of Service (ReDoS) filters, which allows remote attackers to bypass rulesets and add PHP sequences to a file via unspecified ve…
|
CWE-94
Code Injection
|
CVE-2011-5021
|
2024-11-21 10:33 |
2011-12-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295220
|
- |
|
attachmate
|
reflection_2011r1 reflection_2008r2 reflection_2008 reflection reflection_2008r1
|
Heap-based buffer overflow in the Reflection FTP Client (rftpcom.dll 7.2.0.106 and possibly other versions), as used in Attachmate Reflection 2008, Reflection 2011 R1 before 15.3.2.569 and R1 SP1 bef…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-5012
|
2024-11-21 10:33 |
2011-12-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|