|
300081
|
- |
|
wireshark
|
wireshark
|
The ASN.1 BER dissector in Wireshark 1.4.0 through 1.4.2 allows remote attackers to cause a denial of service (assertion failure) via crafted packets, as demonstrated by fuzz-2010-12-30-28473.pcap.
|
CWE-399
Resource Management Errors
|
CVE-2011-0445
|
2024-11-21 10:23 |
2011-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300082
|
- |
|
wireshark
|
wireshark
|
Buffer overflow in the MAC-LTE dissector (epan/dissectors/packet-mac-lte.c) in Wireshark 1.2.0 through 1.2.13 and 1.4.0 through 1.4.2 allows remote attackers to cause a denial of service (crash) and …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-0444
|
2024-11-21 10:23 |
2011-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300083
|
- |
|
tinybb
|
tinybb
|
SQL injection vulnerability in inc/tinybb-settings.php in tinyBB 1.2, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the id parameter in a profile ac…
|
CWE-89
SQL Injection
|
CVE-2011-0443
|
2024-11-21 10:23 |
2011-01-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300084
|
- |
|
polyvision
|
roomwizard_firmware roomwizard
|
The PolyVision RoomWizard with firmware 3.2.3 has a default password of roomwizard for the administrator account, which makes it easier for remote attackers to obtain console access via an HTTP sessi…
|
CWE-255
Credentials Management
|
CVE-2011-0423
|
2024-11-21 10:23 |
2011-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300085
|
- |
|
ibm
|
websphere_application_server
|
The Administrative Console component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.35 and 7.0 before 7.0.0.15 does not properly restrict access to console servlets, which allows remote a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-0316
|
2024-11-21 10:23 |
2011-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300086
|
- |
|
ibm
|
websphere_application_server
|
Cross-site scripting (XSS) vulnerability in the Servlet Engine / Web Container component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.35 and 7.0 before 7.0.0.15 allows remote attackers …
|
CWE-79
Cross-site Scripting
|
CVE-2011-0315
|
2024-11-21 10:23 |
2011-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300087
|
- |
|
ibm
|
websphere_mq
|
Heap-based buffer overflow in IBM WebSphere MQ 6.0 before 6.0.2.11 and 7.0 before 7.0.1.5 allows remote authenticated users to execute arbitrary code or cause a denial of service (queue manager crash…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-0314
|
2024-11-21 10:23 |
2011-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300088
|
- |
|
microsoft
|
data_access_components windows_data_access_components
|
Microsoft Data Access Components (MDAC) 2.8 SP1 and SP2, and Windows Data Access Components (WDAC) 6.0, does not properly validate memory allocation for internal data structures, which allows remote …
|
CWE-20
Improper Input Validation
|
CVE-2011-0027
|
2024-11-21 10:23 |
2011-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300089
|
- |
|
microsoft
|
data_access_components windows_data_access_components
|
Integer signedness error in the SQLConnectW function in an ODBC API (odbc32.dll) in Microsoft Data Access Components (MDAC) 2.8 SP1 and SP2, and Windows Data Access Components (WDAC) 6.0, allows remo…
|
CWE-189
Numeric Errors
|
CVE-2011-0026
|
2024-11-21 10:23 |
2011-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300090
|
- |
|
phenotype-cms
|
phenotype_cms
|
SQL injection vulnerability in the store function in _phenotype/system/class/PhenoTypeDataObject.class.php in Phenotype CMS 3.0 allows remote attackers to execute arbitrary SQL commands via a crafted…
|
CWE-89
SQL Injection
|
CVE-2011-0407
|
2024-11-21 10:23 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|