|
272401
|
- |
|
vsecurity
|
tandberg_video_communication_server
|
The SSH service on the TANDBERG Video Communication Server (VCS) before X5.1 uses a fixed DSA key, which makes it easier for remote attackers to conduct man-in-the-middle attacks and spoof arbitrary …
|
CWE-310
Cryptographic Issues
|
CVE-2009-4510
|
2023-11-7 11:04 |
2010-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272402
|
- |
|
vsecurity
|
tandberg_video_communication_server
|
The administrative web console on the TANDBERG Video Communication Server (VCS) before X4.3 uses predictable session cookies in (1) tandberg/web/lib/secure.php and (2) tandberg/web/user/lib/secure.ph…
|
CWE-94
Code Injection
|
CVE-2009-4509
|
2023-11-7 11:04 |
2010-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272403
|
- |
|
clamav clamavs
|
clamav
|
ClamAV before 0.96 does not properly handle the (1) CAB and (2) 7z file formats, which allows remote attackers to bypass virus detection via a crafted archive that is compatible with standard archive…
|
NVD-CWE-noinfo
|
CVE-2010-0098
|
2023-11-7 11:04 |
2010-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272404
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
xar in Apple Mac OS X 10.5.8 does not properly validate package signatures, which allows attackers to have an unspecified impact via a modified package.
|
NVD-CWE-Other
|
CVE-2010-0055
|
2023-11-7 11:04 |
2010-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272405
|
- |
|
-
|
-
|
Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2010-0787, CVE-2010-0788, CVE-2010-0789. Reason: this candidate was intended for one issue in Samba, but it was used for multiple …
|
-
|
CVE-2009-3297
|
2023-11-7 11:04 |
2010-03-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272406
|
- |
|
ngircd
|
ngircd
|
The (1) Conn_GetCipherInfo and (2) Conn_UsesSSL functions in src/ngircd/conn.c in ngIRCd 13 and 14, when SSL/TLS support is present and standalone mode is disabled, allow remote attackers to cause a …
|
NVD-CWE-Other
|
CVE-2009-4652
|
2023-11-7 11:04 |
2010-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272407
|
- |
|
apache
|
http_server
|
Integer overflow in the ap_proxy_send_fb function in proxy/proxy_util.c in mod_proxy in the Apache HTTP Server before 1.3.42 on 64-bit platforms allows remote origin servers to cause a denial of serv…
|
CWE-189
Numeric Errors
|
CVE-2010-0010
|
2023-11-7 11:04 |
2010-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272408
|
- |
|
debian
|
lintian
|
Lintian 1.23.x through 1.23.28, 1.24.x through 1.24.2.1, and 2.x before 2.3.2 allows remote attackers to execute arbitrary commands via shell metacharacters in filename arguments.
|
CWE-89
SQL Injection
|
CVE-2009-4015
|
2023-11-7 11:04 |
2010-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272409
|
- |
|
debian
|
lintian
|
Multiple format string vulnerabilities in Lintian 1.23.x through 1.23.28, 1.24.x through 1.24.2.1, and 2.x before 2.3.2 allow remote attackers to have an unspecified impact via vectors involving (1) …
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2009-4014
|
2023-11-7 11:04 |
2010-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
272410
|
- |
|
viewvc
|
viewvc
|
ViewVC before 1.1.3 composes the root listing view without using the authorizer for each root, which might allow remote attackers to discover private root names by reading this view.
|
CWE-200
Information Exposure
|
CVE-2010-0004
|
2023-11-7 11:04 |
2010-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|