|
295931
|
- |
|
namazu
|
namazu
|
Multiple directory traversal vulnerabilities in namazu.cgi in Namazu before 2.0.16 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) lang or (2) result parameter.
|
CWE-22
Path Traversal
|
CVE-2011-4711
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295932
|
- |
|
getpixie lucidcrew
|
pixie
|
Multiple SQL injection vulnerabilities in Pixie CMS 1.01 through 1.04 allow remote attackers to execute arbitrary SQL commands via the (1) pixie_user parameter and (2) Referer HTTP header in a reques…
|
CWE-89
SQL Injection
|
CVE-2011-4710
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295933
|
- |
|
hotaru
|
search_plugin hotaru_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in Hotaru.php in the Search plugin 1.3 for Hotaru CMS allow remote attackers to inject arbitrary web script or HTML via the (1) SITE_NAME parameter…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4709
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295934
|
- |
|
ibm
|
rational_asset_manager
|
Cross-site scripting (XSS) vulnerability in IBM Rational Asset Manager before 7.5.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2011-4708
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295935
|
- |
|
sap
|
netweaver
|
Multiple cross-site scripting (XSS) vulnerabilities in the Virus Scan Interface in SAP Netweaver allow remote attackers to inject arbitrary web script or HTML via the (1) instname parameter to the Vs…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4707
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295936
|
- |
|
isc canonical debian
|
dhcp ubuntu_linux debian_linux
|
dhcpd in ISC DHCP 4.x before 4.2.3-P1 and 4.1-ESV before 4.1-ESV-R4 does not properly handle regular expressions in dhcpd.conf, which allows remote attackers to cause a denial of service (daemon cras…
|
CWE-20
Improper Input Validation
|
CVE-2011-4539
|
2024-11-21 10:32 |
2011-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295937
|
- |
|
phpwebsite
|
phpwebsite
|
Cross-site scripting (XSS) vulnerability in phpWebSite before 1.0.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2011-4265
|
2024-11-21 10:32 |
2011-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295938
|
- |
|
etomite
|
etomite
|
Cross-site scripting (XSS) vulnerability in Etomite before 1.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2011-4264
|
2024-11-21 10:32 |
2011-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295939
|
- |
|
microsoft
|
windows_7
|
Unspecified vulnerability in Microsoft Windows 7 SP1, when Java is installed, allows local users to bypass Internet Explorer sandbox restrictions and gain privileges via unknown vectors, as demonstra…
|
NVD-CWE-noinfo
|
CVE-2011-4695
|
2024-11-21 10:32 |
2011-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295940
|
- |
|
adobe
|
flash_player
|
Unspecified vulnerability in Adobe Flash Player 11.1.102.55 on Windows and Mac OS X allows remote attackers to execute arbitrary code via a crafted SWF file, as demonstrated by the second of two vuln…
|
NVD-CWE-noinfo
|
CVE-2011-4694
|
2024-11-21 10:32 |
2011-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|