|
299331
|
6.1 |
MEDIUM
Network
|
phpbb debian
|
phpbb debian_linux
|
phpbb 3.0.x-3.0.6 has an XSS vulnerability via the [flash] BB tag.
|
CWE-79
Cross-site Scripting
|
CVE-2011-0544
|
2024-11-21 10:24 |
2019-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299332
|
8.8 |
HIGH
Network
|
suse
|
studio_onsite_appliance studio_onsite
|
A vulnerability in the listing of available software of SUSE Studio Onsite, SUSE Studio Onsite 1.1 Appliance allows authenticated users to execute arbitrary SQL statements via SQL injection. Affected…
|
CWE-89
SQL Injection
|
CVE-2011-0467
|
2024-11-21 10:24 |
2018-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299333
|
5.9 |
MEDIUM
Network
|
fedoraproject
|
389_directory_server
|
389 Directory Server 1.2.7.5, when built with mozldap, allows remote attackers to cause a denial of service (replica crash) by sending an empty modify request.
|
CWE-20
Improper Input Validation
|
CVE-2011-0704
|
2024-11-21 10:24 |
2018-05-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299334
|
9.8 |
CRITICAL
Network
|
suse
|
opensuse
|
Code injection in openSUSE when running some source services used in the open build service 2.1 before March 11 2011.
|
CWE-94
Code Injection
|
CVE-2011-0469
|
2024-11-21 10:24 |
2017-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299335
|
- |
|
kbd-project opensuse
|
kbd opensuse
|
The init script in kbd, possibly 1.14.1 and earlier, allows local users to overwrite arbitrary files via a symlink attack on /dev/shm/defkeymap.map.
|
CWE-59
Link Following
|
CVE-2011-0460
|
2024-11-21 10:24 |
2014-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299336
|
- |
|
puppet
|
puppet
|
Puppet 2.6.0 through 2.6.3 does not properly restrict access to node resources, which allows remote authenticated Puppet nodes to read or modify the resources of other nodes via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-0528
|
2024-11-21 10:24 |
2014-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299337
|
- |
|
iain
|
gypsy
|
Multiple buffer overflows in the NMEA parser (nmea-gen.c) in gypsy 0.8 allow local users to cause a denial of service (crash) via unspecified vectors related to the sprintf function.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-0524
|
2024-11-21 10:24 |
2012-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299338
|
- |
|
iain
|
gypsy
|
gypsy 0.8 does not properly restrict the files that can be read while running with root privileges, which allows local users to read otherwise restricted files via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-0523
|
2024-11-21 10:24 |
2012-08-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299339
|
- |
|
linux
|
linux_kernel
|
The br_multicast_add_group function in net/bridge/br_multicast.c in the Linux kernel before 2.6.38, when a certain Ethernet bridge configuration is used, allows local users to cause a denial of servi…
|
CWE-399
Resource Management Errors
|
CVE-2011-0716
|
2024-11-21 10:24 |
2012-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299340
|
- |
|
cyber-ark
|
password_vault_web_access
|
Cross-site scripting (XSS) vulnerability in Cyber-Ark Password Vault Web Access (PVWA) 5.0 and earlier, 5.5 through 5.5 patch 4, and 6.0 through 6.0 patch 2 allows remote attackers to inject arbitrar…
|
CWE-79
Cross-site Scripting
|
CVE-2011-0459
|
2024-11-21 10:24 |
2011-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|