|
297261
|
- |
|
wireshark
|
wireshark
|
The bytes_repr_len function in Wireshark 1.4.5 uses an incorrect pointer argument, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via arbi…
|
NVD-CWE-Other
|
CVE-2011-1956
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297262
|
- |
|
postrev
|
post_revolution
|
Multiple cross-site request forgery (CSRF) vulnerabilities in Post Revolution 0.8.0c-2 and earlier allow remote attackers to hijack the authentication of arbitrary users for requests to (1) ajax-webl…
|
CWE-352
Origin Validation Error
|
CVE-2011-1954
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297263
|
- |
|
postrev
|
post_revolution
|
Multiple cross-site scripting (XSS) vulnerabilities in common.php in Post Revolution before 0.8.0c-2 allow remote attackers to inject arbitrary web script or HTML via an attribute of a (1) P, a (2) S…
|
CWE-79
Cross-site Scripting
|
CVE-2011-1953
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297264
|
- |
|
postrev
|
post_revolution
|
common.php in Post Revolution before 0.8.0c-2 allows remote attackers to cause a denial of service (infinite loop) via malformed HTML markup, as demonstrated by an a< sequence.
|
CWE-399
Resource Management Errors
|
CVE-2011-1952
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297265
|
- |
|
plone
|
plone
|
plone.app.users in Plone 4.0 and 4.1 allows remote authenticated users to modify the properties of arbitrary accounts via unspecified vectors, as exploited in the wild in June 2011.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-1950
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297266
|
- |
|
plone
|
plone
|
Cross-site scripting (XSS) vulnerability in the safe_html filter in Products.PortalTransforms in Plone 2.1 through 4.1 allows remote authenticated users to inject arbitrary web script or HTML via uns…
|
CWE-79
Cross-site Scripting
|
CVE-2011-1949
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297267
|
- |
|
plone
|
plone
|
Cross-site scripting (XSS) vulnerability in Plone 4.1 and earlier allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
|
CWE-79
Cross-site Scripting
|
CVE-2011-1948
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297268
|
- |
|
apache
|
subversion
|
The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion 1.5.x and 1.6.x before 1.6.17, when the SVNPathAuthz short_circuit option is disabled, does not properly enforce…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-1921
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297269
|
- |
|
vmware
|
workstation player fusion esx esxi
|
Race condition in mount.vmhgfs in the VMware Host Guest File System (HGFS) in VMware Workstation 7.1.x before 7.1.4, VMware Player 3.1.x before 3.1.4, VMware Fusion 3.1.x before 3.1.3, VMware ESXi 3.…
|
CWE-362
Race Condition
|
CVE-2011-1787
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297270
|
- |
|
apache canonical debian fedoraproject apple
|
subversion ubuntu_linux debian_linux fedora mac_os_x
|
The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion 1.5.x and 1.6.x before 1.6.17, when the SVNPathAuthz short_circuit option is enabled, allows remote attackers to…
|
NVD-CWE-noinfo
|
CVE-2011-1783
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|