|
300521
|
- |
|
linux
|
linux_kernel
|
The orinoco_ioctl_set_auth function in drivers/net/wireless/orinoco/wext.c in the Linux kernel before 2.6.37 does not properly implement a TKIP protection mechanism, which makes it easier for remote …
|
NVD-CWE-noinfo
|
CVE-2010-4648
|
2024-11-21 10:21 |
2012-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300522
|
- |
|
freebsd
|
libarchive
|
Buffer overflow in libarchive 3.0 pre-release code allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted CAB file, which is …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-4666
|
2024-11-21 10:21 |
2012-04-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300523
|
- |
|
linux
|
linux_kernel
|
The Linux kernel, when using IPv6, allows remote attackers to determine whether a host is sniffing the network by sending an ICMPv6 Echo Request to a multicast address and determining whether an Echo…
|
CWE-200
Information Exposure
|
CVE-2010-4563
|
2024-11-21 10:21 |
2012-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300524
|
- |
|
microsoft
|
windows_2000 windows_server_2008 windows_vista windows_7 windows_2003_server windows_xp
|
Microsoft Windows 2008, 7, Vista, 2003, 2000, and XP, when using IPv6, allows remote attackers to determine whether a host is sniffing the network by sending an ICMPv6 Echo Request to a multicast add…
|
CWE-200
Information Exposure
|
CVE-2010-4562
|
2024-11-21 10:21 |
2012-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300525
|
- |
|
marco_hezel
|
hm_tinymarket
|
SQL injection vulnerability in the Tiny Market (hm_tinymarket) extension 0.5.4 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2010-4888
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300526
|
- |
|
raphael_zschorsch
|
commentsbe
|
SQL injection vulnerability in the Commenting system Backend Module (commentsbe) extension 0.0.2 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vector…
|
CWE-89
SQL Injection
|
CVE-2010-4887
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300527
|
- |
|
peter_proell
|
tweetbutton
|
Cross-site scripting (XSS) vulnerability in the "official twitter tweet button for your page" (tweetbutton) extension before 1.0.5 for TYPO3 allows remote attackers to inject arbitrary web script or …
|
CWE-79
Cross-site Scripting
|
CVE-2010-4886
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300528
|
- |
|
peter_proell
|
xing
|
Cross-site scripting (XSS) vulnerability in the XING Button (xing) extension before 1.0.2 for TYPO3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4885
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300529
|
- |
|
hinnendahl
|
gaestebuch
|
PHP remote file inclusion vulnerability in guestbook/gbook.php in Gaestebuch 1.2 allows remote attackers to execute arbitrary PHP code via a URL in the script_pfad parameter.
|
CWE-94
Code Injection
|
CVE-2010-4884
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300530
|
- |
|
modx
|
revolution
|
Cross-site scripting (XSS) vulnerability in manager/index.php in MODx Revolution 2.0.2-pl allows remote attackers to inject arbitrary web script or HTML via the modhash parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-4883
|
2024-11-21 10:21 |
2011-10-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|