|
287501
|
- |
|
datev
|
base_system
|
Per: http://cwe.mitre.org/data/definitions/77.html
"CWE-77: Improper Sanitization of Special Elements used in a Command ('Command Injection')"
|
NVD-CWE-Other
|
CVE-2010-0689
|
2018-10-11 04:53 |
2010-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287502
|
- |
|
portwise
|
ssl_vpn
|
Cross-site scripting (XSS) vulnerability in wa/auth in PortWise SSL VPN 4.6 allows remote attackers to inject arbitrary web script or HTML via the reloadFrame parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-0703
|
2018-10-11 04:53 |
2010-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287503
|
- |
|
avast
|
avast_antivirus_home avast_antivirus_professional
|
Aavmker4.sys in avast! 4.8 through 4.8.1368.0 and 5.0 before 5.0.418.0 running on Windows 2000 and XP does not properly validate input to IOCTL 0xb2d60030, which allows local users to cause a denial …
|
CWE-20
Improper Input Validation
|
CVE-2010-0705
|
2018-10-11 04:53 |
2010-02-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287504
|
- |
|
zenoss
|
zenoss
|
Multiple cross-site request forgery (CSRF) vulnerabilities in Zenoss 2.3.3, and other versions before 2.5, allow remote attackers to hijack the authentication of an administrator for (1) requests tha…
|
CWE-352
Origin Validation Error
|
CVE-2010-0713
|
2018-10-11 04:53 |
2010-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287505
|
- |
|
ibm
|
websphere_portal lotus_web_content_management lotus_workplace_web_content_management lotus_quickr
|
Cross-site scripting (XSS) vulnerability in login.jsp in IBM WebSphere Portal, IBM Lotus Web Content Management (WCM), and IBM Lotus Workplace Web Content Management 5.1.0.0 through 5.1.0.5, 6.0.0.0 …
|
CWE-79
Cross-site Scripting
|
CVE-2010-0714
|
2018-10-11 04:53 |
2010-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287506
|
- |
|
ibm
|
websphere_portal lotus_web_content_management lotus_workplace_web_content_management lotus_quickr
|
Open redirect vulnerability in login.jsp in IBM WebSphere Portal, IBM Lotus Web Content Management (WCM), and IBM Lotus Workplace Web Content Management 5.1.0.0 through 5.1.0.5, 6.0.0.0 through 6.0.0…
|
NVD-CWE-Other
|
CVE-2010-0715
|
2018-10-11 04:53 |
2010-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287507
|
- |
|
microsoft
|
sharepoint_server
|
_layouts/Upload.aspx in the Documents module in Microsoft SharePoint before 2010 uses URLs with the same hostname and port number for a web site's primary files and individual users' uploaded files (…
|
CWE-79
Cross-site Scripting
|
CVE-2010-0716
|
2018-10-11 04:53 |
2010-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287508
|
- |
|
redhat
|
enterprise_linux enterprise_linux_desktop
|
The MMIO instruction decoder in the Xen hypervisor in the Linux kernel 2.6.18 in Red Hat Enterprise Linux (RHEL) 5 allows guest OS users to cause a denial of service (32-bit guest OS crash) via vecto…
|
CWE-20
Improper Input Validation
|
CVE-2010-0730
|
2018-10-11 04:53 |
2010-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287509
|
- |
|
redhat
|
enterprise_linux enterprise_linux_desktop
|
Per: http://secunia.com/advisories/39649
'Successful exploitation requires a 32bit system and access to an MMIO region.'
|
CWE-20
Improper Input Validation
|
CVE-2010-0730
|
2018-10-11 04:53 |
2010-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287510
|
- |
|
curl
|
libcurl
|
content_encoding.c in libcurl 7.10.5 through 7.19.7, when zlib is enabled, does not properly restrict the amount of callback data sent to an application that requests automatic decompression, which m…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-0734
|
2018-10-11 04:53 |
2010-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|