|
294461
|
- |
|
tor
|
tor
|
Tor before 0.2.2.34, when configured as a bridge, sets up circuits through a process different from the process used by a client, which makes it easier for remote attackers to enumerate bridges by ob…
|
CWE-200
Information Exposure
|
CVE-2011-4895
|
2024-11-21 10:33 |
2011-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294462
|
- |
|
tor
|
tor
|
Tor before 0.2.2.34, when configured as a bridge, uses direct DirPort access instead of a Tor TLS connection for a directory fetch, which makes it easier for remote attackers to enumerate bridges by …
|
CWE-200
Information Exposure
|
CVE-2011-4894
|
2024-11-21 10:33 |
2011-12-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294463
|
- |
|
unbound
|
unbound
|
validator/val_nsec3.c in Unbound before 1.4.13p2 does not properly perform proof processing for NSEC3-signed zones, which allows remote DNS servers to cause a denial of service (daemon crash) via a m…
|
CWE-399
Resource Management Errors
|
CVE-2011-4869
|
2024-11-21 10:33 |
2011-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294464
|
- |
|
schneider-electric
|
quantum_ethernet_module_140noe77101 quantum_ethernet_module_140noe77100 quantum_ethernet_module_140noe77111
|
The modbus_125_handler function in the Schneider Electric Quantum Ethernet Module on the NOE 771 device (aka the Quantum 140NOE771* module) allows remote attackers to install arbitrary firmware updat…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-4861
|
2024-11-21 10:33 |
2011-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294465
|
- |
|
schneider-electric
|
quantum_ethernet_module_140noe77101 quantum_ethernet_module_140noe77100 quantum_ethernet_module_140noe77111
|
The ComputePassword function in the Schneider Electric Quantum Ethernet Module on the NOE 771 device (aka the Quantum 140NOE771* module) generates the password for the fwupgrade account by performing…
|
CWE-287
Improper Authentication
|
CVE-2011-4860
|
2024-11-21 10:33 |
2011-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294466
|
- |
|
schneider-electric
|
quantum_ethernet_module_140noe77101 quantum_ethernet_module_140cpu65260 quantum_ethernet_module_140cpu65160 quantum_ethernet_module_140noe77100 quantum_ethernet_module_140cpu65150 quan…
|
The Schneider Electric Quantum Ethernet Module, as used in the Quantum 140NOE771* and 140CPU65* modules, the Premium TSXETY* and TSXP57* modules, the M340 BMXNOE01* and BMXP3420* modules, and the STB…
|
NVD-CWE-Other
|
CVE-2011-4859
|
2024-11-21 10:33 |
2011-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294467
|
- |
|
nullsoft
|
winamp
|
Heap-based buffer overflow in the in_mod.dll plugin in Winamp before 5.623 allows remote attackers to execute arbitrary code via crafted song message data in an Impulse Tracker (IT) file. NOTE: some…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-4857
|
2024-11-21 10:33 |
2011-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294468
|
- |
|
parallels
|
parallels_plesk_panel
|
The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 sends incorrect Content-Type headers for certain resources, which might allow remote attackers to have an unspecified impact by leve…
|
NVD-CWE-Other
|
CVE-2011-4856
|
2024-11-21 10:33 |
2011-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294469
|
- |
|
parallels
|
parallels_plesk_panel
|
The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 omits the Content-Type header's charset parameter for certain resources, which might allow remote attackers to have an unspecified i…
|
NVD-CWE-Other
|
CVE-2011-4855
|
2024-11-21 10:33 |
2011-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294470
|
- |
|
parallels
|
parallels_plesk_panel
|
The Control Panel in Parallels Plesk Panel 10.4.4_build20111103.18 does not ensure that Content-Type HTTP headers match the corresponding Content-Type data in HTML META elements, which might allow re…
|
NVD-CWE-Other
|
CVE-2011-4854
|
2024-11-21 10:33 |
2011-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|