|
299201
|
- |
|
f-secure
|
internet_gatekeeper
|
F-Secure Internet Gatekeeper for Linux 3.x before 3.03 does not require authentication for reading access logs, which allows remote attackers to obtain potentially sensitive information via a TCP ses…
|
CWE-287
Improper Authentication
|
CVE-2011-0453
|
2024-11-21 10:24 |
2011-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299202
|
- |
|
apache
|
continuum archiva
|
Cross-site scripting (XSS) vulnerability in Apache Continuum 1.1 through 1.2.3.1, 1.3.6, and 1.4.0 Beta; and Archiva 1.3.0 through 1.3.3 and 1.0 through 1.22 allows remote attackers to inject arbitra…
|
CWE-79
Cross-site Scripting
|
CVE-2011-0533
|
2024-11-21 10:24 |
2011-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299203
|
- |
|
microsoft
|
windows_2003_server windows_server_2003
|
Integer underflow in the BowserWriteErrorLogEntry function in the Common Internet File System (CIFS) browser service in Mrxsmb.sys or bowser.sys in Active Directory in Microsoft Windows XP SP2 and SP…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-0654
|
2024-11-21 10:24 |
2011-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299204
|
- |
|
feh_project
|
feh
|
The feh_unique_filename function in utils.c in feh before 1.11.2 might allow local users to overwrite arbitrary files via a symlink attack on a /tmp/feh_ temporary file.
|
CWE-59
Link Following
|
CVE-2011-0702
|
2024-11-21 10:24 |
2011-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299205
|
- |
|
djangoproject
|
django
|
Directory traversal vulnerability in Django 1.1.x before 1.1.4 and 1.2.x before 1.2.5 on Windows might allow remote attackers to read or execute files via a / (slash) character in a key in a session …
|
CWE-22
Path Traversal
|
CVE-2011-0698
|
2024-11-21 10:24 |
2011-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299206
|
- |
|
djangoproject
|
django
|
Cross-site scripting (XSS) vulnerability in Django 1.1.x before 1.1.4 and 1.2.x before 1.2.5 might allow remote attackers to inject arbitrary web script or HTML via a filename associated with a file …
|
CWE-79
Cross-site Scripting
|
CVE-2011-0697
|
2024-11-21 10:24 |
2011-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299207
|
- |
|
djangoproject
|
django
|
Django 1.1.x before 1.1.4 and 1.2.x before 1.2.5 does not properly validate HTTP requests that contain an X-Requested-With header, which makes it easier for remote attackers to conduct cross-site req…
|
CWE-352
Origin Validation Error
|
CVE-2011-0696
|
2024-11-21 10:24 |
2011-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299208
|
- |
|
rubyonrails
|
rails
|
Ruby on Rails 2.1.x, 2.2.x, and 2.3.x before 2.3.11, and 3.x before 3.0.4, does not properly validate HTTP requests that contain an X-Requested-With header, which makes it easier for remote attackers…
|
CWE-352
Origin Validation Error
|
CVE-2011-0447
|
2024-11-21 10:24 |
2011-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299209
|
- |
|
ca
|
etrust_secure_content_manager gateway_security
|
The eCS component (ECSQdmn.exe) in CA ETrust Secure Content Manager 8.0 and CA Gateway Security 8.1 allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a craft…
|
CWE-189
Numeric Errors
|
CVE-2011-0758
|
2024-11-21 10:24 |
2011-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299210
|
- |
|
emc
|
replication_manager networker_module
|
The irccd.exe service in EMC Replication Manager Client before 5.3 and NetWorker Module for Microsoft Applications 2.1.x and 2.2.x allows remote attackers to execute arbitrary commands via the RunPro…
|
CWE-20
Improper Input Validation
|
CVE-2011-0647
|
2024-11-21 10:24 |
2011-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|