|
299971
|
- |
|
vim
|
gvim
|
Untrusted search path vulnerability in VIM Development Group GVim before 7.3.034, and possibly other versions before 7.3.46, allows local users, and possibly remote attackers, to execute arbitrary co…
|
NVD-CWE-Other
|
CVE-2010-3914
|
2024-11-21 10:19 |
2010-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299972
|
- |
|
acegisecurity vmware ibm
|
acegi-security springsource_spring_security websphere_application_server
|
VMware SpringSource Spring Security 2.x before 2.0.6 and 3.x before 3.0.4, and Acegi Security 1.0.0 through 1.0.7, as used in IBM WebSphere Application Server (WAS) 6.1 and 7.0, allows remote attacke…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-3700
|
2024-11-21 10:19 |
2010-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299973
|
- |
|
adobe
|
shockwave_player
|
Stack-based buffer overflow in dirapi.dll in Adobe Shockwave Player before 11.5.9.615 allows attackers to execute arbitrary code via unspecified vectors.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-3655
|
2024-11-21 10:19 |
2010-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299974
|
- |
|
adobe macromedia
|
flash_player acrobat acrobat_reader
|
Adobe Flash Player before 9.0.289.0 and 10.x before 10.1.102.64 on Windows, Mac OS X, Linux, and Solaris and 10.1.95.1 on Android, and authplay.dll (aka AuthPlayLib.bundle or libauthplay.so.0.0.0) in…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-3654
|
2024-11-21 10:19 |
2010-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299975
|
- |
|
rubyonrails
|
rails
|
Ruby on Rails 2.3.9 and 3.0.0 does not properly handle nested attributes, which allows remote attackers to modify arbitrary records by changing the names of parameters for form inputs.
|
CWE-20
Improper Input Validation
|
CVE-2010-3933
|
2024-11-21 10:19 |
2010-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299976
|
- |
|
curl
|
curl
|
Absolute path traversal vulnerability in curl 7.20.0 through 7.21.1, when the --remote-header-name or -J option is used, allows remote servers to create or overwrite arbitrary files by using \ (backs…
|
CWE-22
Path Traversal
|
CVE-2010-3842
|
2024-11-21 10:19 |
2010-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299977
|
- |
|
usebb
|
usebb
|
rss.php in UseBB before 1.0.11 does not properly handle forum configurations in which a user has the view permission but not the read permission, which allows remote attackers to bypass intended acce…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-3713
|
2024-11-21 10:19 |
2010-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299978
|
- |
|
joomla
|
joomla\!
|
Cross-site scripting (XSS) vulnerability in Joomla! 1.5.x before 1.5.21 and 1.6.x before 1.6.1 allows remote attackers to inject arbitrary web script or HTML via vectors involving "multiple encoded e…
|
CWE-79
Cross-site Scripting
|
CVE-2010-3712
|
2024-11-21 10:19 |
2010-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299979
|
- |
|
pidgin
|
pidgin
|
libpurple in Pidgin before 2.7.4 does not properly validate the return value of the purple_base64_decode function, which allows remote authenticated users to cause a denial of service (NULL pointer d…
|
CWE-20
Improper Input Validation
|
CVE-2010-3711
|
2024-11-21 10:19 |
2010-10-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299980
|
- |
|
adobe
|
shockwave_player
|
The Director module (dirapi.dll) in Adobe Shockwave Player before 11.5.9.615 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a Director movie wi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-3653
|
2024-11-21 10:19 |
2010-10-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|