|
297321
|
- |
|
nagios
|
nagios
|
Cross-site scripting (XSS) vulnerability in statusmap.c in statusmap.cgi in Nagios 3.2.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the layer parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2011-1523
|
2024-11-21 10:26 |
2011-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297322
|
- |
|
linux
|
linux_kernel
|
drivers/scsi/mpt2sas/mpt2sas_ctl.c in the Linux kernel 2.6.38 and earlier does not validate (1) length and (2) offset values before performing memory copy operations, which might allow local users to…
|
CWE-20
Improper Input Validation
|
CVE-2011-1495
|
2024-11-21 10:26 |
2011-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297323
|
- |
|
linux
|
linux_kernel
|
Integer overflow in the _ctl_do_mpt_command function in drivers/scsi/mpt2sas/mpt2sas_ctl.c in the Linux kernel 2.6.38 and earlier might allow local users to gain privileges or cause a denial of servi…
|
CWE-189
Numeric Errors
|
CVE-2011-1494
|
2024-11-21 10:26 |
2011-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297324
|
- |
|
wireshark
|
wireshark
|
The NFS dissector in epan/dissectors/packet-nfs.c in Wireshark 1.4.x before 1.4.5 on Windows uses an incorrect integer data type during decoding of SETCLIENTID calls, which allows remote attackers to…
|
CWE-189
Numeric Errors
|
CVE-2011-1592
|
2024-11-21 10:26 |
2011-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297325
|
- |
|
wireshark
|
wireshark
|
Stack-based buffer overflow in the DECT dissector in epan/dissectors/packet-dect.c in Wireshark 1.4.x before 1.4.5 allows remote attackers to execute arbitrary code via a crafted .pcap file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-1591
|
2024-11-21 10:26 |
2011-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297326
|
- |
|
wireshark
|
wireshark
|
The X.509if dissector in Wireshark 1.2.x before 1.2.16 and 1.4.x before 1.4.5 does not properly initialize certain global variables, which allows remote attackers to cause a denial of service (applic…
|
CWE-399
Resource Management Errors
|
CVE-2011-1590
|
2024-11-21 10:26 |
2011-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297327
|
- |
|
mojolicious
|
mojolicious
|
Directory traversal vulnerability in Path.pm in Mojolicious before 1.16 allows remote attackers to read arbitrary files via a %2f..%2f (encoded slash dot dot slash) in a URI.
|
CWE-22
Path Traversal
|
CVE-2011-1589
|
2024-11-21 10:26 |
2011-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297328
|
- |
|
hp
|
systems_insight_manager
|
Cross-site request forgery (CSRF) vulnerability in HP Systems Insight Manager (SIM) before 6.3 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
|
CWE-352
Origin Validation Error
|
CVE-2011-1543
|
2024-11-21 10:26 |
2011-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297329
|
- |
|
hp
|
systems_insight_manager
|
Cross-site scripting (XSS) vulnerability in HP Systems Insight Manager (SIM) before 6.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2011-1542
|
2024-11-21 10:26 |
2011-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297330
|
- |
|
hp
|
system_management_homepage
|
Unspecified vulnerability in HP System Management Homepage (SMH) before 6.3 allows remote attackers to bypass intended access restrictions, and consequently execute arbitrary code, via unknown vector…
|
NVD-CWE-noinfo
|
CVE-2011-1541
|
2024-11-21 10:26 |
2011-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|