|
294111
|
- |
|
mybb
|
mybb
|
Cross-site scripting (XSS) vulnerability in MyBB before 1.6.5 allows remote attackers to inject arbitrary web script or HTML via vectors related to "usernames via AJAX."
|
CWE-79
Cross-site Scripting
|
CVE-2011-5132
|
2024-11-21 10:33 |
2012-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294112
|
- |
|
mybb
|
mybb
|
Cross-site request forgery (CSRF) vulnerability in global.php in MyBB before 1.6.5 allows remote attackers to hijack the authentication of a user for requests that change the user's language via the …
|
CWE-352
Origin Validation Error
|
CVE-2011-5131
|
2024-11-21 10:33 |
2012-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294113
|
- |
|
haudenschilt
|
family_connections_cms
|
dev/less.php in Family Connections CMS (FCMS) 2.5.0 - 2.7.1, when register_globals is enabled, allows remote attackers to execute arbitrary commands via shell metacharacters in the argv[1] parameter.
|
CWE-94
Code Injection
|
CVE-2011-5130
|
2024-11-21 10:33 |
2012-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294114
|
- |
|
xchat
|
xchat
|
Heap-based buffer overflow in XChat 2.8.9 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long response string.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-5129
|
2024-11-21 10:33 |
2012-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294115
|
- |
|
bueltge
|
adminimize
|
Multiple cross-site scripting (XSS) vulnerabilities in the Adminimize plugin before 1.7.22 for WordPress allow remote attackers to inject arbitrary web script or HTML via the page parameter to (1) in…
|
CWE-79
Cross-site Scripting
|
CVE-2011-5128
|
2024-11-21 10:33 |
2012-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294116
|
- |
|
bueltge
|
adminimize
|
Cross-site scripting (XSS) vulnerability in adminimize/adminimize_page.php in the Adminimize plugin before 1.7.22 for WordPress allows remote attackers to inject arbitrary web script or HTML via the …
|
CWE-79
Cross-site Scripting
|
CVE-2011-4926
|
2024-11-21 10:33 |
2012-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294117
|
- |
|
elxis
|
elxis_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in Elxis CMS 2009.2, 2009.3 and 2009.3 Aphrodite before revision 2684 allow remote attackers to inject arbitrary web script or HTML via the (1) tas…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4918
|
2024-11-21 10:33 |
2012-08-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294118
|
- |
|
python
|
python
|
Python 2.6 through 3.2 creates ~/.pypirc with world-readable permissions before changing them after data has been written, which introduces a race condition that allows local users to obtain a userna…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-4944
|
2024-11-21 10:33 |
2012-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294119
|
- |
|
bluecoat
|
reporter
|
Directory traversal vulnerability in Blue Coat Reporter 9.x before 9.2.4.13, 9.2.5.x before 9.2.5.1, and 9.3 before 9.3.1.2 on Windows allows remote attackers to read arbitrary files, and consequentl…
|
CWE-22
Path Traversal
|
CVE-2011-5127
|
2024-11-21 10:33 |
2012-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294120
|
- |
|
bluecoat
|
sgos
|
Blue Coat ProxySG 6.1 before SGOS 6.1.5.1 and 6.2 before SGOS 6.2.2.1 writes the secure heap to core images, which allows context-dependent attackers to obtain sensitive authentication information by…
|
CWE-200
Information Exposure
|
CVE-2011-5126
|
2024-11-21 10:33 |
2012-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|