|
298281
|
- |
|
manageengine
|
servicedesk_plus
|
Cross-site scripting (XSS) vulnerability in SolutionSearch.do in ManageEngine ServiceDesk Plus (SDP) before 8012 allows remote attackers to inject arbitrary web script or HTML via the searchText para…
|
CWE-79
Cross-site Scripting
|
CVE-2011-1510
|
2024-11-21 10:26 |
2011-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298282
|
- |
|
manageengine
|
servicedesk_plus
|
The encryptPassword function in Login.js in ManageEngine ServiceDesk Plus (SDP) 8012 and earlier uses a Caesar cipher for encryption of passwords in cookies, which makes it easier for remote attacker…
|
CWE-310
Cryptographic Issues
|
CVE-2011-1509
|
2024-11-21 10:26 |
2011-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298283
|
- |
|
emc
|
avamar
|
EMC Avamar 4.x, 5.0.x, and 6.0.x before 6.0.0-592 allows remote authenticated users to modify client data or obtain sensitive information about product activities by leveraging privileged access to a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-1740
|
2024-11-21 10:26 |
2011-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298284
|
- |
|
adobe
|
acrobat_reader
|
Unspecified vulnerability in Adobe Reader 10.x before 10.1.1 on Windows allows local users to gain privileges via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2011-1353
|
2024-11-21 10:26 |
2011-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298285
|
- |
|
ibm
|
websphere_application_server
|
Directory traversal vulnerability in the administration console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.41, 7.0 before 7.0.0.19, and 8.0 before 8.0.0.1 allows remote attackers to r…
|
CWE-22
Path Traversal
|
CVE-2011-1359
|
2024-11-21 10:26 |
2011-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298286
|
- |
|
shibboleth
|
opensaml shibboleth-identity-provider
|
Shibboleth OpenSAML library 2.4.x before 2.4.3 and 2.5.x before 2.5.1, and IdP before 2.3.2, allows remote attackers to forge messages and bypass authentication via an "XML Signature wrapping attack."
|
CWE-287
Improper Authentication
|
CVE-2011-1411
|
2024-11-21 10:26 |
2011-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298287
|
- |
|
linux redhat
|
linux_kernel enterprise_linux enterprise_virtualization_hypervisor
|
The Generic Receive Offload (GRO) implementation in the Linux kernel 2.6.18 on Red Hat Enterprise Linux 5 and 2.6.32 on Red Hat Enterprise Linux 6, as used in Red Hat Enterprise Virtualization (RHEV)…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-1576
|
2024-11-21 10:26 |
2011-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298288
|
- |
|
cisco
|
unified_communications_manager unified_presence_server
|
Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6.x, 7.x before 7.1(5b)su4, 8.0, and 8.5 before 8.5(1)su2 and Cisco Unified Presence Server 6.x, 7.x, 8.0, and 8.5 before 8.5xnr …
|
CWE-200
Information Exposure
|
CVE-2011-1643
|
2024-11-21 10:26 |
2011-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298289
|
- |
|
php
|
php
|
The (1) ZipArchive::addGlob and (2) ZipArchive::addPattern functions in ext/zip/php_zip.c in PHP 5.3.6 allow context-dependent attackers to cause a denial of service (application crash) via certain f…
|
CWE-399
Resource Management Errors
|
CVE-2011-1657
|
2024-11-21 10:26 |
2011-08-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298290
|
- |
|
aimluck
|
aipo aipo-asp
|
SQL injection vulnerability in Aimluck Aipo before 5.1.1, and Aipo for ASP before 5.1.1, allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2011-1342
|
2024-11-21 10:26 |
2011-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|