|
298361
|
- |
|
linux
|
linux_kernel
|
The bond_select_queue function in drivers/net/bonding/bond_main.c in the Linux kernel before 2.6.39, when a network device with a large number of receive queues is installed but the default tx_queues…
|
CWE-20
Improper Input Validation
|
CVE-2011-1581
|
2024-11-21 10:26 |
2011-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298362
|
- |
|
rdesktop
|
rdesktop
|
Directory traversal vulnerability in the disk_create function in disk.c in rdesktop before 1.7.0, when disk redirection is enabled, allows remote RDP servers to read or overwrite arbitrary files via …
|
CWE-22
Path Traversal
|
CVE-2011-1595
|
2024-11-21 10:26 |
2011-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298363
|
- |
|
python
|
python
|
The urllib and urllib2 modules in Python 2.x before 2.7.2 and 3.x before 3.2.1 process Location headers that specify redirection to file: URLs, which makes it easier for remote attackers to obtain se…
|
CWE-399
Resource Management Errors
|
CVE-2011-1521
|
2024-11-21 10:26 |
2011-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298364
|
- |
|
emc
|
sourceone_email_management
|
The default configuration of ExShortcut\Web.config in EMC SourceOne Email Management before 6.6 SP1, when the Mobile Services component is used, does not properly set the localOnly attribute of the t…
|
CWE-16
Configuration
|
CVE-2011-1424
|
2024-11-21 10:26 |
2011-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298365
|
- |
|
radvision
|
iview_suite
|
SQL injection vulnerability in RADVISION iVIEW Suite before 7.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2011-1328
|
2024-11-21 10:26 |
2011-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298366
|
- |
|
pureftpd
|
pure-ftpd
|
The STARTTLS implementation in ftp_parser.c in Pure-FTPd before 1.0.30 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted FTP session…
|
CWE-399
Resource Management Errors
|
CVE-2011-1575
|
2024-11-21 10:26 |
2011-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298367
|
- |
|
apache
|
tomcat
|
Apache Tomcat 7.0.12 and 7.0.13 processes the first request to a servlet without following security constraints that have been configured through annotations, which allows remote attackers to bypass …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-1582
|
2024-11-21 10:26 |
2011-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298368
|
- |
|
trendmicro
|
trend_micro_internet_security
|
The Keystroke Encryption feature in Trend Micro Internet Security 2009 (aka Virus Buster 2009 and PC-cillin 2009) does not completely encrypt passwords, which allows local users to obtain sensitive i…
|
CWE-310
Cryptographic Issues
|
CVE-2011-1327
|
2024-11-21 10:26 |
2011-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298369
|
- |
|
exim
|
exim
|
The DKIM implementation in Exim 4.7x before 4.76 permits matching for DKIM identities to apply to lookup items, instead of only strings, which allows remote attackers to execute arbitrary code or acc…
|
CWE-20
Improper Input Validation
|
CVE-2011-1407
|
2024-11-21 10:26 |
2011-05-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298370
|
- |
|
mahara
|
mahara
|
Mahara before 1.3.6 does not properly handle an https URL in the wwwroot configuration setting, which makes it easier for user-assisted remote attackers to obtain credentials by sniffing the network …
|
CWE-16
Configuration
|
CVE-2011-1406
|
2024-11-21 10:26 |
2011-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|