|
287811
|
- |
|
hp
|
power_manager
|
Stack-based buffer overflow in the login form in the management web server in HP Power Manager allows remote attackers to execute arbitrary code via the Login variable.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-2685
|
2018-10-11 04:41 |
2009-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287812
|
- |
|
hp
|
cm8050_mfp cm8060_mfp color_laserjet_3000n color_laserjet_3600n color_laserjet_3800n color_laserjet_4700n color_laserjet_4730_mfp color_laserjet_6040_mfp color_laserjet_cm4730…
|
Multiple cross-site scripting (XSS) vulnerabilities in Jetdirect and the Embedded Web Server (EWS) on certain HP LaserJet and Color LaserJet printers, and HP Digital Senders, allow remote attackers t…
|
CWE-79
Cross-site Scripting
|
CVE-2009-2684
|
2018-10-11 04:41 |
2009-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287813
|
- |
|
sun
|
java_se
|
The plugin functionality in Sun Java SE 6 before Update 15 does not properly implement version selection, which allows context-dependent attackers to leverage vulnerabilities in "old zip and certific…
|
NVD-CWE-noinfo
|
CVE-2009-2716
|
2018-10-11 04:41 |
2009-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287814
|
- |
|
curl libcurl
|
libcurl
|
lib/ssluse.c in cURL and libcurl 7.4 through 7.19.5, when OpenSSL is used, does not properly handle a '\0' character in a domain name in the subject's Common Name (CN) field of an X.509 certificate, …
|
CWE-310
Cryptographic Issues
|
CVE-2009-2417
|
2018-10-11 04:40 |
2009-08-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287815
|
- |
|
apple
|
safari
|
Apple Safari 3.2.3 does not properly implement the file: protocol handler, which allows remote attackers to read arbitrary files or cause a denial of service (launch of multiple Windows Explorer inst…
|
CWE-20
Improper Input Validation
|
CVE-2009-2420
|
2018-10-11 04:40 |
2009-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287816
|
- |
|
apple
|
safari
|
The CFCharacterSetInitInlineBuffer method in CoreFoundation.dll in Apple Safari 3.2.3 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) or possibly…
|
CWE-20
Improper Input Validation
|
CVE-2009-2421
|
2018-10-11 04:40 |
2009-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287817
|
- |
|
wordpress
|
wordpress
|
WordPress 2.7.1 places the username of a post's author in an HTML comment, which allows remote attackers to obtain sensitive information by reading the HTML source.
|
CWE-20
Improper Input Validation
|
CVE-2009-2431
|
2018-10-11 04:40 |
2009-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287818
|
- |
|
wordpress
|
wordpress wordpress_mu
|
WordPress and WordPress MU before 2.8.1 allow remote attackers to obtain sensitive information via a direct request to wp-settings.php, which reveals the installation path in an error message.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-2432
|
2018-10-11 04:40 |
2009-07-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287819
|
- |
|
mim.infinix
|
infinix
|
Multiple SQL injection vulnerabilities in index.php in MIM:InfiniX 1.2.003 and possibly earlier versions allow remote attackers to execute arbitrary SQL commands via the (1) month and (2) year parame…
|
CWE-89
SQL Injection
|
CVE-2009-2451
|
2018-10-11 04:40 |
2009-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287820
|
- |
|
forkosh
|
mathtex
|
Multiple stack-based buffer overflows in mathtex.cgi in mathTeX, when downloaded before 20090713, have unspecified impact and remote attack vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-2460
|
2018-10-11 04:40 |
2009-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|