|
294531
|
- |
|
hp
|
hp-chaisoe
|
Directory traversal vulnerability in the HP-ChaiSOE/1.0 web server on the HP LaserJet P3015 printer with firmware before 07.080.3, LaserJet 4650 printer with firmware 07.006.0, and LaserJet 2430 prin…
|
CWE-200
Information Exposure
|
CVE-2011-4785
|
2024-11-21 10:32 |
2012-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294532
|
- |
|
siemens
|
automation_license_manager
|
Absolute path traversal vulnerability in the ALMListView.ALMListCtrl ActiveX control in almaxcx.dll in the graphical user interface in Siemens Automation License Manager (ALM) 2.0 through 5.1+SP1+Upd…
|
CWE-22
Path Traversal
|
CVE-2011-4532
|
2024-11-21 10:32 |
2012-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294533
|
- |
|
siemens
|
automation_license_manager
|
Siemens Automation License Manager (ALM) 4.0 through 5.1+SP1+Upd1 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via crafted content in a (1) get_tar…
|
CWE-20
Improper Input Validation
|
CVE-2011-4531
|
2024-11-21 10:32 |
2012-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294534
|
- |
|
siemens
|
automation_license_manager
|
Siemens Automation License Manager (ALM) 4.0 through 5.1+SP1+Upd1 does not properly copy fields obtained from clients, which allows remote attackers to cause a denial of service (exception and daemon…
|
CWE-20
Improper Input Validation
|
CVE-2011-4530
|
2024-11-21 10:32 |
2012-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294535
|
- |
|
siemens
|
automation_license_manager
|
Multiple buffer overflows in Siemens Automation License Manager (ALM) 4.0 through 5.1+SP1+Upd1 allow remote attackers to execute arbitrary code via a long serialid field in an _licensekey command, as…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-4529
|
2024-11-21 10:32 |
2012-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294536
|
- |
|
mediawiki debian
|
mediawiki debian_linux
|
MediaWiki before 1.17.1 does not check for read permission before handling action=ajax requests, which allows remote attackers to obtain sensitive information by (1) leveraging the SpecialUpload::aja…
|
CWE-276
Incorrect Default Permissions
|
CVE-2011-4361
|
2024-11-21 10:32 |
2012-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294537
|
- |
|
mediawiki debian
|
mediawiki debian_linux
|
MediaWiki before 1.17.1 allows remote attackers to obtain the page titles of all restricted pages via a series of requests involving the (1) curid or (2) oldid parameter.
|
CWE-200
Information Exposure
|
CVE-2011-4360
|
2024-11-21 10:32 |
2012-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294538
|
- |
|
igor_vlasenko
|
html-template-pro
|
Cross-site scripting (XSS) vulnerability in the HTML-Template-Pro module before 0.9507 for Perl allows remote attackers to inject arbitrary web script or HTML via template parameters, related to impr…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4616
|
2024-11-21 10:32 |
2012-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294539
|
- |
|
openssl
|
openssl
|
The Server Gated Cryptography (SGC) implementation in OpenSSL before 0.9.8s and 1.x before 1.0.0f does not properly handle handshake restarts, which allows remote attackers to cause a denial of servi…
|
CWE-399
Resource Management Errors
|
CVE-2011-4619
|
2024-11-21 10:32 |
2012-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294540
|
- |
|
openssl
|
openssl
|
OpenSSL before 0.9.8s and 1.x before 1.0.0f, when RFC 3779 support is enabled, allows remote attackers to cause a denial of service (assertion failure) via an X.509 certificate containing certificate…
|
CWE-399
Resource Management Errors
|
CVE-2011-4577
|
2024-11-21 10:32 |
2012-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|