|
295351
|
- |
|
microsoft
|
windows_server_2008 windows_xp windows_7 windows_server_2003 windows_vista
|
Buffer overflow in Active Directory, Active Directory Application Mode (ADAM), and Active Directory Lightweight Directory Service (AD LDS) in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-3406
|
2024-11-21 10:30 |
2011-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295352
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 6 through 9 does not properly use the Content-Disposition HTTP header to control rendering of the HTTP response body, which allows remote attackers to read content from a …
|
CWE-200
Information Exposure
|
CVE-2011-3404
|
2024-11-21 10:30 |
2011-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295353
|
- |
|
microsoft
|
office excel
|
Microsoft Excel 2003 SP3 and Office 2004 for Mac do not properly handle objects in memory, which allows remote attackers to execute arbitrary code via a crafted Excel spreadsheet, aka "Record Memory …
|
CWE-94
Code Injection
|
CVE-2011-3403
|
2024-11-21 10:30 |
2011-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295354
|
- |
|
microsoft
|
windows_xp windows_7 windows_vista
|
ENCDEC.DLL in Windows Media Player and Media Center in Microsoft Windows XP SP2 and SP3, Windows Vista SP2, and Windows 7 Gold and SP1 allows remote attackers to execute arbitrary code via a crafted …
|
CWE-94
Code Injection
|
CVE-2011-3401
|
2024-11-21 10:30 |
2011-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295355
|
- |
|
microsoft
|
windows_xp windows_server_2003
|
Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 do not properly handle OLE objects in memory, which allows remote attackers to execute arbitrary code via a crafted object in a file, aka "OLE Pro…
|
CWE-94
Code Injection
|
CVE-2011-3400
|
2024-11-21 10:30 |
2011-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295356
|
- |
|
microsoft
|
windows_xp windows_server_2003
|
The Microsoft Time component in DATIME.DLL in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows remote attackers to execute arbitrary code via a crafted web site that leverages an unspecifi…
|
CWE-94
Code Injection
|
CVE-2011-3397
|
2024-11-21 10:30 |
2011-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295357
|
- |
|
microsoft
|
powerpoint
|
Untrusted search path vulnerability in Microsoft PowerPoint 2007 SP2 and 2010 allows local users to gain privileges via a Trojan horse DLL in the current working directory, aka "PowerPoint Insecure L…
|
NVD-CWE-Other
|
CVE-2011-3396
|
2024-11-21 10:30 |
2011-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295358
|
- |
|
redhat
|
freeipa
|
Cross-site request forgery (CSRF) vulnerability in the management interface in FreeIPA before 2.1.4 allows remote attackers to hijack the authentication of administrators for requests that make confi…
|
CWE-352
Origin Validation Error
|
CVE-2011-3636
|
2024-11-21 10:30 |
2011-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295359
|
- |
|
apache
|
http_server http_server2.0a9 http_server2.0a7 http_server2.0a8 http_server2.0a2 http_server2.0a5 http_server2.0a3 http_server2.0a6 http_server2.0a1 http_server2.0a4
|
The mod_proxy module in the Apache HTTP Server 2.0.x through 2.0.64 and 2.2.x before 2.2.18, when the Revision 1179239 patch is in place, does not properly interact with use of (1) RewriteRule and (2…
|
CWE-20
Improper Input Validation
|
CVE-2011-3639
|
2024-11-21 10:30 |
2011-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295360
|
- |
|
arora-browser
|
arora
|
Arora, possibly 0.11 and other versions, does not use a certain font when rendering certificate fields in a security dialog, which allows remote attackers to spoof the common name (CN) of a certifica…
|
CWE-20
Improper Input Validation
|
CVE-2011-3367
|
2024-11-21 10:30 |
2011-11-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|