|
300851
|
- |
|
dustincowell
|
free_simple_software
|
Free Simple Software 1.0 stores passwords in cleartext, which allows context-dependent attackers to obtain sensitive information.
|
CWE-310
Cryptographic Issues
|
CVE-2010-4311
|
2024-11-21 10:20 |
2010-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300852
|
- |
|
dustincowell
|
free_simple_software
|
SQL injection vulnerability in the download module in Free Simple Software 1.0 allows remote attackers to execute arbitrary SQL commands via the downloads_id parameter in a download_now action to ind…
|
CWE-89
SQL Injection
|
CVE-2010-4298
|
2024-11-21 10:20 |
2010-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300853
|
- |
|
apache
|
tomcat
|
Multiple cross-site scripting (XSS) vulnerabilities in the Manager application in Apache Tomcat 6.0.12 through 6.0.29 and 7.0.0 through 7.0.4 allow remote attackers to inject arbitrary web script or …
|
CWE-79
Cross-site Scripting
|
CVE-2010-4172
|
2024-11-21 10:20 |
2010-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300854
|
- |
|
wireshark
|
wireshark
|
epan/dissectors/packet-zbee-zcl.c in the ZigBee ZCL dissector in Wireshark 1.4.0 through 1.4.1 allows remote attackers to cause a denial of service (infinite loop) via a crafted ZCL packet, related t…
|
CWE-399
Resource Management Errors
|
CVE-2010-4301
|
2024-11-21 10:20 |
2010-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300855
|
- |
|
wireshark
|
wireshark
|
Heap-based buffer overflow in the dissect_ldss_transfer function (epan/dissectors/packet-ldss.c) in the LDSS dissector in Wireshark 1.2.0 through 1.2.12 and 1.4.0 through 1.4.1 allows remote attacker…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-4300
|
2024-11-21 10:20 |
2010-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300856
|
- |
|
cisco
|
unified_videoconferencing_system_5110_firmware unified_videoconferencing_system_5115_firmware unified_videoconferencing_system_5110 unified_videoconferencing_system_5115
|
Cisco Unified Videoconferencing (UVC) System 5110 and 5115, when the Linux operating system is used, uses world-readable permissions for the /etc/shadow file, which allows local users to discover enc…
|
CWE-255
Credentials Management
|
CVE-2010-4303
|
2024-11-21 10:20 |
2010-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300857
|
- |
|
cisco
|
unified_videoconferencing_system_5110_firmware unified_videoconferencing_system_5115_firmware unified_videoconferencing_system_5110 unified_videoconferencing_system_5115
|
/opt/rv/Versions/CurrentVersion/Mcu/Config/Mcu.val in Cisco Unified Videoconferencing (UVC) System 5110 and 5115, when the Linux operating system is used, uses a weak hashing algorithm for the (1) ad…
|
CWE-310
Cryptographic Issues
|
CVE-2010-4302
|
2024-11-21 10:20 |
2010-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300858
|
- |
|
openfabrics
|
libsdp
|
The default configuration of libsdp.conf in libsdp 1.1.104 and earlier creates log files in /tmp, which allows local users to overwrite arbitrary files via a (1) symlink or (2) hard link attack on th…
|
CWE-59
Link Following
|
CVE-2010-4173
|
2024-11-21 10:20 |
2010-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300859
|
- |
|
imagemagick
|
imagemagick
|
Untrusted search path vulnerability in configure.c in ImageMagick before 6.6.5-5, when MAGICKCORE_INSTALLED_SUPPORT is defined, allows local users to gain privileges via a Trojan horse configuration …
|
NVD-CWE-Other
|
CVE-2010-4167
|
2024-11-21 10:20 |
2010-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300860
|
- |
|
cisco
|
unified_videoconferencing_system_5110_firmware unified_videoconferencing_system_5115_firmware unified_videoconferencing_system_5110 unified_videoconferencing_system_5115 unified_videoconf…
|
Cisco Unified Videoconferencing (UVC) System 3545, 5110, 5115, and 5230; Unified Videoconferencing 3527 Primary Rate Interface (PRI) Gateway; Unified Videoconferencing 3522 Basic Rate Interfaces (BRI…
|
CWE-310
Cryptographic Issues
|
CVE-2010-4305
|
2024-11-21 10:20 |
2010-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|