|
300131
|
- |
|
mantisbt
|
mantisbt
|
Multiple cross-site scripting (XSS) vulnerabilities in MantisBT before 1.2.3 allow remote authenticated administrators to inject arbitrary web script or HTML via (1) a plugin name, related to manage_…
|
CWE-79
Cross-site Scripting
|
CVE-2010-3303
|
2024-11-21 10:18 |
2010-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300132
|
- |
|
xelerance
|
openswan
|
Buffer overflow in programs/pluto/xauth.c in the client in Openswan 2.6.25 through 2.6.28 might allow remote authenticated gateways to execute arbitrary code or cause a denial of service via long (1)…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-3302
|
2024-11-21 10:18 |
2010-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300133
|
- |
|
dustincowell
|
free_simple_cms
|
Multiple PHP remote file inclusion vulnerabilities in themes/default/index.php in Free Simple CMS 1.0 and earlier allow remote attackers to execute arbitrary PHP code via a URL in the (1) body, (2) f…
|
CWE-94
Code Injection
|
CVE-2010-3307
|
2024-11-21 10:18 |
2010-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300134
|
- |
|
linux fedoraproject suse opensuse debian canonical
|
linux_kernel fedora linux_enterprise_server opensuse linux_enterprise_desktop linux_enterprise_software_development_kit linux_enterprise_real_time_extension debian_linux ubunt…
|
Multiple integer overflows in the snd_ctl_new function in sound/core/control.c in the Linux kernel before 2.6.36-rc5-next-20100929 allow local users to cause a denial of service (heap memory corrupti…
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2010-3442
|
2024-11-21 10:18 |
2010-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300135
|
- |
|
linux suse opensuse debian canonical
|
linux_kernel linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit linux_enterprise_real_time_extension debian_linux ubuntu_linux
|
Integer signedness error in the pkt_find_dev_from_minor function in drivers/block/pktcdvd.c in the Linux kernel before 2.6.36-rc6 allows local users to obtain sensitive information from kernel memory…
|
CWE-476
NULL Pointer Dereference
|
CVE-2010-3437
|
2024-11-21 10:18 |
2010-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300136
|
- |
|
nokia
|
qt_creator
|
Qt Creator before 2.0.1 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
|
NVD-CWE-Other
|
CVE-2010-3374
|
2024-11-21 10:18 |
2010-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300137
|
- |
|
apache
|
subversion
|
authz.c in the mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion 1.5.x before 1.5.8 and 1.6.x before 1.6.13, when SVNPathAuthz short_circuit is enabled, does not prop…
|
CWE-16
Configuration
|
CVE-2010-3315
|
2024-11-21 10:18 |
2010-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300138
|
- |
|
clamav
|
clamav
|
Buffer overflow in the find_stream_bounds function in pdf.c in libclamav in ClamAV before 0.96.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-3434
|
2024-11-21 10:18 |
2010-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300139
|
- |
|
ffmpeg mplayerhq
|
libavcodec ffmpeg mplayer
|
flicvideo.c in libavcodec 0.6 and earlier in FFmpeg, as used in MPlayer and other products, allows remote attackers to execute arbitrary code via a crafted flic file, related to an "arbitrary offset …
|
CWE-94
Code Injection
|
CVE-2010-3429
|
2024-11-21 10:18 |
2010-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300140
|
- |
|
linux suse opensuse debian canonical
|
linux_kernel linux_enterprise_desktop linux_enterprise_server opensuse linux_enterprise_real_time_extension debian_linux ubuntu_linux
|
The hso_get_count function in drivers/net/usb/hso.c in the Linux kernel before 2.6.36-rc5 does not properly initialize a certain structure member, which allows local users to obtain potentially sensi…
|
CWE-200
Information Exposure
|
CVE-2010-3298
|
2024-11-21 10:18 |
2010-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|