|
300711
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Format string vulnerability in PackageKit in Apple Mac OS X 10.6.x before 10.6.6 allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (application crash) via vect…
|
CWE-134
Use of Externally-Controlled Format String
|
CVE-2010-4013
|
2024-11-21 10:20 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300712
|
- |
|
novell
|
vibe_onprem
|
Cross-site scripting (XSS) vulnerability in gwtTeaming.rpc in Novell Vibe OnPrem 3 BETA allows remote authenticated users to inject arbitrary web script or HTML via the Micro Blog (aka What Are You W…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4322
|
2024-11-21 10:20 |
2011-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300713
|
- |
|
ca
|
xosoft_replication arcserve_replication_and_high_availability xosoft_content_distribution xosoft_high_availability
|
Buffer overflow in mng_core_com.dll in CA XOsoft Replication r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft High Availability r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft Content Distribution r12.0 SP1 and r…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-3984
|
2024-11-21 10:20 |
2011-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300714
|
- |
|
novell
|
identity_manager_roles_based_provisioning_module identity_manager
|
Cross-site scripting (XSS) vulnerability in the Approval Form in the User Application in the Roles Based Provisioning Module 3.7.0 before 370D in Novell Identity Manager (aka IDM) allows remote attac…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4324
|
2024-11-21 10:20 |
2011-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300715
|
- |
|
linux suse opensuse
|
linux_kernel linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit
|
Multiple integer overflows in the (1) pppol2tp_sendmsg function in net/l2tp/l2tp_ppp.c, and the (2) l2tp_ip_sendmsg function in net/l2tp/l2tp_ip.c, in the PPPoL2TP and IPoL2TP implementations in the …
|
CWE-190
Integer Overflow or Wraparound
|
CVE-2010-4160
|
2024-11-21 10:20 |
2011-01-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300716
|
- |
|
mantisbt
|
mantisbt
|
Directory traversal vulnerability in admin/upgrade_unattended.php in MantisBT before 1.2.4 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the db_type param…
|
CWE-22
Path Traversal
|
CVE-2010-4350
|
2024-11-21 10:20 |
2011-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300717
|
- |
|
mantisbt
|
mantisbt
|
admin/upgrade_unattended.php in MantisBT before 1.2.4 allows remote attackers to obtain sensitive information via an invalid db_type parameter, which reveals the installation path in an error message…
|
CWE-200
Information Exposure
|
CVE-2010-4349
|
2024-11-21 10:20 |
2011-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300718
|
- |
|
mantisbt
|
mantisbt
|
Cross-site scripting (XSS) vulnerability in admin/upgrade_unattended.php in MantisBT before 1.2.4 allows remote attackers to inject arbitrary web script or HTML via the db_type parameter, related to …
|
CWE-79
Cross-site Scripting
|
CVE-2010-4348
|
2024-11-21 10:20 |
2011-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300719
|
- |
|
linux suse opensuse debian
|
linux_kernel linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit linux_enterprise_real_time_extension debian_linux
|
Multiple integer underflows in the x25_parse_facilities function in net/x25/x25_facilities.c in the Linux kernel before 2.6.36.2 allow remote attackers to cause a denial of service (system crash) via…
|
CWE-191
Integer Underflow (Wrap or Wraparound)
|
CVE-2010-4164
|
2024-11-21 10:20 |
2011-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300720
|
- |
|
linux suse opensuse
|
linux_kernel linux_enterprise_desktop linux_enterprise_server opensuse linux_enterprise_real_time_extension
|
The blk_rq_map_user_iov function in block/blk-map.c in the Linux kernel before 2.6.36.2 allows local users to cause a denial of service (panic) via a zero-length I/O request in a device ioctl to a SC…
|
CWE-20
Improper Input Validation
|
CVE-2010-4163
|
2024-11-21 10:20 |
2011-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|