|
294441
|
- |
|
kubelabs
|
phpdug
|
Multiple cross-site scripting (XSS) vulnerabilities in PHPDug 2.0.0 allow remote attackers to inject arbitrary web script or HTML via (1) the story_url parameter to add_story.php, (2) the email param…
|
CWE-79
Cross-site Scripting
|
CVE-2011-5301
|
2024-11-21 10:34 |
2015-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294442
|
- |
|
pommo
|
pommo-ardvark
|
Cross-site request forgery (CSRF) vulnerability in admin/setup/config/users.php in poMMo Aardvark PR16.1 allows remote attackers to hijack the authentication of administrators for requests that modif…
|
CWE-352
Origin Validation Error
|
CVE-2011-5300
|
2024-11-21 10:34 |
2015-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294443
|
- |
|
pommo
|
pommo-ardvark
|
Multiple cross-site scripting (XSS) vulnerabilities in poMMo Aardvark PR16.1 allow remote attackers to inject arbitrary web script or HTML via (1) the referer parameter to index.php, (2) the site_nam…
|
CWE-79
Cross-site Scripting
|
CVE-2011-5299
|
2024-11-21 10:34 |
2015-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294444
|
- |
|
viralheat
|
argyle_social
|
Multiple cross-site request forgery (CSRF) vulnerabilities in Argyle Social 2011-04-26 allow remote attackers to hijack the authentication of administrators for requests that (1) modify credentials v…
|
CWE-352
Origin Validation Error
|
CVE-2011-5298
|
2024-11-21 10:34 |
2015-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294445
|
- |
|
ttfreeware
|
tigertoms_chat_room
|
Multiple cross-site scripting (XSS) vulnerabilities in TTChat 1.0.4 allow remote attackers to inject arbitrary web script or HTML via (1) the msg parameter to default.php or (2) the username paramete…
|
CWE-79
Cross-site Scripting
|
CVE-2011-5297
|
2024-11-21 10:34 |
2015-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294446
|
- |
|
tuttophp
|
happy_chat
|
Cross-site scripting (XSS) vulnerability in profilo.php in Happy Chat 1.0 allows remote attackers to inject arbitrary web script or HTML via the nick parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2011-5296
|
2024-11-21 10:34 |
2015-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294447
|
- |
|
gogago
|
gogago_youtube_video_converter
|
Buffer overflow in the Download method in a certain ActiveX control in MDIEEx.dll in Gogago YouTube Video Converter 1.1.6 allows remote attackers to execute arbitrary code via a long argument.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-5295
|
2024-11-21 10:34 |
2015-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294448
|
- |
|
kofax
|
kofax_e-transactions_sender_sendbox
|
The SaveMessage method in the LEADeMail.LEADSmtp.20 ActiveX control in LTCML14n.dll 14.0.0.34 in Kofax e-Transactions Sender Sendbox 2.5.0.933 allows remote attackers to write to arbitrary files via …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-5294
|
2024-11-21 10:34 |
2015-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294449
|
- |
|
threediffy
|
threedify_designer
|
The cmdSave method in the ThreeDify.ThreeDifyDesigner.1 ActiveX control in ActiveSolid.dll in ThreeDify Designer 5.0.2 allows remote attackers to write to arbitrary files via a pathname in the argume…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-5293
|
2024-11-21 10:34 |
2015-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294450
|
- |
|
easewe_software
|
easewe_ftp_ocx_activex_control
|
The EaseWeFtp.FtpLibrary ActiveX control in EaseWeFtp.ocx in Easewe FTP OCX 4.5.0.9 does not restrict access to certain methods, which allows remote attackers to execute arbitrary files via a pathnam…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-5292
|
2024-11-21 10:34 |
2015-01-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|