|
300131
|
- |
|
poppler
|
poppler
|
The PostScriptFunction::PostScriptFunction function in poppler/Function.cc in the PDF parser in poppler 0.8.7 and possibly other versions up to 0.15.1, and possibly other products, allows context-dep…
|
CWE-20
Improper Input Validation
|
CVE-2010-3703
|
2024-11-21 10:19 |
2010-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300132
|
- |
|
freedesktop xpdfreader apple fedoraproject opensuse suse debian redhat canonical
|
poppler xpdf cups fedora opensuse linux_enterprise_server debian_linux enterprise_linux_server enterprise_linux_workstation enterprise_linux_desktop ubuntu_linux
|
The Gfx::getPos function in the PDF parser in xpdf before 3.02pl5, poppler 0.8.7 and possibly other versions up to 0.15.1, CUPS, kdegraphics, and possibly other products allows context-dependent atta…
|
CWE-476
NULL Pointer Dereference
|
CVE-2010-3702
|
2024-11-21 10:19 |
2010-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300133
|
- |
|
transware
|
active\!_mail
|
CRLF injection vulnerability in TransWARE Active! mail 6 build 6.40.010047750 and earlier allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unsp…
|
CWE-94
Code Injection
|
CVE-2010-3913
|
2024-11-21 10:19 |
2010-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300134
|
- |
|
jsecurity apache
|
jsecurity shiro
|
Apache Shiro before 1.1.0, and JSecurity 0.9.x, does not canonicalize URI paths before comparing them to entries in the shiro.ini file, which allows remote attackers to bypass intended access restric…
|
CWE-22
Path Traversal
|
CVE-2010-3863
|
2024-11-21 10:19 |
2010-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300135
|
- |
|
nongnu
|
cvs
|
Array index error in the apply_rcs_change function in rcs.c in CVS 1.11.23 allows local users to gain privileges via an RCS file containing crafted delta fragment changes that trigger a heap-based bu…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-3846
|
2024-11-21 10:19 |
2010-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300136
|
- |
|
mozilla
|
bugzilla
|
The Old Charts implementation in Bugzilla 2.12 through 3.2.8, 3.4.8, 3.6.2, 3.7.3, and 4.1 creates graph files with predictable names in graphs/, which allows remote attackers to obtain sensitive inf…
|
CWE-200
Information Exposure
|
CVE-2010-3764
|
2024-11-21 10:19 |
2010-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300137
|
- |
|
libguestfs
|
libguestfs
|
libguestfs before 1.5.23, as used in virt-v2v, virt-inspector 1.5.3 and earlier, and possibly other products, when a raw-format disk image is used, allows local guest OS administrators to read files …
|
CWE-200
Information Exposure
|
CVE-2010-3851
|
2024-11-21 10:19 |
2010-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300138
|
- |
|
isc
|
dhcp
|
ISC DHCP server 4.0 before 4.0.2, 4.1 before 4.1.2, and 4.2 before 4.2.0-P1 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a DHCPv6 packet containing a …
|
NVD-CWE-Other
|
CVE-2010-3611
|
2024-11-21 10:19 |
2010-11-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300139
|
- |
|
vim
|
gvim
|
Untrusted search path vulnerability in VIM Development Group GVim before 7.3.034, and possibly other versions before 7.3.46, allows local users, and possibly remote attackers, to execute arbitrary co…
|
NVD-CWE-Other
|
CVE-2010-3914
|
2024-11-21 10:19 |
2010-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300140
|
- |
|
acegisecurity vmware ibm
|
acegi-security springsource_spring_security websphere_application_server
|
VMware SpringSource Spring Security 2.x before 2.0.6 and 3.x before 3.0.4, and Acegi Security 1.0.0 through 1.0.7, as used in IBM WebSphere Application Server (WAS) 6.1 and 7.0, allows remote attacke…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-3700
|
2024-11-21 10:19 |
2010-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|