|
298911
|
- |
|
microsoft
|
windows_2000 windows_server_2008 windows_vista windows_7 windows_2003_server windows_xp
|
Microsoft Windows 2008, 7, Vista, 2003, 2000, and XP, when using IPv6, allows remote attackers to determine whether a host is sniffing the network by sending an ICMPv6 Echo Request to a multicast add…
|
CWE-200
Information Exposure
|
CVE-2010-4562
|
2024-11-21 10:21 |
2012-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298912
|
- |
|
marco_hezel
|
hm_tinymarket
|
SQL injection vulnerability in the Tiny Market (hm_tinymarket) extension 0.5.4 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2010-4888
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298913
|
- |
|
raphael_zschorsch
|
commentsbe
|
SQL injection vulnerability in the Commenting system Backend Module (commentsbe) extension 0.0.2 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vector…
|
CWE-89
SQL Injection
|
CVE-2010-4887
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298914
|
- |
|
peter_proell
|
tweetbutton
|
Cross-site scripting (XSS) vulnerability in the "official twitter tweet button for your page" (tweetbutton) extension before 1.0.5 for TYPO3 allows remote attackers to inject arbitrary web script or …
|
CWE-79
Cross-site Scripting
|
CVE-2010-4886
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298915
|
- |
|
peter_proell
|
xing
|
Cross-site scripting (XSS) vulnerability in the XING Button (xing) extension before 1.0.2 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4885
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298916
|
- |
|
hinnendahl
|
gaestebuch
|
PHP remote file inclusion vulnerability in guestbook/gbook.php in Gaestebuch 1.2 allows remote attackers to execute arbitrary PHP code via a URL in the script_pfad parameter.
|
CWE-94
Code Injection
|
CVE-2010-4884
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298917
|
- |
|
modx
|
revolution
|
Cross-site scripting (XSS) vulnerability in manager/index.php in MODx Revolution 2.0.2-pl allows remote attackers to inject arbitrary web script or HTML via the modhash parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4883
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298918
|
- |
|
ventics
|
auto_cms
|
Cross-site scripting (XSS) vulnerability in autocms.php in Auto CMS 1.6 allows remote attackers to inject arbitrary web script or HTML via the sitetitle parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4882
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298919
|
- |
|
apphp
|
apphp_calendar
|
Multiple cross-site request forgery (CSRF) vulnerabilities in calendar.class.php in ApPHP Calendar (ApPHP CAL) allow remote attackers to hijack the authentication of unspecified victims for requests …
|
CWE-352
Origin Validation Error
|
CVE-2010-4881
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298920
|
- |
|
apphp
|
apphp_calendar
|
Multiple cross-site scripting (XSS) vulnerabilities in calendar.class.php in ApPHP Calendar (ApPHP CAL) allow remote attackers to inject arbitrary web script or HTML via the (1) category_name, (2) ca…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4880
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|