|
287501
|
- |
|
sun
|
jre jdk
|
Per: http://www.oracle.com/technology/deploy/security/alerts/alert-cve-2010-0886.html
'Notes:
1. Affects the Windows platform only. CVSS 10.0 score assumes running with Administrator privile…
|
NVD-CWE-noinfo
|
CVE-2010-0886
|
2018-10-11 04:55 |
2010-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287502
|
- |
|
bbsmax
|
bbsmax
|
Cross-site scripting (XSS) vulnerability in post.aspx in Max Network Technology BBSMAX 3.0, 4.1, and 4.2 allows remote attackers to inject arbitrary web script or HTML via the action parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-0947
|
2018-10-11 04:55 |
2010-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287503
|
- |
|
natychmiast-cms
|
natychmiast-cms
|
Multiple cross-site scripting (XSS) vulnerabilities in Natychmiast CMS allow remote attackers to inject arbitrary web script or HTML via the id_str parameter to (1) index.php and (2) a_index.php.
|
CWE-79
Cross-site Scripting
|
CVE-2010-0949
|
2018-10-11 04:55 |
2010-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287504
|
- |
|
natychmiast-cms
|
natychmiast-cms
|
Multiple SQL injection vulnerabilities in Natychmiast CMS allow remote attackers to execute arbitrary SQL commands via the id_str parameter to (1) index.php and (2) a_index.php.
|
CWE-89
SQL Injection
|
CVE-2010-0950
|
2018-10-11 04:55 |
2010-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287505
|
- |
|
ibm
|
enovia_smarteam
|
Cross-site scripting (XSS) vulnerability in WebEditor/Authentication/LoginPage.aspx in IBM ENOVIA SmarTeam 5 allows remote attackers to inject arbitrary web script or HTML via the errMsg parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-0959
|
2018-10-11 04:55 |
2010-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287506
|
- |
|
apple
|
airport_express airport_extreme time_capsule
|
The FTP proxy server in Apple AirPort Express, AirPort Extreme, and Time Capsule with firmware 7.5 does not restrict the IP address and port specified in a PORT command from a client, which allows re…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-0962
|
2018-10-11 04:55 |
2010-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287507
|
- |
|
pulsecms
|
pulse_cms
|
Multiple unspecified vulnerabilities in Pulse CMS before 1.2.3 allow (1) remote attackers to write to arbitrary files and execute arbitrary PHP code via vectors related to improper handling of login …
|
CWE-94
Code Injection
|
CVE-2010-0988
|
2018-10-11 04:55 |
2010-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287508
|
- |
|
pulsecms
|
pulse_cms
|
Directory traversal vulnerability in delete.php in Pulse CMS before 1.2.3 allows remote authenticated users to delete arbitrary files via directory traversal sequences in the f parameter.
|
CWE-22
Path Traversal
|
CVE-2010-0989
|
2018-10-11 04:55 |
2010-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287509
|
- |
|
creative
|
autoupdate_engine_activex_control autoupdate
|
Stack-based buffer overflow in Creative Software AutoUpdate Engine ActiveX Control 2.0.12.0, as used in Creative Software AutoUpdate 1.40.01, allows remote attackers to execute arbitrary code via vec…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-0990
|
2018-10-11 04:55 |
2010-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287510
|
- |
|
enlightenment
|
imlib2
|
Multiple heap-based buffer overflows in imlib2 1.4.3 allow context-dependent attackers to execute arbitrary code via a crafted (1) ARGB, (2) XPM, or (3) BMP file, related to the IMAGE_DIMENSIONS_OK m…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-0991
|
2018-10-11 04:55 |
2010-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|