|
300581
|
- |
|
gnome
|
gtk
|
Untrusted search path vulnerability in gdk/win32/gdkinput-win32.c in GTK+ before 2.21.8 allows local users to gain privileges via a Trojan horse Wintab32.dll file in the current working directory.
|
CWE-426
Untrusted Search Path
|
CVE-2010-4831
|
2024-11-21 10:21 |
2011-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300582
|
- |
|
t-dreams
|
job_career_package
|
SQL injection vulnerability in Resumes/TD_RESUME_Indlist.asp in Techno Dreams (T-Dreams) Job Career Package 3.0 allows remote attackers to execute arbitrary SQL commands via the z_Residency parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4830
|
2024-11-21 10:21 |
2011-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300583
|
- |
|
t-dreams
|
cars_ads_package
|
SQL injection vulnerability in processview.asp in Techno Dreams (T-Dreams) Cars Ads Package 2.0 allows remote attackers to execute arbitrary SQL commands via the key parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4829
|
2024-11-21 10:21 |
2011-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300584
|
- |
|
solarwinds
|
orion_network_performance_monitor
|
Multiple cross-site scripting (XSS) vulnerabilities in SolarWinds Orion Network Performance Monitor (NPM) 10.1 allow remote attackers to inject arbitrary web script or HTML via the (1) Title paramete…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4828
|
2024-11-21 10:21 |
2011-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300585
|
- |
|
snitz_communications
|
snitz_forums_2000
|
Cross-site scripting (XSS) vulnerability in members.asp in Snitz Forums 2000 3.4.07 allows remote attackers to inject arbitrary web script or HTML via the M_NAME parameter. NOTE: some of these detai…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4827
|
2024-11-21 10:21 |
2011-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300586
|
- |
|
snitz_communications
|
snitz_forums_2000
|
SQL injection vulnerability in members.asp in Snitz Forums 2000 3.4.07 allows remote attackers to execute arbitrary SQL commands via the M_NAME parameter. NOTE: some of these details are obtained fr…
|
CWE-89
SQL Injection
|
CVE-2010-4826
|
2024-11-21 10:21 |
2011-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300587
|
- |
|
pleer
|
wp-twitter-feed
|
Cross-site scripting (XSS) vulnerability in magpie_debug.php in the Twitter Feed plugin (wp-twitter-feed) 0.3.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the ur…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4825
|
2024-11-21 10:21 |
2011-08-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300588
|
7.8 |
HIGH
Local
|
linux canonical
|
linux_kernel ubuntu_linux
|
The iowarrior_write function in drivers/usb/misc/iowarrior.c in the Linux kernel before 2.6.37 does not properly allocate memory, which might allow local users to trigger a heap-based buffer overflow…
|
CWE-787
Out-of-bounds Write
|
CVE-2010-4656
|
2024-11-21 10:21 |
2011-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300589
|
5.5 |
MEDIUM
Local
|
linux vmware canonical
|
linux_kernel esx ubuntu_linux
|
net/core/ethtool.c in the Linux kernel before 2.6.36 does not initialize certain data structures, which allows local users to obtain potentially sensitive information from kernel heap memory by lever…
|
CWE-665
Improper Initialization
|
CVE-2010-4655
|
2024-11-21 10:21 |
2011-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
300590
|
- |
|
squirrelmail
|
squirrelmail
|
Multiple cross-site scripting (XSS) vulnerabilities in SquirrelMail 1.4.21 and earlier allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) drop-down selection list…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4555
|
2024-11-21 10:21 |
2011-07-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|