|
300171
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 6, 7, and 8 does not prevent rendering of cached content as HTML, which allows remote attackers to access content from a different (1) domain or (2) zone via unspecified s…
|
CWE-200
Information Exposure
|
CVE-2010-3342
|
2024-11-21 10:18 |
2010-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300172
|
- |
|
microsoft
|
internet_explorer
|
Microsoft Internet Explorer 6 and 7 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or…
|
CWE-94
Code Injection
|
CVE-2010-3340
|
2024-11-21 10:18 |
2010-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300173
|
- |
|
microsoft
|
windows_server_2008 windows_7 windows_vista
|
The Windows Task Scheduler in Microsoft Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly determine the security context of scheduled tasks, which allo…
|
CWE-20
Improper Input Validation
|
CVE-2010-3338
|
2024-11-21 10:18 |
2010-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300174
|
- |
|
nordugrid
|
nordugrid-arc
|
Untrusted search path vulnerability in NorduGrid Advanced Resource Connector (ARC) before 0.8.3 allows local users to gain privileges via vectors related to the LD_LIBRARY_PATH environment variable. …
|
NVD-CWE-Other
|
CVE-2010-3372
|
2024-11-21 10:18 |
2010-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300175
|
- |
|
jesse_mcconnell apache
|
redback archiva
|
Cross-site request forgery (CSRF) vulnerability in Redback before 1.2.4, as used in Apache Archiva 1.0 through 1.0.3, 1.1 through 1.1.4, 1.2 through 1.2.2, and 1.3 through 1.3.1; and Apache Continuum…
|
CWE-352
Origin Validation Error
|
CVE-2010-3449
|
2024-11-21 10:18 |
2010-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300176
|
- |
|
ifdefined
|
bugtracker.net
|
Multiple SQL injection vulnerabilities in BugTracker.NET before 3.4.5 allow remote authenticated users to execute arbitrary SQL commands via (1) the qu_id parameter to bugs.aspx, (2) the row_id param…
|
CWE-89
SQL Injection
|
CVE-2010-3267
|
2024-11-21 10:18 |
2010-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300177
|
- |
|
ifdefined
|
bugtracker.net
|
Multiple cross-site scripting (XSS) vulnerabilities in BugTracker.NET before 3.4.5 allow remote authenticated users to inject arbitrary web script or HTML via (1) the pcd parameter to edit_bug.aspx, …
|
CWE-79
Cross-site Scripting
|
CVE-2010-3266
|
2024-11-21 10:18 |
2010-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300178
|
- |
|
wireshark
|
wireshark
|
Stack consumption vulnerability in the dissect_ber_unknown function in epan/dissectors/packet-ber.c in the BER dissector in Wireshark 1.4.x before 1.4.1 and 1.2.x before 1.2.12 allows remote attacker…
|
CWE-399
Resource Management Errors
|
CVE-2010-3445
|
2024-11-21 10:18 |
2010-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300179
|
- |
|
linux opensuse suse debian canonical
|
linux_kernel opensuse linux_enterprise_real_time_extension debian_linux ubuntu_linux
|
The sctp_packet_config function in net/sctp/output.c in the Linux kernel before 2.6.35.6 performs extraneous initializations of packet data structures, which allows remote attackers to cause a denial…
|
CWE-20
Improper Input Validation
|
CVE-2010-3432
|
2024-11-21 10:18 |
2010-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300180
|
- |
|
microsoft
|
office
|
Untrusted search path vulnerability in Microsoft Office 2007 SP2 and 2010 allows local users to gain privileges via a Trojan horse DLL in the current working directory, aka "Insecure Library Loading …
|
NVD-CWE-Other
|
CVE-2010-3337
|
2024-11-21 10:18 |
2010-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|