|
294701
|
- |
|
john_godley
|
redirection_plugin
|
Multiple cross-site scripting (XSS) vulnerabilities in (1) view/admin/log_item.php and (2) view/admin/log_item_details.php in the Redirection plugin 2.2.9 for WordPress allow remote attackers to inje…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4562
|
2024-11-21 10:32 |
2011-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294702
|
- |
|
phorum
|
phorum
|
Cross-site scripting (XSS) vulnerability in admin.php in Phorum 5.2.18 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO to admin/index.php. NOTE: some of these detail…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4561
|
2024-11-21 10:32 |
2011-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294703
|
- |
|
drupal
|
petition_node_module
|
Cross-site scripting (XSS) vulnerability in the Petition Node module 6.x-1.x before 6.x-1.5 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4560
|
2024-11-21 10:32 |
2011-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294704
|
- |
|
vtiger
|
vtiger_crm
|
SQL injection vulnerability in the Calendar module in vTiger CRM 5.2.1 and earlier allows remote attackers to execute arbitrary SQL commands via the onlyforuser parameter in an index action to index.…
|
CWE-89
SQL Injection
|
CVE-2011-4559
|
2024-11-21 10:32 |
2011-11-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294705
|
- |
|
contao
|
contao_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in Contao before 2.10.2 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to index.php in a (1) teachers.html or (2) …
|
CWE-79
Cross-site Scripting
|
CVE-2011-4335
|
2024-11-21 10:32 |
2011-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294706
|
- |
|
dolibarr
|
dolibarr_erp\/crm
|
Multiple cross-site scripting (XSS) vulnerabilities in Dolibarr 3.1.0 allow remote attackers to inject arbitrary web script or HTML via (1) the username parameter in a setup action to admin/company.p…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4329
|
2024-11-21 10:32 |
2011-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294707
|
- |
|
rubyonrails
|
ruby_on_rails rails
|
Cross-site scripting (XSS) vulnerability in the i18n translations helper method in Ruby on Rails 3.0.x before 3.0.11 and 3.1.x before 3.1.2, and the rails_xss plugin in Ruby on Rails 2.3.x, allows re…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4319
|
2024-11-21 10:32 |
2011-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294708
|
- |
|
combodo
|
itop
|
Multiple cross-site scripting (XSS) vulnerabilities in iTop (aka IT Operations Portal) 1.1.181 and 1.2.0-RC-282 allow remote attackers to inject arbitrary web script or HTML via (1) a crafted company…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4275
|
2024-11-21 10:32 |
2011-11-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294709
|
- |
|
realnetworks
|
realplayer
|
Unspecified vulnerability in RealNetworks RealPlayer before 15.0.0 allows remote attackers to execute arbitrary code via a crafted MP4 file.
|
NVD-CWE-noinfo
|
CVE-2011-4262
|
2024-11-21 10:32 |
2011-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294710
|
- |
|
realnetworks
|
realplayer
|
RealNetworks RealPlayer before 15.0.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via crafted video dimensions in an MP4 file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-4261
|
2024-11-21 10:32 |
2011-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|