|
302331
|
- |
|
oracle
|
sun_microsystems_sunscreen_firewall
|
Multiple untrusted search path vulnerabilities in the Java Service in Sun Microsystems SunScreen Firewall on SunOS 5.9 allow local users to execute arbitrary code via a modified (1) PATH or (2) LD_LI…
|
NVD-CWE-Other
|
CVE-2011-0902
|
2024-11-21 10:25 |
2011-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302332
|
- |
|
erick_woods
|
terminal_server_client
|
Multiple stack-based buffer overflows in the tsc_launch_remote function (src/support.c) in Terminal Server Client (tsclient) 0.150, and possibly other versions, allow user-assisted remote attackers t…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-0901
|
2024-11-21 10:25 |
2011-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302333
|
- |
|
erick_woods
|
terminal_server_client
|
Stack-based buffer overflow in the tsc_launch_remote function (src/support.c) in Terminal Server Client (tsclient) 0.150, and possibly other versions, allows user-assisted remote attackers to execute…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-0900
|
2024-11-21 10:25 |
2011-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302334
|
- |
|
johan_lindskog
|
aes_encryption_module
|
The AES encryption module 7.x-1.4 for Drupal leaves certain debugging code enabled in release, which records the plaintext password of the last logged-in user and allows remote attackers to gain priv…
|
NVD-CWE-Other
|
CVE-2011-0899
|
2024-11-21 10:25 |
2011-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302335
|
7.0 |
HIGH
Local
|
linux
|
linux_kernel
|
Integer signedness error in the btrfs_ioctl_space_info function in the Linux kernel 2.6.37 allows local users to cause a denial of service (heap-based buffer overflow) or possibly have unspecified ot…
|
CWE-362 CWE-787
Race Condition Out-of-bounds Write
|
CVE-2011-0699
|
2024-11-21 10:24 |
2020-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302336
|
8.8 |
HIGH
Network
|
batavi
|
batavi
|
Batavi before 1.0 has CSRF.
|
CWE-352
Origin Validation Error
|
CVE-2011-0525
|
2024-11-21 10:24 |
2020-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302337
|
7.5 |
HIGH
Network
|
weborf_project debian
|
weborf debian_linux
|
Weborf before 0.12.5 is affected by a Denial of Service (DOS) due to malformed fields in HTTP.
|
CWE-20
Improper Input Validation
|
CVE-2011-0529
|
2024-11-21 10:24 |
2019-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302338
|
9.8 |
CRITICAL
Network
|
gksu-polkit_project debian
|
gksu-polkit debian_linux
|
In gksu-polkit before 0.0.3, the source file for xauth may contain arbitrary commands that may allow an attacker to overtake an administrator X11 session.
|
CWE-20
Improper Input Validation
|
CVE-2011-0703
|
2024-11-21 10:24 |
2019-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302339
|
6.1 |
MEDIUM
Network
|
phpbb debian
|
phpbb debian_linux
|
phpbb 3.0.x-3.0.6 has an XSS vulnerability via the [flash] BB tag.
|
CWE-79
Cross-site Scripting
|
CVE-2011-0544
|
2024-11-21 10:24 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302340
|
8.8 |
HIGH
Network
|
suse
|
studio_onsite_appliance studio_onsite
|
A vulnerability in the listing of available software of SUSE Studio Onsite, SUSE Studio Onsite 1.1 Appliance allows authenticated users to execute arbitrary SQL statements via SQL injection. Affected…
|
CWE-89
SQL Injection
|
CVE-2011-0467
|
2024-11-21 10:24 |
2018-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|