|
299731
|
- |
|
imagemagick
|
imagemagick
|
Untrusted search path vulnerability in configure.c in ImageMagick before 6.6.5-5, when MAGICKCORE_INSTALLED_SUPPORT is defined, allows local users to gain privileges via a Trojan horse configuration …
|
NVD-CWE-Other
|
CVE-2010-4167
|
2024-11-21 10:20 |
2010-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299732
|
- |
|
cisco
|
unified_videoconferencing_system_5110_firmware unified_videoconferencing_system_5115_firmware unified_videoconferencing_system_5110 unified_videoconferencing_system_5115 unified_videoconf…
|
Cisco Unified Videoconferencing (UVC) System 3545, 5110, 5115, and 5230; Unified Videoconferencing 3527 Primary Rate Interface (PRI) Gateway; Unified Videoconferencing 3522 Basic Rate Interfaces (BRI…
|
CWE-310
Cryptographic Issues
|
CVE-2010-4305
|
2024-11-21 10:20 |
2010-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299733
|
- |
|
cisco
|
unified_videoconferencing_system_5110_firmware unified_videoconferencing_system_5115_firmware unified_videoconferencing_system_5110 unified_videoconferencing_system_5115 unified_videoconf…
|
The web interface in Cisco Unified Videoconferencing (UVC) System 3545, 5110, 5115, and 5230; Unified Videoconferencing 3527 Primary Rate Interface (PRI) Gateway; Unified Videoconferencing 3522 Basic…
|
CWE-310
Cryptographic Issues
|
CVE-2010-4304
|
2024-11-21 10:20 |
2010-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299734
|
- |
|
linux fedoraproject suse opensuse
|
linux_kernel fedora linux_enterprise_desktop linux_enterprise_server opensuse linux_enterprise_real_time_extension
|
Use-after-free vulnerability in mm/mprotect.c in the Linux kernel before 2.6.37-rc2 allows local users to cause a denial of service via vectors involving an mprotect system call.
|
CWE-416
Use After Free
|
CVE-2010-4169
|
2024-11-21 10:20 |
2010-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299735
|
- |
|
linux suse opensuse
|
linux_kernel linux_enterprise_desktop linux_enterprise_server opensuse linux_enterprise_real_time_extension
|
The do_tcp_setsockopt function in net/ipv4/tcp.c in the Linux kernel before 2.6.37-rc2 does not properly restrict TCP_MAXSEG (aka MSS) values, which allows local users to cause a denial of service (O…
|
CWE-369
Divide By Zero
|
CVE-2010-4165
|
2024-11-21 10:20 |
2010-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299736
|
- |
|
novell
|
zenworks_handheld_management
|
Heap-based buffer overflow in ZfHIPCND.exe in Novell Zenworks 7 Handheld Management (ZHM) allows remote attackers to execute arbitrary code via a crafted request to TCP port 2400.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-4299
|
2024-11-21 10:20 |
2010-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299737
|
7.8 |
HIGH
Local
|
freebsd
|
freebsd
|
The pfs_getextattr function in FreeBSD 7.x before 7.3-RELEASE and 8.x before 8.0-RC1 unlocks a mutex that was not previously locked, which allows local users to cause a denial of service (kernel pani…
|
CWE-667
Improper Locking
|
CVE-2010-4210
|
2024-11-21 10:20 |
2010-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299738
|
- |
|
mono
|
mono
|
Untrusted search path vulnerability in metadata/loader.c in Mono 2.8 and earlier allows local users to gain privileges via a Trojan horse shared library in the current working directory.
|
NVD-CWE-Other
|
CVE-2010-4159
|
2024-11-21 10:20 |
2010-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299739
|
- |
|
hp
|
laserjet_4200 laserjet_4100 color_laserjet_mfp laserjet_mfp 9000 laserjet_5100 laserjet_8150 laserjet_4300
|
The default configuration of the PJL Access value in the File System External Access settings on HP LaserJet MFP printers, Color LaserJet MFP printers, and LaserJet 4100, 4200, 4300, 5100, 8150, and …
|
CWE-22
Path Traversal
|
CVE-2010-4107
|
2024-11-21 10:20 |
2010-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299740
|
- |
|
spreecommerce
|
spree
|
Spree 0.11.x before 0.11.2 and 0.30.x before 0.30.0 exchanges data using JavaScript Object Notation (JSON) without a mechanism for validating requests, which allows remote attackers to obtain sensiti…
|
CWE-200
Information Exposure
|
CVE-2010-3978
|
2024-11-21 10:20 |
2010-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|