|
299921
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Buffer overflow in QuickLook in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted Microso…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-3785
|
2024-11-21 10:19 |
2010-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299922
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
The PMPageFormatCreateWithDataRepresentation API in Printing in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 does not properly handle XML data, which allows attackers to cause a denial of service (…
|
NVD-CWE-Other
|
CVE-2010-3784
|
2024-11-21 10:19 |
2010-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299923
|
- |
|
apple
|
mac_os_x_server
|
Password Server in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 does not properly perform replication, which allows remote authenticated users to bypass verification of the current password via uns…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-3783
|
2024-11-21 10:19 |
2010-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299924
|
- |
|
ibm
|
omnifind
|
IBM OmniFind Enterprise Edition 8.x and 9.x performs web crawls with an unlimited recursion depth, which allows remote web servers to cause a denial of service (infinite loop) via a crafted series of…
|
CWE-399
Resource Management Errors
|
CVE-2010-3899
|
2024-11-21 10:19 |
2010-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299925
|
- |
|
ibm
|
omnifind
|
IBM OmniFind Enterprise Edition 8.x and 9.x does not properly restrict the cookie path of administrator (aka ESAdmin) cookies, which might allow remote attackers to bypass authentication by leveragin…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-3898
|
2024-11-21 10:19 |
2010-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299926
|
- |
|
ibm
|
omnifind
|
ESSearchApplication/palette.do in IBM OmniFind Enterprise Edition 8.x and 9.x includes the administrator password in the HTML source code, which might allow remote attackers to obtain sensitive infor…
|
CWE-255
Credentials Management
|
CVE-2010-3897
|
2024-11-21 10:19 |
2010-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299927
|
- |
|
ibm
|
omnifind
|
The ESSearchApplication directory tree in IBM OmniFind Enterprise Edition 8.x and 9.x does not require authentication, which allows remote attackers to modify the server configuration via a request t…
|
CWE-287
Improper Authentication
|
CVE-2010-3896
|
2024-11-21 10:19 |
2010-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299928
|
- |
|
ibm
|
omnifind
|
esRunCommand in IBM OmniFind Enterprise Edition before 9.1 allows local users to gain privileges by specifying an arbitrary command name as the first argument.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-3895
|
2024-11-21 10:19 |
2010-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299929
|
- |
|
ibm
|
omnifind
|
Stack-based buffer overflow in the Java_com_ibm_es_oss_CryptionNative_ESEncrypt function in /opt/IBM/es/lib/libffq.cryptionjni.so in the login form in the administration interface in IBM OmniFind Ent…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-3894
|
2024-11-21 10:19 |
2010-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299930
|
- |
|
ibm
|
omnifind
|
The administrator interface in IBM OmniFind Enterprise Edition 8.x and 9.x does not restrict use of a session ID (aka SID) value to a single IP address, which allows remote attackers to perform arbit…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-3893
|
2024-11-21 10:19 |
2010-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|