|
294801
|
- |
|
oscss
|
oscss
|
Directory traversal vulnerability in catalog/content.php in osCSS2 2.1.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the _ID parameter to (1) catalog/shopping_ca…
|
CWE-22
Path Traversal
|
CVE-2011-4713
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294802
|
- |
|
monoxide0184
|
oxide_webserver
|
Directory traversal vulnerability in Oxide WebServer allows remote attackers to read arbitrary files via a ..\ (dot dot backslash) in an HTTP request.
|
CWE-22
Path Traversal
|
CVE-2011-4712
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294803
|
- |
|
namazu
|
namazu
|
Multiple directory traversal vulnerabilities in namazu.cgi in Namazu before 2.0.16 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) lang or (2) result parameter.
|
CWE-22
Path Traversal
|
CVE-2011-4711
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294804
|
- |
|
getpixie lucidcrew
|
pixie
|
Multiple SQL injection vulnerabilities in Pixie CMS 1.01 through 1.04 allow remote attackers to execute arbitrary SQL commands via the (1) pixie_user parameter and (2) Referer HTTP header in a reques…
|
CWE-89
SQL Injection
|
CVE-2011-4710
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294805
|
- |
|
hotaru
|
search_plugin hotaru_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in Hotaru.php in the Search plugin 1.3 for Hotaru CMS allow remote attackers to inject arbitrary web script or HTML via the (1) SITE_NAME parameter…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4709
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294806
|
- |
|
ibm
|
rational_asset_manager
|
Cross-site scripting (XSS) vulnerability in IBM Rational Asset Manager before 7.5.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2011-4708
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294807
|
- |
|
sap
|
netweaver
|
Multiple cross-site scripting (XSS) vulnerabilities in the Virus Scan Interface in SAP Netweaver allow remote attackers to inject arbitrary web script or HTML via the (1) instname parameter to the Vs…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4707
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294808
|
- |
|
isc canonical debian
|
dhcp ubuntu_linux debian_linux
|
dhcpd in ISC DHCP 4.x before 4.2.3-P1 and 4.1-ESV before 4.1-ESV-R4 does not properly handle regular expressions in dhcpd.conf, which allows remote attackers to cause a denial of service (daemon cras…
|
CWE-20
Improper Input Validation
|
CVE-2011-4539
|
2024-11-21 10:32 |
2011-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294809
|
- |
|
phpwebsite
|
phpwebsite
|
Cross-site scripting (XSS) vulnerability in phpWebSite before 1.0.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2011-4265
|
2024-11-21 10:32 |
2011-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294810
|
- |
|
etomite
|
etomite
|
Cross-site scripting (XSS) vulnerability in Etomite before 1.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2011-4264
|
2024-11-21 10:32 |
2011-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|