|
295211
|
- |
|
adaptcms
|
adaptcms
|
AdaptCMS 2.0.2 Beta allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by inc/poll_v…
|
CWE-200
Information Exposure
|
CVE-2011-3698
|
2024-11-21 10:31 |
2011-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295212
|
- |
|
achievo
|
achievo
|
Achievo 1.4.5 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by modules/graph/jp…
|
CWE-200
Information Exposure
|
CVE-2011-3697
|
2024-11-21 10:31 |
2011-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295213
|
- |
|
60cyclecms_project
|
60cyclecms
|
60cycleCMS 2.5.2 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by post.php and …
|
CWE-200
Information Exposure
|
CVE-2011-3696
|
2024-11-21 10:31 |
2011-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295214
|
- |
|
111webcalendar
|
111webcalendar
|
111WebCalendar 1.2.3 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by footer.ph…
|
CWE-200
Information Exposure
|
CVE-2011-3695
|
2024-11-21 10:31 |
2011-09-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295215
|
6.1 |
MEDIUM
Network
|
mozilla
|
firefox
|
Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.6.24 and 4.x through 7 allows remote attackers to inject arbitrary web script or HTML via vectors involving HTTP 0.9 errors, non-d…
|
CWE-79
Cross-site Scripting
|
CVE-2011-3656
|
2024-11-21 10:30 |
2021-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295216
|
7.5 |
HIGH
Network
|
lexmark
|
x950_firmware x952_firmware x954_firmware x940e_firmware x945e_firmware x925de_firmware x860_firmware x862_firmware x864_firmware x850_firmware x852_firmware x854_fir…
|
Lexmark X, W, T, E, C, 6500e, and 25xxN devices before 2011-11-15 allow attackers to obtain sensitive information via a hidden email address in a Scan To Email shortcut.
|
CWE-200
Information Exposure
|
CVE-2011-3269
|
2024-11-21 10:30 |
2020-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295217
|
7.5 |
HIGH
Network
|
freebsd apple openbsd php
|
freebsd mac_os_x openbsd php
|
regcomp in the BSD implementation of libc is vulnerable to denial of service due to stack exhaustion.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2011-3336
|
2024-11-21 10:30 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295218
|
9.6 |
CRITICAL
Network
|
flowplayer
|
flowplayer_flash
|
Cross-site scripting (XSS) vulnerability in Flowplayer Flash 3.2.7 through 3.2.16, as used in the News system (news) extension for TYPO3 and Mahara, allows remote attackers to inject arbitrary web sc…
|
CWE-79
Cross-site Scripting
|
CVE-2011-3642
|
2024-11-21 10:30 |
2020-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295219
|
7.5 |
HIGH
Network
|
joomla
|
joomla\!
|
Joomla! core 1.7.1 allows information disclosure due to weak encryption
|
CWE-326
Inadequate Encryption Strength
|
CVE-2011-3629
|
2024-11-21 10:30 |
2020-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295220
|
6.1 |
MEDIUM
Network
|
phorum
|
phorum
|
A Cross-Site Scripting (XSS) vulnerability exists in the admin login screen in Phorum before 5.2.18.
|
CWE-79
Cross-site Scripting
|
CVE-2011-3622
|
2024-11-21 10:30 |
2020-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|