|
301151
|
- |
|
andreas_kiefer
|
ke_yac
|
SQL injection vulnerability in the Yet Another Calendar (ke_yac) extension before 1.1.2 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2010-4891
|
2024-11-21 10:22 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301152
|
- |
|
andreas_kiefer
|
ke_yac
|
Cross-site scripting (XSS) vulnerability in the Yet Another Calendar (ke_yac) extension before 1.1.2 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4890
|
2024-11-21 10:22 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301153
|
- |
|
marco_hezel
|
hm_tinymarket
|
Unspecified vulnerability in the Tiny Market (hm_tinymarket) extension 0.5.4 and earlier for TYPO3 allows attackers to execute arbitrary code via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2010-4889
|
2024-11-21 10:22 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301154
|
7.5 |
HIGH
Network
|
openbsd
|
openbsd
|
It was found in FreeBSD 8.0, 6.3 and 4.9, and OpenBSD 4.6 that a null pointer dereference in ftpd/popen.c may lead to remote denial of service of the ftpd service.
|
-
|
CVE-2010-4816
|
2024-11-21 10:21 |
2021-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301155
|
5.3 |
MEDIUM
Network
|
status
|
statusnet
|
statusnet through 2010 allows attackers to spoof syslog messages via newline injection attacks.
|
CWE-74
Injection
|
CVE-2010-4658
|
2024-11-21 10:21 |
2020-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301156
|
9.8 |
CRITICAL
Network
|
coppermine-gallery
|
coppermine_gallery
|
Coppermine gallery before 1.4.26 has an input validation vulnerability that allows for code execution.
|
CWE-20
Improper Input Validation
|
CVE-2010-4815
|
2024-11-21 10:21 |
2020-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301157
|
6.1 |
MEDIUM
Network
|
pmwiki
|
pmwiki
|
PmWiki before 2.2.21 has XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4662
|
2024-11-21 10:21 |
2020-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301158
|
6.1 |
MEDIUM
Network
|
status
|
statusnet
|
Cross-site scripting (XSS) vulnerability in statusnet through 2010 in error message contents.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4659
|
2024-11-21 10:21 |
2019-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301159
|
9.8 |
CRITICAL
Network
|
status
|
statusnet
|
Unspecified vulnerability in statusnet through 2010 due to the way addslashes are used in SQL string escapes..
|
CWE-20
Improper Input Validation
|
CVE-2010-4660
|
2024-11-21 10:21 |
2019-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301160
|
5.5 |
MEDIUM
Local
|
pithos_project debian
|
pithos debian_linux
|
pithos before 0.3.5 allows overwrite of arbitrary files via symlinks.
|
CWE-59
Link Following
|
CVE-2010-4817
|
2024-11-21 10:21 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|