|
297641
|
- |
|
clamav
|
clamav
|
Double free vulnerability in the vba_read_project_strings function in vba_extract.c in libclamav in ClamAV before 0.97 might allow remote attackers to execute arbitrary code via crafted Visual Basic …
|
CWE-399
Resource Management Errors
|
CVE-2011-1003
|
2024-11-21 10:25 |
2011-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297642
|
- |
|
linux
|
linux_kernel
|
mm/huge_memory.c in the Linux kernel before 2.6.38-rc5 does not prevent creation of a transparent huge page (THP) during the existence of a temporary stack for an exec system call, which allows local…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2011-0999
|
2024-11-21 10:25 |
2011-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297643
|
- |
|
reyero
|
messaging
|
Cross-site scripting (XSS) vulnerability in the Messaging module 6.x-2.x before 6.x-2.4 and 6.x-4.x before 6.x-4.0-beta8 for Drupal allows remote attackers with administer messaging permissions to in…
|
CWE-79
Cross-site Scripting
|
CVE-2011-1066
|
2024-11-21 10:25 |
2011-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297644
|
- |
|
pipi
|
pipi_player
|
Multiple stack-based buffer overflows in the PIPIWebPlayer ActiveX control (PIWebPlayer.ocx) in PIPI Player 2.8.0.0 allow remote attackers to execute arbitrary code via long arguments to the (1) Play…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-1065
|
2024-11-21 10:25 |
2011-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297645
|
- |
|
qibosoft
|
qi_bo_cms
|
SQL injection vulnerability in member/list.php in qibosoft Qi Bo CMS 7 allows remote attackers to execute arbitrary SQL commands via the aidDB[] parameter.
|
CWE-89
SQL Injection
|
CVE-2011-1064
|
2024-11-21 10:25 |
2011-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297646
|
- |
|
cherry-software
|
photopad
|
Multiple cross-site scripting (XSS) vulnerabilities in Cherry-Design Photopad 1.2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) id or (2) data[title] parameters in an ed…
|
CWE-79
Cross-site Scripting
|
CVE-2011-1063
|
2024-11-21 10:25 |
2011-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297647
|
- |
|
taskfreak
|
taskfreak\!
|
Multiple cross-site scripting (XSS) vulnerabilities in include/html/header.php in TaskFreak! 0.6.4 allow remote attackers to inject arbitrary web script or HTML via the (1) sContext, (2) sort, (3) di…
|
CWE-79
Cross-site Scripting
|
CVE-2011-1062
|
2024-11-21 10:25 |
2011-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297648
|
- |
|
webmastersite
|
wsn_guest
|
SQL injection vulnerability in memberlist.php in WSN Guest 1.24 allows remote attackers to execute arbitrary SQL commands via the time parameter.
|
CWE-89
SQL Injection
|
CVE-2011-1061
|
2024-11-21 10:25 |
2011-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297649
|
- |
|
webmastersite
|
wsn_guest
|
SQL injection vulnerability in the member function in classes/member.php in WSN Guest 1.24 allows remote attackers to execute arbitrary SQL commands via the wsnuser cookie to index.php.
|
CWE-89
SQL Injection
|
CVE-2011-1060
|
2024-11-21 10:25 |
2011-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297650
|
- |
|
google
|
chrome
|
Use-after-free vulnerability in WebCore in WebKit before r77705, as used in Google Chrome before 11.0.672.2 and other products, allows user-assisted remote attackers to cause a denial of service (app…
|
CWE-416
Use After Free
|
CVE-2011-1059
|
2024-11-21 10:25 |
2011-02-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|