|
297631
|
7.5 |
HIGH
Network
|
freebsd netbsd
|
freebsd netbsd
|
Information Disclosure vulnerability in the 802.11 stack, as used in FreeBSD before 8.2 and NetBSD when using certain non-x86 architectures. A signedness error in the IEEE80211_IOC_CHANINFO ioctl all…
|
CWE-200
Information Exposure
|
CVE-2011-2480
|
2024-11-21 10:28 |
2019-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297632
|
7.5 |
HIGH
Network
|
drupal debian redhat fedoraproject
|
drupal debian_linux enterprise_linux fedora
|
An access bypass issue was found in Drupal 7.x before version 7.5. If a Drupal site has the ability to attach File upload fields to any entity type in the system or has the ability to point individua…
|
CWE-863
Incorrect Authorization
|
CVE-2011-2726
|
2024-11-21 10:28 |
2019-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297633
|
6.5 |
MEDIUM
Network
|
google
|
blink
|
Use after free vulnerability exists in WebKit in Google Chrome before Blink M12 in RenderLayerwhen removing elements with reflections.
|
CWE-416
Use After Free
|
CVE-2011-2334
|
2024-11-21 10:28 |
2019-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297634
|
7.5 |
HIGH
Network
|
google
|
blink
|
A double-free vulnerability exists in WebKit in Google Chrome before Blink M12 in the WebCore::CSSSelector function.
|
CWE-415
Double Free
|
CVE-2011-2335
|
2024-11-21 10:28 |
2019-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297635
|
9.8 |
CRITICAL
Network
|
google
|
blink
|
A wrong type is used for a return value from strlen in WebKit in Google Chrome before Blink M12 on 64-bit platforms.
|
CWE-704
Incorrect Type Conversion or Cast
|
CVE-2011-2337
|
2024-11-21 10:28 |
2019-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297636
|
6.5 |
MEDIUM
Network
|
google
|
blink
|
An issue exists in WebKit in Google Chrome before Blink M12. when clearing lists in AnimationControllerPrivate that signal when a hardware animation starts.
|
CWE-755
Improper Handling of Exceptional Conditions
|
CVE-2011-2336
|
2024-11-21 10:28 |
2019-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297637
|
6.5 |
MEDIUM
Network
|
google
|
blink
|
Use after free vulnerability in documentloader in WebKit in Google Chrome before Blink M13 in DocumentWriter::replaceDocument function.
|
CWE-416
Use After Free
|
CVE-2011-2353
|
2024-11-21 10:28 |
2019-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297638
|
7.2 |
HIGH
Network
|
cisco
|
telepresence_video_communication_server
|
Cisco Video Communications Server (VCS) before X7.0.3 contains a command injection vulnerability which allows remote, authenticated attackers to execute arbitrary commands.
|
CWE-74
Injection
|
CVE-2011-2538
|
2024-11-21 10:28 |
2019-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297639
|
9.8 |
CRITICAL
Network
|
apache debian redhat canonical
|
mod_perl debian_linux enterprise_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation ubuntu_linux
|
mod_perl 2.0 through 2.0.10 allows attackers to execute arbitrary Perl code by placing it in a user-owned .htaccess file, because (contrary to the documentation) there is no configuration option that…
|
CWE-94
Code Injection
|
CVE-2011-2767
|
2024-11-21 10:28 |
2018-08-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
297640
|
7.5 |
HIGH
Network
|
pyro_project
|
pyro
|
pyro before 3.15 unsafely handles pid files in temporary directory locations and opening the pid file as root. An attacker can use this flaw to overwrite arbitrary files via symlinks.
|
CWE-59
Link Following
|
CVE-2011-2765
|
2024-11-21 10:28 |
2018-08-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|