|
287441
|
- |
|
apple
|
safari webkit
|
Use-after-free vulnerability in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, allows remote attackers to execute arbitrary code or caus…
|
CWE-399
Resource Management Errors
|
CVE-2010-1404
|
2018-10-11 04:57 |
2010-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287442
|
- |
|
vmware
|
tc_server
|
com.springsource.tcserver.serviceability.rmi.JmxSocketListener in VMware SpringSource tc Server Runtime 6.0.19 and 6.0.20 before 6.0.20.D, and 6.0.25.A before 6.0.25.A-SR01, does not properly enforce…
|
CWE-287
Improper Authentication
|
CVE-2010-1454
|
2018-10-11 04:57 |
2010-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287443
|
- |
|
ibm
|
advanced_management_module
|
The IBM BladeCenter with Advanced Management Module (AMM) firmware before bpet50g does not properly perform interrupt sharing for USB and iSCSI, which allows remote attackers to cause a denial of ser…
|
CWE-399
Resource Management Errors
|
CVE-2010-1460
|
2018-10-11 04:57 |
2010-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287444
|
- |
|
webasyst_llc
|
shop-script
|
Directory traversal vulnerability in WebAsyst Shop-Script FREE has unknown impact and attack vectors via the sub parameter.
|
CWE-22
Path Traversal
|
CVE-2010-1462
|
2018-10-11 04:57 |
2010-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287445
|
- |
|
webasyst_llc
|
shop-script
|
Multiple SQL injection vulnerabilities in WebAsyst Shop-Script FREE allow attackers to execute arbitrary SQL commands via the (1) add2cart, (2) c_id, (3) categoryID, (4) list_price, (5) name, (6) new…
|
CWE-89
SQL Injection
|
CVE-2010-1463
|
2018-10-11 04:57 |
2010-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287446
|
- |
|
webasyst
|
shop-script
|
Multiple cross-site scripting (XSS) vulnerabilities in WebAsyst Shop-Script FREE allow remote attackers to inject arbitrary web script or HTML via the (1) currency_id_left, (2) currency_id_right, (3)…
|
CWE-79
Cross-site Scripting
|
CVE-2010-1464
|
2018-10-11 04:57 |
2010-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287447
|
- |
|
pmwiki
|
pmwiki
|
Cross-site scripting (XSS) vulnerability in the table feature in PmWiki 2.2.15 allows remote authenticated users to inject arbitrary web script or HTML via the width attribute.
|
CWE-79
Cross-site Scripting
|
CVE-2010-1481
|
2018-10-11 04:57 |
2010-05-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287448
|
- |
|
irfanview
|
irfanview
|
IrfanView before 4.27 does not properly handle an unspecified integer variable during processing of PSD images, which allows remote attackers to cause a denial of service (application crash) or possi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-1509
|
2018-10-11 04:57 |
2010-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287449
|
- |
|
irfanview
|
irfanview
|
Heap-based buffer overflow in IrfanView before 4.27 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PSD image with RLE compre…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-1510
|
2018-10-11 04:57 |
2010-05-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287450
|
- |
|
kde
|
kget kde_sc
|
KGet 2.4.2 in KDE SC 4.0.0 through 4.4.3 does not properly request download confirmation from the user, which makes it easier for remote attackers to overwrite arbitrary files via a crafted metalink …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-1511
|
2018-10-11 04:57 |
2010-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|