|
299401
|
- |
|
ibm
|
lotus_mobile_connect
|
The Connection Manager in IBM Lotus Mobile Connect before 6.1.4 does not properly maintain a certain reference count, which allows remote authenticated users to cause a denial of service (IP address …
|
CWE-399
Resource Management Errors
|
CVE-2010-4593
|
2024-11-21 10:21 |
2010-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299402
|
- |
|
ibm
|
lotus_mobile_connect
|
The Mobile Network Connections functionality in the Connection Manager in IBM Lotus Mobile Connect before 6.1.4, when HTTP Access Services (HTTP-AS) is enabled, does not properly handle failed attemp…
|
CWE-399
Resource Management Errors
|
CVE-2010-4592
|
2024-11-21 10:21 |
2010-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299403
|
- |
|
ibm
|
lotus_mobile_connect
|
The Connection Manager in IBM Lotus Mobile Connect (LMC) before 6.1.4, when HTTP Access Services (HTTP-AS) is enabled, does not delete LTPA tokens in response to use of the iNotes Logoff button, whic…
|
CWE-287
Improper Authentication
|
CVE-2010-4591
|
2024-11-21 10:21 |
2010-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299404
|
- |
|
ibm
|
lotus_mobile_connect
|
Cross-site scripting (XSS) vulnerability in HTTP Access Services (HTTP-AS) in the Connection Manager in IBM Lotus Mobile Connect (LMC) before 6.1.4 allows remote attackers to inject arbitrary web scr…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4590
|
2024-11-21 10:21 |
2010-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299405
|
- |
|
ibm
|
enovia
|
Cross-site scripting (XSS) vulnerability in IBM ENOVIA 6 allows remote attackers to inject arbitrary web script or HTML via vectors related to the emxFramework.FilterParameterPattern property.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4589
|
2024-11-21 10:21 |
2010-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299406
|
- |
|
vmware
|
esxi
|
The Update Installer in VMware ESXi 4.1, when a modified sfcb.cfg is present, does not properly configure the SFCB authentication mode, which allows remote attackers to obtain access via an arbitrary…
|
CWE-287
Improper Authentication
|
CVE-2010-4573
|
2024-11-21 10:21 |
2010-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299407
|
- |
|
opera
|
opera_browser
|
Opera before 11.00 on Windows does not properly implement the Insecure Third Party Module warning message, which might make it easier for user-assisted remote attackers to have an unspecified impact …
|
NVD-CWE-Other
|
CVE-2010-4587
|
2024-11-21 10:21 |
2010-12-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299408
|
- |
|
opera
|
opera_browser
|
The default configuration of Opera before 11.00 enables WebSockets functionality, which has unspecified impact and remote attack vectors, possibly a related issue to CVE-2010-4508.
|
CWE-16
Configuration
|
CVE-2010-4586
|
2024-11-21 10:21 |
2010-12-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299409
|
- |
|
opera
|
opera_browser
|
Unspecified vulnerability in the auto-update functionality in Opera before 11.00 allows remote attackers to cause a denial of service (application crash) by triggering an Opera Unite update.
|
NVD-CWE-noinfo
|
CVE-2010-4585
|
2024-11-21 10:21 |
2010-12-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299410
|
- |
|
opera
|
opera_browser
|
Opera before 11.00, when Opera Turbo is used, does not properly present information about problematic X.509 certificates on https web sites, which might make it easier for remote attackers to spoof t…
|
CWE-310
Cryptographic Issues
|
CVE-2010-4584
|
2024-11-21 10:21 |
2010-12-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|