|
287561
|
- |
|
emc
|
homebase_server
|
Per: http://seclists.org/bugtraq/2010/Feb/222
Affected products:
EMC HomeBase Server version 6.2.x
EMC HomeBase Server version 6.3.x
|
CWE-22
Path Traversal
|
CVE-2010-0620
|
2018-10-11 04:53 |
2010-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287562
|
- |
|
gnu
|
cpio tar
|
Heap-based buffer overflow in the rmt_read__ function in lib/rtapelib.c in the rmt client functionality in GNU tar before 1.23 and GNU cpio before 2.11 allows remote rmt servers to cause a denial of …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-0624
|
2018-10-11 04:53 |
2010-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287563
|
- |
|
novell
|
netware_ftp_server netware
|
Stack-based buffer overflow in NWFTPD.nlm before 5.10.01 in the FTP server in Novell NetWare 5.1 through 6.5 SP8 allows remote authenticated users to cause a denial of service (daemon crash) or possi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-0625
|
2018-10-11 04:53 |
2010-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287564
|
- |
|
ca
|
ehealth_performance_manager
|
Cross-site scripting (XSS) vulnerability in CA eHealth Performance Manager 6.0.x through 6.2.x, when malicious HTML detection is disabled, allows remote attackers to inject arbitrary web script or HT…
|
CWE-79
Cross-site Scripting
|
CVE-2010-0640
|
2018-10-11 04:53 |
2010-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287565
|
- |
|
michalin
|
kr_media_pogodny_cms
|
SQL injection vulnerability in index.php in KR MEDIA Pogodny CMS allows remote attackers to execute arbitrary SQL commands via the id parameter in a niusy action.
|
CWE-89
SQL Injection
|
CVE-2010-0671
|
2018-10-11 04:53 |
2010-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287566
|
- |
|
apache
|
activemq
|
Cross-site scripting (XSS) vulnerability in createDestination.action in Apache ActiveMQ before 5.3.1 allows remote authenticated users to inject arbitrary web script or HTML via the JMSDestination pa…
|
CWE-79
Cross-site Scripting
|
CVE-2010-0684
|
2018-10-11 04:53 |
2010-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287567
|
- |
|
digium
|
asterisk
|
The design of the dialplan functionality in Asterisk Open Source 1.2.x, 1.4.x, and 1.6.x; and Asterisk Business Edition B.x.x and C.x.x, when using the ${EXTEN} channel variable and wildcard pattern …
|
NVD-CWE-Other
|
CVE-2010-0685
|
2018-10-11 04:53 |
2010-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287568
|
- |
|
datev
|
base_system
|
The ExecuteExe method in the DVBSExeCall Control ActiveX control 1.0.0.1 in DVBSExeCall.ocx in DATEV Base System (aka Grundpaket Basis) allows remote attackers to execute arbitrary commands via unspe…
|
NVD-CWE-Other
|
CVE-2010-0689
|
2018-10-11 04:53 |
2010-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287569
|
- |
|
datev
|
base_system
|
Per: http://cwe.mitre.org/data/definitions/77.html
"CWE-77: Improper Sanitization of Special Elements used in a Command ('Command Injection')"
|
NVD-CWE-Other
|
CVE-2010-0689
|
2018-10-11 04:53 |
2010-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287570
|
- |
|
portwise
|
ssl_vpn
|
Cross-site scripting (XSS) vulnerability in wa/auth in PortWise SSL VPN 4.6 allows remote attackers to inject arbitrary web script or HTML via the reloadFrame parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-0703
|
2018-10-11 04:53 |
2010-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|