|
298471
|
- |
|
polyvision
|
roomwizard_firmware roomwizard
|
The PolyVision RoomWizard with firmware 3.2.3 has a default password of roomwizard for the administrator account, which makes it easier for remote attackers to obtain console access via an HTTP sessi…
|
CWE-255
Credentials Management
|
CVE-2011-0423
|
2024-11-21 10:23 |
2011-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298472
|
- |
|
ibm
|
websphere_application_server
|
The Administrative Console component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.35 and 7.0 before 7.0.0.15 does not properly restrict access to console servlets, which allows remote a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-0316
|
2024-11-21 10:23 |
2011-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298473
|
- |
|
ibm
|
websphere_application_server
|
Cross-site scripting (XSS) vulnerability in the Servlet Engine / Web Container component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.35 and 7.0 before 7.0.0.15 allows remote attackers …
|
CWE-79
Cross-site Scripting
|
CVE-2011-0315
|
2024-11-21 10:23 |
2011-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298474
|
- |
|
ibm
|
websphere_mq
|
Heap-based buffer overflow in IBM WebSphere MQ 6.0 before 6.0.2.11 and 7.0 before 7.0.1.5 allows remote authenticated users to execute arbitrary code or cause a denial of service (queue manager crash…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-0314
|
2024-11-21 10:23 |
2011-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298475
|
- |
|
microsoft
|
data_access_components windows_data_access_components
|
Microsoft Data Access Components (MDAC) 2.8 SP1 and SP2, and Windows Data Access Components (WDAC) 6.0, does not properly validate memory allocation for internal data structures, which allows remote …
|
CWE-20
Improper Input Validation
|
CVE-2011-0027
|
2024-11-21 10:23 |
2011-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298476
|
- |
|
microsoft
|
data_access_components windows_data_access_components
|
Integer signedness error in the SQLConnectW function in an ODBC API (odbc32.dll) in Microsoft Data Access Components (MDAC) 2.8 SP1 and SP2, and Windows Data Access Components (WDAC) 6.0, allows remo…
|
CWE-189
Numeric Errors
|
CVE-2011-0026
|
2024-11-21 10:23 |
2011-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298477
|
- |
|
phenotype-cms
|
phenotype_cms
|
SQL injection vulnerability in the store function in _phenotype/system/class/PhenoTypeDataObject.class.php in Phenotype CMS 3.0 allows remote attackers to execute arbitrary SQL commands via a crafted…
|
CWE-89
SQL Injection
|
CVE-2011-0407
|
2024-11-21 10:23 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298478
|
- |
|
wellintech
|
kingview
|
Heap-based buffer overflow in HistorySvr.exe in WellinTech KingView 6.53 allows remote attackers to execute arbitrary code via a long request to TCP port 777.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-0406
|
2024-11-21 10:23 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298479
|
- |
|
phpgedview
|
phpgedview
|
Directory traversal vulnerability in module.php in PhpGedView 4.2.3 and possibly other versions, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via directory trave…
|
CWE-22
Path Traversal
|
CVE-2011-0405
|
2024-11-21 10:23 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298480
|
- |
|
netsupport
|
netsupport_manager_agent
|
Stack-based buffer overflow in NetSupport Manager Agent for Linux 11.00, for Solaris 9.50, and for Mac OS X 11.00 allows remote attackers to execute arbitrary code via a long control hostname to TCP …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-0404
|
2024-11-21 10:23 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|