|
299131
|
- |
|
crawltrack
|
crawltrack
|
Unspecified vulnerability in CrawlTrack before 3.2.7, when a public stats page is provided, allows remote attackers to execute arbitrary PHP code via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2010-4537
|
2024-11-21 10:21 |
2011-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299132
|
- |
|
linux
|
linux_kernel
|
Integer underflow in the irda_getsockopt function in net/irda/af_irda.c in the Linux kernel before 2.6.37 on platforms other than x86 allows local users to obtain potentially sensitive information fr…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2010-4529
|
2024-11-21 10:21 |
2011-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299133
|
- |
|
linux
|
linux_kernel
|
The load_mixer_volumes function in sound/oss/soundcard.c in the OSS sound subsystem in the Linux kernel before 2.6.37 incorrectly expects that a certain name field ends with a '\0' character, which a…
|
CWE-120
Classic Buffer Overflow
|
CVE-2010-4527
|
2024-11-21 10:21 |
2011-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299134
|
- |
|
coppermine-gallery
|
coppermine_photo_gallery
|
Multiple cross-site scripting (XSS) vulnerabilities in Coppermine Photo Gallery 1.5.10 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) h and (2) t parameters to …
|
CWE-79
Cross-site Scripting
|
CVE-2010-4693
|
2024-11-21 10:21 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299135
|
- |
|
php
|
php
|
strtod.c, as used in the zend_strtod function in PHP 5.2 before 5.2.17 and 5.3 before 5.3.5, and other products, allows context-dependent attackers to cause a denial of service (infinite loop) via a …
|
CWE-189
Numeric Errors
|
CVE-2010-4645
|
2024-11-21 10:21 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299136
|
- |
|
linux redhat vmware
|
linux_kernel enterprise_mrg esx
|
Race condition in the sctp_icmp_proto_unreachable function in net/sctp/input.c in Linux kernel 2.6.11-rc2 through 2.6.33 allows remote attackers to cause a denial of service (panic) via an ICMP unrea…
|
CWE-362
Race Condition
|
CVE-2010-4526
|
2024-11-21 10:21 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299137
|
- |
|
linux
|
linux_kernel
|
Linux kernel 2.6.33 and 2.6.34.y does not initialize the kvm_vcpu_events->interrupt.pad structure member, which allows local users to obtain potentially sensitive information from kernel stack memory…
|
CWE-200
Information Exposure
|
CVE-2010-4525
|
2024-11-21 10:21 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299138
|
- |
|
djangoproject
|
django
|
The password reset functionality in django.contrib.auth in Django before 1.1.3, 1.2.x before 1.2.4, and 1.3.x before 1.3 beta 1 does not validate the length of a string representing a base36 timestam…
|
CWE-20
Improper Input Validation
|
CVE-2010-4535
|
2024-11-21 10:21 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299139
|
- |
|
djangoproject
|
django
|
The administrative interface in django.contrib.admin in Django before 1.1.3, 1.2.x before 1.2.4, and 1.3.x before 1.3 beta 1 does not properly restrict use of the query string to perform certain obje…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-4534
|
2024-11-21 10:21 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299140
|
- |
|
cisco
|
adaptive_security_appliance_software 5500_series_adaptive_security_appliance asa_5500
|
Unspecified vulnerability on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.3(2) allows remote attackers to cause a denial of service (device crash) via a large n…
|
NVD-CWE-noinfo
|
CVE-2010-4692
|
2024-11-21 10:21 |
2011-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|