|
296761
|
- |
|
citrix
|
access_gateway
|
The NSEPA.NsepaCtrl.1 ActiveX control in nsepa.ocx in Citrix Access Gateway Enterprise Edition 8.1 before 8.1-67.7, 9.0 before 9.0-70.5, and 9.1 before 9.1-96.4 attempts to validate signed DLLs by ch…
|
CWE-20
Improper Input Validation
|
CVE-2011-2883
|
2024-11-21 10:29 |
2011-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296762
|
- |
|
citrix
|
access_gateway
|
Stack-based buffer overflow in the NSEPA.NsepaCtrl.1 ActiveX control in nsepa.ocx in Citrix Access Gateway Enterprise Edition 8.1 before 8.1-67.7, 9.0 before 9.0-70.5, and 9.1 before 9.1-96.4 allows …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-2882
|
2024-11-21 10:29 |
2011-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296763
|
5.9 |
MEDIUM
Network
|
apache redhat
|
wss4j cxf jboss_enterprise_soa_platform jboss_enterprise_application_platform jboss_portal jboss_enterprise_web_platform jboss_business_rules_management_system jboss_enterprise_a…
|
The implementations of PKCS#1 v1.5 key transport mechanism for XMLEncryption in JBossWS and Apache WSS4J before 1.6.5 is susceptible to a Bleichenbacher attack.
|
CWE-327
Use of a Broken or Risky Cryptographic Algorithm
|
CVE-2011-2487
|
2024-11-21 10:28 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296764
|
5.5 |
MEDIUM
Local
|
linux canonical
|
linux_kernel ubuntu_linux
|
The Linux kernel from v2.3.36 before v2.6.39 allows local unprivileged users to cause a denial of service (memory consumption) by triggering creation of PTE pages.
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2011-2498
|
2024-11-21 10:28 |
2020-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296765
|
6.1 |
MEDIUM
Network
|
mambo-foundation
|
mambo_cms
|
Mambo CMS through 4.6.5 has multiple XSS.
|
CWE-79
Cross-site Scripting
|
CVE-2011-2499
|
2024-11-21 10:28 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296766
|
2.4 |
LOW
Physics
|
google
|
android
|
The Bluetooth stack in Android before 2.3.6 allows a physically proximate attacker to obtain contact information via an AT phonebook transfer.
|
CWE-200
Information Exposure
|
CVE-2011-2343
|
2024-11-21 10:28 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296767
|
6.5 |
MEDIUM
Network
|
mozilla
|
firefox
|
Mozilla Firefox prior to 3.6 has a DoS vulnerability due to an issue in the validation of certificates.
|
CWE-295
Improper Certificate Validation
|
CVE-2011-2669
|
2024-11-21 10:28 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296768
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
Mozilla Firefox through 1.5.0.3 has a vulnerability in processing the content-length header
|
NVD-CWE-noinfo
|
CVE-2011-2668
|
2024-11-21 10:28 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296769
|
9.8 |
CRITICAL
Network
|
drupal
|
drupal data
|
An SQL Injection vulnerability exists in Drupal 6.20 with Data 6.x-1.0-alpha14 due to insufficient sanitization of table names or column names.
|
CWE-89
SQL Injection
|
CVE-2011-2715
|
2024-11-21 10:28 |
2020-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
296770
|
6.1 |
MEDIUM
Network
|
drupal
|
drupal data
|
A Cross-Site Scripting vulnerability exists in Drupal 6.20 with Data 6.x-1.0-alpha14 due to insufficient sanitization of table descriptions, field names, or labels before display.
|
CWE-79
Cross-site Scripting
|
CVE-2011-2714
|
2024-11-21 10:28 |
2020-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|