|
287521
|
- |
|
kde
|
kde_sc
|
Directory traversal vulnerability in KGet in KDE SC 4.0.0 through 4.4.3 allows remote attackers to create arbitrary files via directory traversal sequences in the name attribute of a file element in …
|
CWE-22
Path Traversal
|
CVE-2010-1000
|
2018-10-11 04:55 |
2010-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287522
|
- |
|
kde
|
kde_sc
|
Per: http://www.kde.org/info/security/advisory-20100513-1.txt
'Patches have been committed to the KDE Subversion repository in the
following revision numbers:
4.3 branch: r1126227
…
|
CWE-22
Path Traversal
|
CVE-2010-1000
|
2018-10-11 04:55 |
2010-05-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287523
|
- |
|
efrontlearning
|
efront
|
Directory traversal vulnerability in www/editor/tiny_mce/langs/language.php in eFront 3.5.x through 3.5.5 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in th…
|
CWE-22
Path Traversal
|
CVE-2010-1003
|
2018-10-11 04:55 |
2010-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287524
|
- |
|
hp
|
insight_virtual_machine_management
|
Multiple unspecified vulnerabilities in HP Virtual Machine Manager (VMM) before 6.0 allow remote authenticated users to execute arbitrary code via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2010-1035
|
2018-10-11 04:55 |
2010-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287525
|
- |
|
hp ibm sgi
|
nfs\/oncplus aix vios irix
|
Format string vulnerability in the _msgout function in rpc.pcnfsd in IBM AIX 6.1, 5.3, and earlier; IBM VIOS 2.1, 1.5, and earlier; NFS/ONCplus B.11.31_09 and earlier on HP HP-UX B.11.11, B.11.23, an…
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2010-1039
|
2018-10-11 04:55 |
2010-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287526
|
- |
|
parscms
|
parscms
|
Multiple SQL injection vulnerabilities in ParsCMS allow remote attackers to execute arbitrary SQL commands via the RP parameter to (1) fa_default.asp and (2) en_default.asp.
|
CWE-89
SQL Injection
|
CVE-2010-1054
|
2018-10-11 04:55 |
2010-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287527
|
- |
|
sphere.xlentprojects
|
spherecms
|
SQL injection vulnerability in archive.php in XlentProjects SphereCMS 1.1 alpha allows remote attackers to execute arbitrary SQL commands via encoded null bytes ("%00") in the view parameter, which b…
|
CWE-89
SQL Injection
|
CVE-2010-1078
|
2018-10-11 04:55 |
2010-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287528
|
- |
|
linux
|
linux_kernel
|
The processcompl_compat function in drivers/usb/core/devio.c in Linux kernel 2.6.x through 2.6.32, and possibly other versions, does not clear the transfer buffer before returning to userspace when a…
|
CWE-399
Resource Management Errors
|
CVE-2010-1083
|
2018-10-11 04:55 |
2010-04-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287529
|
- |
|
apple
|
safari
|
Integer overflow in Apple Safari allows remote attackers to bypass intended port restrictions on outbound TCP connections via a port number outside the range of the unsigned short data type, as demon…
|
CWE-189 CWE-264
Numeric Errors Permissions, Privileges, and Access Controls
|
CVE-2010-1099
|
2018-10-11 04:55 |
2010-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
287530
|
- |
|
arora-browser
|
arora
|
Integer overflow in Arora allows remote attackers to bypass intended port restrictions on outbound TCP connections via a port number outside the range of the unsigned short data type, as demonstrated…
|
CWE-189
Numeric Errors
|
CVE-2010-1100
|
2018-10-11 04:55 |
2010-03-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|