|
295311
|
- |
|
backwpup
|
backwpup
|
Multiple directory traversal vulnerabilities in the BackWPup plugin before 1.4.1 for WordPress allow remote attackers to read arbitrary files via a .. (dot dot) in the wpabs parameter to (1) app/opti…
|
CWE-22
Path Traversal
|
CVE-2011-5208
|
2024-11-21 10:33 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295312
|
- |
|
redmine
|
redmine
|
Unspecified vulnerability in the bazaar repository adapter in Redmine 0.9.x and 1.0.x before 1.0.5 allows remote attackers to execute arbitrary commands via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2011-4929
|
2024-11-21 10:33 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295313
|
- |
|
redmine
|
redmine
|
Cross-site scripting (XSS) vulnerability in the textile formatter in Redmine before 1.0.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2011-4928
|
2024-11-21 10:33 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295314
|
- |
|
redmine
|
redmine
|
Unspecified vulnerability in the bazaar repository adapter in Redmine 1.0.x before 1.0.5 allows remote authenticated users to obtain sensitive information via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2011-4927
|
2024-11-21 10:33 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295315
|
- |
|
joomla
|
joomla\!
|
Joomla! before 1.5.12 does not perform a JEXEC check in unspecified files, which allows remote attackers to obtain the installation path via unspecified vectors.
|
CWE-20
Improper Input Validation
|
CVE-2011-4911
|
2024-11-21 10:33 |
2012-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295316
|
- |
|
joomla
|
joomla\!
|
Cross-site scripting (XSS) vulnerability in Joomla! before 1.5.12 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.
|
CWE-79
Cross-site Scripting
|
CVE-2011-4910
|
2024-11-21 10:33 |
2012-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295317
|
- |
|
joomla
|
joomla\!
|
Multiple cross-site scripting (XSS) vulnerabilities in Joomla! before 1.5.12 allow remote attackers to inject arbitrary web script or HTML via the HTTP_REFERER header to (1) components/com_content/vi…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4909
|
2024-11-21 10:33 |
2012-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295318
|
- |
|
impresspages
|
impresspages_cms
|
Eval injection vulnerability in ip_cms/modules/standard/content_management/actions.php in ImpressPages CMS 1.0.12 and possibly other versons before 1.0.13 allows remote attackers to execute arbitrary…
|
CWE-94
Code Injection
|
CVE-2011-4932
|
2024-11-21 10:33 |
2012-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295319
|
- |
|
thecartpress
|
thecartpress
|
Cross-site scripting (XSS) vulnerability in admin/OptionsPostsList.php in the TheCartPress plugin for WordPress before 1.1.6 before 2011-12-31 allows remote attackers to inject arbitrary web script o…
|
CWE-79
Cross-site Scripting
|
CVE-2011-5207
|
2024-11-21 10:33 |
2012-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295320
|
- |
|
rapidleech
|
rapidleech
|
Cross-site scripting (XSS) vulnerability in notes.php in Rapidleech before 2.3 rev42 SVN r399 allows remote attackers to inject arbitrary web script or HTML via the notes parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2011-5206
|
2024-11-21 10:33 |
2012-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|