|
303111
|
- |
|
apple gnu
|
mac_os_x groff
|
contrib/pdfmark/pdfroff.sh in GNU troff (aka groff) before 1.21 allows local users to overwrite arbitrary files via a symlink attack on a pdf#####.tmp temporary file.
|
CWE-59
Link Following
|
CVE-2009-5044
|
2024-11-21 10:11 |
2011-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303112
|
- |
|
creloaded
|
cre_loaded
|
CRE Loaded before 6.2.14 allows remote attackers to bypass authentication and gain administrator privileges via vectors related to a modified PHP_SELF variable, which is not properly handled by (1) i…
|
CWE-287
Improper Authentication
|
CVE-2009-5077
|
2024-11-21 10:11 |
2011-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303113
|
- |
|
creloaded
|
cre_loaded
|
CRE Loaded before 6.2.14, and possibly other versions before 6.3.x, allows remote attackers to bypass authentication and gain administrator privileges via a request with (1) login.php or (2) password…
|
CWE-287
Improper Authentication
|
CVE-2009-5076
|
2024-11-21 10:11 |
2011-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303114
|
- |
|
viewvc
|
viewvc
|
ViewVC before 1.1.11 allows remote attackers to bypass the cvsdb row_limit configuration setting, and consequently conduct resource-consumption attacks, via the limit parameter, as demonstrated by a …
|
CWE-399
Resource Management Errors
|
CVE-2009-5024
|
2024-11-21 10:11 |
2011-05-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303115
|
- |
|
zeacom
|
chat_server
|
Zeacom Chat Server before 5.1 uses too short a random string for the JSESSIONID value, which makes it easier for remote attackers to hijack sessions or cause a denial of service (Chat Server crash or…
|
CWE-310
Cryptographic Issues
|
CVE-2010-0217
|
2024-11-21 10:11 |
2011-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303116
|
- |
|
monkeysaudio
|
monkey\'s_audio
|
Monkey's Audio before 4.02 allows remote attackers to cause a denial of service (application crash) via a malformed APE file.
|
CWE-399
Resource Management Errors
|
CVE-2009-5075
|
2024-11-21 10:11 |
2011-05-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303117
|
- |
|
inventivetec
|
mediacast
|
authenticate_ad_setup_finished.cfm in MediaCAST 8 and earlier allows remote attackers to discover usernames and cleartext passwords by reading the error messages returned for requests that use the Us…
|
CWE-310
Cryptographic Issues
|
CVE-2010-0216
|
2024-11-21 10:11 |
2011-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303118
|
- |
|
libtiff
|
libtiff
|
Heap-based buffer overflow in tif_ojpeg.c in the OJPEG decoder in LibTIFF before 3.9.5 allows remote attackers to execute arbitrary code via a crafted TIFF file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-5022
|
2024-11-21 10:11 |
2011-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303119
|
- |
|
mojolicious
|
mojolicious
|
Unspecified vulnerability in the MojoX::Dispatcher::Static implementation in Mojolicious before 0.991250 has unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2009-5074
|
2024-11-21 10:11 |
2011-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303120
|
- |
|
ibm
|
tivoli_directory_server
|
IBM Tivoli Directory Server (TDS) 6.0 before 6.0.0.59 (aka 6.0.0.8-TIV-ITDS-IF0001) allows remote authenticated users to cause a denial of service (infinite loop and daemon hang) by adding a nested g…
|
CWE-399
Resource Management Errors
|
CVE-2009-5073
|
2024-11-21 10:11 |
2011-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|