|
303161
|
- |
|
jruby
|
jruby
|
The regular expression engine in JRuby before 1.4.1, when $KCODE is set to 'u', does not properly handle characters immediately after a UTF-8 character, which allows remote attackers to conduct cross…
|
CWE-79
Cross-site Scripting
|
CVE-2010-1330
|
2024-11-21 10:14 |
2012-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303162
|
- |
|
apple
|
cfnetwork safari
|
Cross-site scripting (XSS) vulnerability in CFNetwork in Apple Safari before 5.0.6 allows remote attackers to inject arbitrary web script or HTML via a crafted text/plain file.
|
CWE-79
Cross-site Scripting
|
CVE-2010-1420
|
2024-11-21 10:14 |
2011-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303163
|
- |
|
apple
|
cfnetwork safari
|
CFNetwork in Apple Safari before 5.0.6 on Windows allows remote web servers to execute arbitrary code by replaying the NTLM credentials of a client user, related to a "credential reflection" issue.
|
CWE-255
Credentials Management
|
CVE-2010-1383
|
2024-11-21 10:14 |
2011-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303164
|
- |
|
quagga
|
quagga
|
bgpd in Quagga before 0.99.18 allows remote attackers to cause a denial of service (session reset) via a malformed AS_PATHLIMIT path attribute.
|
CWE-399
Resource Management Errors
|
CVE-2010-1675
|
2024-11-21 10:14 |
2011-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303165
|
- |
|
quagga
|
quagga
|
The extended-community parser in bgpd in Quagga before 0.99.18 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a malformed Extended Communiti…
|
NVD-CWE-Other
|
CVE-2010-1674
|
2024-11-21 10:14 |
2011-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303166
|
- |
|
debian
|
dpkg
|
Directory traversal vulnerability in dpkg-source in dpkg before 1.14.31 and 1.15.x allows user-assisted remote attackers to modify arbitrary files via directory traversal sequences in a patch for a s…
|
CWE-22
Path Traversal
|
CVE-2010-1679
|
2024-11-21 10:14 |
2011-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303167
|
- |
|
mhonarc
|
mhonarc
|
MHonArc 2.6.16 allows remote attackers to cause a denial of service (CPU consumption) via start tags that are placed within other start tags, as demonstrated by a <bo<bo<bo<bo<body>dy>dy>dy>dy> seque…
|
CWE-399
Resource Management Errors
|
CVE-2010-1677
|
2024-11-21 10:14 |
2011-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303168
|
- |
|
tor
|
tor
|
Heap-based buffer overflow in Tor before 0.2.1.28 and 0.2.2.x before 0.2.2.20-alpha allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via unspecif…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-1676
|
2024-11-21 10:14 |
2010-12-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303169
|
- |
|
apple
|
quicktime
|
Heap-based buffer overflow in Apple QuickTime before 7.6.9 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via crafted Track Header (aka …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-1508
|
2024-11-21 10:14 |
2010-12-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303170
|
3.7 |
LOW
Network
|
mit
|
kerberos_5
|
MIT Kerberos 5 (aka krb5) 1.7.x and 1.8.x through 1.8.3 does not properly determine the acceptability of checksums, which might allow remote attackers to forge GSS tokens, gain privileges, or have un…
|
CWE-310
Cryptographic Issues
|
CVE-2010-1324
|
2024-11-21 10:14 |
2010-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|