|
299881
|
- |
|
sap
|
businessobjects
|
SAP BusinessObjects Enterprise XI 3.2 allows remote attackers to trigger TCP connections to arbitrary intranet hosts on any port, and obtain potentially sensitive information about open ports, via th…
|
CWE-200
Information Exposure
|
CVE-2010-3982
|
2024-11-21 10:20 |
2010-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299882
|
- |
|
sap
|
businessobjects
|
Cross-site scripting (XSS) vulnerability in SAP BusinessObjects Enterprise XI 3.2 allows remote attackers to inject arbitrary web script or HTML via the ServiceClass field to the Edit Service Paramet…
|
CWE-79
Cross-site Scripting
|
CVE-2010-3981
|
2024-11-21 10:20 |
2010-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299883
|
- |
|
sap
|
businessobjects
|
Dswsbobje in SAP BusinessObjects Enterprise XI 3.2 does not limit the number of CUIDs that may be requested, which allows remote authenticated users to cause a denial of service via a large numCuids …
|
NVD-CWE-Other
|
CVE-2010-3980
|
2024-11-21 10:20 |
2010-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299884
|
- |
|
sap
|
businessobjects
|
Dswsbobje in SAP BusinessObjects Enterprise XI 3.2 generates different error messages depending on whether the Login field corresponds to a valid username, which allows remote attackers to enumerate …
|
CWE-200
Information Exposure
|
CVE-2010-3979
|
2024-11-21 10:20 |
2010-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299885
|
7.8 |
HIGH
Local
|
ettercap-project
|
ettercap
|
The GTK version of ettercap uses a global settings file at /tmp/.ettercap_gtk and does not verify ownership of this file. When parsing this file for settings in gtkui_conf_read() (src/interfacesgtk/e…
|
-
|
CVE-2010-3843
|
2024-11-21 10:19 |
2021-05-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299886
|
6.5 |
MEDIUM
Network
|
google
|
chrome
|
Google Chrome before 3.0 does not properly handle XML documents, which allows remote attackers to obtain sensitive information via a crafted web site.
|
CWE-200
Information Exposure
|
CVE-2010-3917
|
2024-11-21 10:19 |
2020-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299887
|
8.8 |
HIGH
Network
|
obs-server suse
|
obs-server linux_enterprise_server
|
obs-server before 1.7.7 allows logins by 'unconfirmed' accounts due to a bug in the REST api implementation.
|
CWE-863
Incorrect Authorization
|
CVE-2010-3782
|
2024-11-21 10:19 |
2020-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299888
|
6.1 |
MEDIUM
Network
|
redhat
|
jboss_business_rules_management_system
|
JBoss BRMS before 5.1.0 has a XSS vulnerability via asset=UUID parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-3857
|
2024-11-21 10:19 |
2019-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299889
|
8.8 |
HIGH
Network
|
ettercap-project debian
|
ettercap debian_linux
|
An unchecked sscanf() call in ettercap before 0.7.5 allows an insecure temporary settings file to overflow a static-sized buffer on the stack.
|
CWE-120
Classic Buffer Overflow
|
CVE-2010-3844
|
2024-11-21 10:19 |
2019-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299890
|
6.1 |
MEDIUM
Network
|
typo3 debian
|
typo3 debian_linux
|
TYPO3 before 4.4.1 allows XSS in the frontend search box.
|
CWE-79
Cross-site Scripting
|
CVE-2010-3674
|
2024-11-21 10:19 |
2019-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|