|
295221
|
- |
|
jerome_schneider
|
ameos_dragndropupload
|
Unspecified vulnerability in the Drag Drop Mass Upload (ameos_dragndropupload) extension 2.0.2 and earlier for TYPO3 allows remote attackers to upload arbitrary files via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2011-3980
|
2024-11-21 10:31 |
2011-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295222
|
- |
|
zikula
|
zikula_application_framework
|
Cross-site scripting (XSS) vulnerability in ztemp/view_compiled/Theme/theme_admin_setasdefault.php in the theme module in Zikula Application Framework 1.3.0 build 3168, 1.2.7, and probably other vers…
|
CWE-79
Cross-site Scripting
|
CVE-2011-3979
|
2024-11-21 10:31 |
2011-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295223
|
- |
|
lightneasy
|
lightneasy
|
Multiple cross-site scripting (XSS) vulnerabilities in LightNEasy.php in LightNEasy 3.2.4 allow remote authenticated users to inject arbitrary web script or HTML via the (1) commentemail, (2) comment…
|
CWE-79
Cross-site Scripting
|
CVE-2011-3978
|
2024-11-21 10:31 |
2011-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295224
|
- |
|
nomachine
|
nx_server nx_node
|
Unspecified vulnerability in nxconfigure.sh in NoMachine NX Node 3.x before 3.5.0-4 and NX Server 3.x before 3.5.0-5 allows local users to read arbitrary files via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2011-3977
|
2024-11-21 10:31 |
2011-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295225
|
- |
|
ammsoft
|
scriptftp
|
Stack-based buffer overflow in AmmSoft ScriptFTP 3.3 allows remote FTP servers to execute arbitrary code via a long filename in a response to a LIST command, as demonstrated using (1) GETLIST or (2) …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-3976
|
2024-11-21 10:31 |
2011-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295226
|
- |
|
google htc
|
android evo_3d evo_4g thunderbolt
|
A certain HTC update for Android 2.3.4 build GRJ22, when the Sense interface is used on the HTC EVO 3D, EVO 4G, ThunderBolt, and unspecified other devices, provides the HtcLoggers.apk application, wh…
|
CWE-200
Information Exposure
|
CVE-2011-3975
|
2024-11-21 10:31 |
2011-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295227
|
- |
|
ffmpeg
|
ffmpeg
|
Integer signedness error in the decode_residual_inter function in cavsdec.c in libavcodec in FFmpeg before 0.7.4 and 0.8.x before 0.8.3 allows remote attackers to cause a denial of service (incorrect…
|
CWE-189
Numeric Errors
|
CVE-2011-3974
|
2024-11-21 10:31 |
2011-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295228
|
- |
|
ffmpeg
|
ffmpeg
|
cavsdec.c in libavcodec in FFmpeg before 0.7.4 and 0.8.x before 0.8.3 allows remote attackers to cause a denial of service (incorrect write operation and application crash) via an invalid bitstream i…
|
CWE-399
Resource Management Errors
|
CVE-2011-3973
|
2024-11-21 10:31 |
2011-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295229
|
- |
|
mozilla
|
firefox seamonkey
|
Mozilla Firefox before 7.0 and SeaMonkey before 2.4 do not properly restrict availability of motion data events, which makes it easier for remote attackers to read keystrokes by leveraging JavaScript…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-3866
|
2024-11-21 10:31 |
2011-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295230
|
- |
|
ulyssesonline
|
black-letterhead
|
Cross-site scripting (XSS) vulnerability in the Black-LetterHead theme before 1.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php.
|
CWE-79
Cross-site Scripting
|
CVE-2011-3865
|
2024-11-21 10:31 |
2011-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|