|
299871
|
7.8 |
HIGH
Local
|
google debian opensuse
|
chrome debian_linux opensuse
|
Google Chrome before 7.0.517.41 does not properly handle animated GIF images, which allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact …
|
CWE-20
Improper Input Validation
|
CVE-2010-4040
|
2024-11-21 10:20 |
2010-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299872
|
9.8 |
CRITICAL
Network
|
google
|
chrome
|
Google Chrome before 7.0.517.41 on Linux does not properly set the PATH environment variable, which has unspecified impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2010-4039
|
2024-11-21 10:20 |
2010-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299873
|
7.5 |
HIGH
Network
|
google
|
chrome
|
The Web Sockets implementation in Google Chrome before 7.0.517.41 does not properly handle a shutdown action, which allows remote attackers to cause a denial of service (application crash) via unspec…
|
CWE-404
Improper Resource Shutdown or Release
|
CVE-2010-4038
|
2024-11-21 10:20 |
2010-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299874
|
- |
|
google
|
chrome
|
Unspecified vulnerability in Google Chrome before 7.0.517.41 allows remote attackers to bypass the pop-up blocker via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2010-4037
|
2024-11-21 10:20 |
2010-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299875
|
- |
|
google
|
chrome
|
Google Chrome before 7.0.517.41 does not properly handle the unloading of a page, which allows remote attackers to spoof URLs via unspecified vectors.
|
CWE-20
Improper Input Validation
|
CVE-2010-4036
|
2024-11-21 10:20 |
2010-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299876
|
- |
|
google
|
chrome
|
Google Chrome before 7.0.517.41 does not properly perform autofill operations for forms, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified ot…
|
CWE-20
Improper Input Validation
|
CVE-2010-4035
|
2024-11-21 10:20 |
2010-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299877
|
- |
|
google
|
chrome
|
Google Chrome before 7.0.517.41 does not properly handle forms, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted …
|
CWE-20
Improper Input Validation
|
CVE-2010-4034
|
2024-11-21 10:20 |
2010-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299878
|
- |
|
google
|
chrome
|
Google Chrome before 7.0.517.41 does not properly implement the autofill and autocomplete functionality, which allows remote attackers to conduct "profile spamming" attacks via unspecified vectors.
|
NVD-CWE-Other
|
CVE-2010-4033
|
2024-11-21 10:20 |
2010-10-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299879
|
- |
|
oracle
|
mojarra
|
Oracle Mojarra uses an encrypted View State without a Message Authentication Code (MAC), which makes it easier for remote attackers to perform successful modifications of the View State via a padding…
|
CWE-310
Cryptographic Issues
|
CVE-2010-4007
|
2024-11-21 10:20 |
2010-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299880
|
- |
|
sap
|
businessobjects
|
CmcApp in SAP BusinessObjects Enterprise XI 3.2 allows remote authenticated users to gain privileges via vectors involving the Program Job Server and the Program Login property.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-3983
|
2024-11-21 10:20 |
2010-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|