|
294631
|
- |
|
koha
|
liblime_koha koha
|
Directory traversal vulnerability in cgi-bin/koha/mainpage.pl in Koha 3.4 before 3.4.7 and 3.6 before 3.6.1, and LibLime Koha 4.2 and earlier allows remote attackers to read arbitrary files via a .. …
|
CWE-22
Path Traversal
|
CVE-2011-4715
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294632
|
- |
|
vvertex
|
muster
|
Directory traversal vulnerability in Virtual Vertex Muster before 6.20 allows remote attackers to read arbitrary files via a \.. (backslash dot dot) in the URL.
|
CWE-22
Path Traversal
|
CVE-2011-4714
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294633
|
- |
|
oscss
|
oscss
|
Directory traversal vulnerability in catalog/content.php in osCSS2 2.1.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the _ID parameter to (1) catalog/shopping_ca…
|
CWE-22
Path Traversal
|
CVE-2011-4713
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294634
|
- |
|
monoxide0184
|
oxide_webserver
|
Directory traversal vulnerability in Oxide WebServer allows remote attackers to read arbitrary files via a ..\ (dot dot backslash) in an HTTP request.
|
CWE-22
Path Traversal
|
CVE-2011-4712
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294635
|
- |
|
namazu
|
namazu
|
Multiple directory traversal vulnerabilities in namazu.cgi in Namazu before 2.0.16 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) lang or (2) result parameter.
|
CWE-22
Path Traversal
|
CVE-2011-4711
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294636
|
- |
|
getpixie lucidcrew
|
pixie
|
Multiple SQL injection vulnerabilities in Pixie CMS 1.01 through 1.04 allow remote attackers to execute arbitrary SQL commands via the (1) pixie_user parameter and (2) Referer HTTP header in a reques…
|
CWE-89
SQL Injection
|
CVE-2011-4710
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294637
|
- |
|
hotaru
|
search_plugin hotaru_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in Hotaru.php in the Search plugin 1.3 for Hotaru CMS allow remote attackers to inject arbitrary web script or HTML via the (1) SITE_NAME parameter…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4709
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294638
|
- |
|
ibm
|
rational_asset_manager
|
Cross-site scripting (XSS) vulnerability in IBM Rational Asset Manager before 7.5.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2011-4708
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294639
|
- |
|
sap
|
netweaver
|
Multiple cross-site scripting (XSS) vulnerabilities in the Virus Scan Interface in SAP Netweaver allow remote attackers to inject arbitrary web script or HTML via the (1) instname parameter to the Vs…
|
CWE-79
Cross-site Scripting
|
CVE-2011-4707
|
2024-11-21 10:32 |
2011-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294640
|
- |
|
isc canonical debian
|
dhcp ubuntu_linux debian_linux
|
dhcpd in ISC DHCP 4.x before 4.2.3-P1 and 4.1-ESV before 4.1-ESV-R4 does not properly handle regular expressions in dhcpd.conf, which allows remote attackers to cause a denial of service (daemon cras…
|
CWE-20
Improper Input Validation
|
CVE-2011-4539
|
2024-11-21 10:32 |
2011-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|