|
298821
|
- |
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server (WAS) 6.0.x through 6.0.2.43, 6.1.x before 6.1.0.37, and 7.0.x before 7.0.0.17 on z/OS, when a Local OS user registry or Federated Repository with RACF adapter is use…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-1683
|
2024-11-21 10:26 |
2011-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298822
|
- |
|
tincan
|
phplist
|
Multiple cross-site request forgery (CSRF) vulnerabilities in phpList 2.10.13 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) create a list or …
|
CWE-352
Origin Validation Error
|
CVE-2011-1682
|
2024-11-21 10:26 |
2011-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298823
|
- |
|
kevinmehall
|
pithos
|
PreferencesPithosDialog.py in Pithos 0.3.7 does not properly restrict permissions for the .config/pithos.ini file in a user's home directory, which allows local users to obtain Pandora credentials by…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-1500
|
2024-11-21 10:26 |
2011-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298824
|
- |
|
perl
|
perl
|
The (1) lc, (2) lcfirst, (3) uc, and (4) ucfirst functions in Perl 5.10.x, 5.11.x, and 5.12.x through 5.12.3, and 5.13.x through 5.13.11, do not apply the taint attribute to the return value upon pro…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-1487
|
2024-11-21 10:26 |
2011-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298825
|
- |
|
ikiwiki
|
ikiwiki
|
ikiwiki before 3.20110328 does not ascertain whether the htmlscrubber plugin is enabled during processing of the "meta stylesheet" directive, which allows remote authenticated users to conduct cross-…
|
CWE-79
Cross-site Scripting
|
CVE-2011-1401
|
2024-11-21 10:26 |
2011-04-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298826
|
- |
|
vmware
|
open-vm-tools
|
vmware-hgfsmounter in VMware Open Virtual Machine Tools (aka open-vm-tools) 8.4.2-261024 and earlier attempts to append to the /etc/mtab file without first checking whether resource limits would inte…
|
CWE-16
Configuration
|
CVE-2011-1681
|
2024-11-21 10:26 |
2011-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298827
|
- |
|
ncpfs
|
ncpfs
|
ncpmount in ncpfs 2.2.6 and earlier does not remove the /etc/mtab~ lock file after a failed attempt to add a mount entry, which has unspecified impact and local attack vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-1680
|
2024-11-21 10:26 |
2011-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298828
|
- |
|
ncpfs
|
ncpfs
|
ncpfs 2.2.6 and earlier attempts to use (1) ncpmount to append to the /etc/mtab file and (2) ncpumount to append to the /etc/mtab.tmp file without first checking whether resource limits would interfe…
|
CWE-20
Improper Input Validation
|
CVE-2011-1679
|
2024-11-21 10:26 |
2011-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298829
|
- |
|
samba
|
samba
|
smbfs in Samba 3.5.8 and earlier attempts to use (1) mount.cifs to append to the /etc/mtab file and (2) umount.cifs to append to the /etc/mtab.tmp file without first checking whether resource limits …
|
CWE-20
Improper Input Validation
|
CVE-2011-1678
|
2024-11-21 10:26 |
2011-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
298830
|
- |
|
linux
|
util-linux
|
mount in util-linux 2.19 and earlier does not remove the /etc/mtab~ lock file after a failed attempt to add a mount entry, which has unspecified impact and local attack vectors.
|
NVD-CWE-noinfo
|
CVE-2011-1677
|
2024-11-21 10:26 |
2011-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|