|
303421
|
- |
|
opera
|
opera_browser
|
Multiple unspecified vulnerabilities in Opera before 10.54 have unknown impact and attack vectors related to (1) "extremely severe," (2) "highly severe," (3) "moderately severe," and (4) "less severe…
|
NVD-CWE-noinfo
|
CVE-2010-2421
|
2024-11-21 10:16 |
2010-06-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303422
|
- |
|
fenrir-inc
|
activegeckobrowser
|
Multiple unspecified vulnerabilities in Fenrir Inc. ActiveGeckoBrowser 1.0.0 and 1.0.5 alpha, a module for the Sleipnir web browser, allow remote attackers to cause a denial of service (crash) and po…
|
NVD-CWE-noinfo
|
CVE-2010-2420
|
2024-11-21 10:16 |
2010-06-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303423
|
- |
|
activewebsoftwares
|
ewebquiz
|
SQL injection vulnerability in eWebQuiz.asp in ActiveWebSoftwares.com eWebquiz 8 allows remote attackers to execute arbitrary SQL commands via the QuizType parameter, a different vector than CVE-2007…
|
CWE-89
SQL Injection
|
CVE-2010-2359
|
2024-11-21 10:16 |
2010-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303424
|
- |
|
jeffkilroy
|
nakid_cms
|
PHP remote file inclusion vulnerability in modules/catalog/upload_photo.php in Nakid CMS 0.5.2, when magic_quotes_gpc is disabled and register_globals is enabled, allows remote attackers to execute a…
|
CWE-94
Code Injection
|
CVE-2010-2358
|
2024-11-21 10:16 |
2010-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303425
|
- |
|
eicrasoft
|
eicra_realestate_script
|
SQL injection vulnerability in index.php in Eicra Realestate Script 1.0 and 1.6.0 allows remote attackers to execute arbitrary SQL commands via the p_id parameter. NOTE: some of these details are ob…
|
CWE-89
SQL Injection
|
CVE-2010-2357
|
2024-11-21 10:16 |
2010-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303426
|
- |
|
pilotgroup
|
elms_pro
|
Cross-site scripting (XSS) vulnerability in subscribe.php in Pilot Group (PG) eLMS Pro allows remote attackers to inject arbitrary web script or HTML via the course_id parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-2356
|
2024-11-21 10:16 |
2010-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303427
|
- |
|
pilotgroup
|
elms_pro
|
Cross-site scripting (XSS) vulnerability in error.php in Pilot Group (PG) eLMS Pro allows remote attackers to inject arbitrary web script or HTML via the message parameter. NOTE: the provenance of t…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2355
|
2024-11-21 10:16 |
2010-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303428
|
- |
|
pilotgroup
|
elms_pro
|
SQL injection vulnerability in subscribe.php in Pilot Group (PG) eLMS Pro allows remote attackers to execute arbitrary SQL commands via the course_id parameter.
|
CWE-89
SQL Injection
|
CVE-2010-2354
|
2024-11-21 10:16 |
2010-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303429
|
- |
|
yves_chedemois
|
cck
|
The Node Reference module in Content Construction Kit (CCK) module 6.x before 6.x-2.7 for Drupal does not perform access checks for the source field in the backend URL for the autocomplete widget, wh…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-2353
|
2024-11-21 10:16 |
2010-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303430
|
- |
|
karen_stevenson yves_chedemois
|
cck
|
The Node Reference module in Content Construction Kit (CCK) module 5.x before 5.x-1.11 and 6.x before 6.x-2.7 for Drupal does not perform access checks before displaying referenced nodes, which allow…
|
CWE-20
Improper Input Validation
|
CVE-2010-2352
|
2024-11-21 10:16 |
2010-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|