|
299391
|
9.8 |
CRITICAL
Network
|
integard_home_project integard_pro_project
|
integard_home integard_pro
|
The web server in Integard Pro and Home before 2.0.0.9037 and 2.2.x before 2.2.0.9037 has a buffer overflow via a long password in an administration login POST request, leading to arbitrary code exec…
|
CWE-120
Classic Buffer Overflow
|
CVE-2010-5333
|
2024-11-21 10:23 |
2019-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299392
|
5.6 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel before 2.6.37, an out of bounds array access happened in drivers/net/mlx4/port.c. When searching for a free entry in either mlx4_register_vlan() or mlx4_register_mac(), and there …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-5332
|
2024-11-21 10:23 |
2019-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299393
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
In the Linux kernel before 2.6.34, a range check issue in drivers/gpu/drm/radeon/atombios.c could cause an off by one (buffer overflow) problem. NOTE: At least one Linux maintainer believes that this…
|
CWE-193
Off-by-one Error
|
CVE-2010-5331
|
2024-11-21 10:23 |
2019-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299394
|
9.8 |
CRITICAL
Network
|
ui
|
airos
|
On certain Ubiquiti devices, Command Injection exists via a GET request to stainfo.cgi (aka Show AP info) because the ifname variable is not sanitized, as demonstrated by shell metacharacters. The fi…
|
CWE-77
Command Injection
|
CVE-2010-5330
|
2024-11-21 10:23 |
2019-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299395
|
9.8 |
CRITICAL
Network
|
rockwellautomation
|
rslogix plc5_1785-lx_firmware slc5\/01_1747-l5x_firmware
|
The potential exists for exposure of the product's password used to restrict unauthorized access to Rockwell PLC5/SLC5/0x/RSLogix 1785-Lx and 1747-L5x controllers. The potential exists for an unautho…
|
CWE-284
Improper Access Control
|
CVE-2010-5305
|
2024-11-21 10:23 |
2019-03-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299396
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The video_usercopy function in drivers/media/video/v4l2-ioctl.c in the Linux kernel before 2.6.39 relies on the count value of a v4l2_ext_controls data structure to determine a kmalloc size, which mi…
|
CWE-399
Resource Management Errors
|
CVE-2010-5329
|
2024-11-21 10:23 |
2017-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299397
|
4.3 |
MEDIUM
Physics
|
linux
|
linux_kernel
|
Memory leak in drivers/media/video/videobuf-core.c in the videobuf subsystem in the Linux kernel 2.6.x through 4.x allows local users to cause a denial of service (memory consumption) by leveraging /…
|
CWE-772
Missing Release of Resource after Effective Lifetime
|
CVE-2010-5321
|
2024-11-21 10:23 |
2017-04-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299398
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
include/linux/init_task.h in the Linux kernel before 2.6.35 does not prevent signals with a process group ID of zero from reaching the swapper process, which allows local users to cause a denial of s…
|
CWE-20
Improper Input Validation
|
CVE-2010-5328
|
2024-11-21 10:23 |
2017-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299399
|
8.8 |
HIGH
Network
|
liferay
|
liferay_portal
|
Liferay Portal through 6.2.10 allows remote authenticated users to execute arbitrary shell commands via a crafted Velocity template.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-5327
|
2024-11-21 10:23 |
2017-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
299400
|
9.8 |
CRITICAL
Network
|
redhat linuxfoundation oracle
|
enterprise_linux_server_eus enterprise_linux_hpc_node enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation foomatic-filters linux enterprise_linux
|
Heap-based buffer overflow in the unhtmlify function in foomatic-rip in foomatic-filters before 4.0.6 allows remote attackers to cause a denial of service (memory corruption and crash) or possibly ex…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-5325
|
2024-11-21 10:23 |
2016-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|