|
303921
|
- |
|
nusoftware
|
nubuilder
|
Directory traversal vulnerability in productionnu2/fileuploader.php in nuBuilder 10.04.20, and possibly other versions before 10.07.12, allows remote attackers to include and execute arbitrary local …
|
CWE-22
Path Traversal
|
CVE-2010-2850
|
2024-11-21 10:17 |
2010-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303922
|
- |
|
nusoftware
|
nubuilder
|
Cross-site scripting (XSS) vulnerability in productionnu2/nuedit.php in nuBuilder 10.04.20, and possibly other versions before 10.07.12, allows remote attackers to inject arbitrary web script or HTML…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2849
|
2024-11-21 10:17 |
2010-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303923
|
- |
|
gonzalo_maser
|
com_artforms
|
Directory traversal vulnerability in assets/captcha/includes/alikon/playcode.php in the InterJoomla ArtForms (com_artforms) component 2.1b7.2 RC2 for Joomla! allows remote attackers to read arbitrary…
|
CWE-22
Path Traversal
|
CVE-2010-2848
|
2024-11-21 10:17 |
2010-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303924
|
- |
|
gonzalo_maser
|
com_artforms
|
Multiple SQL injection vulnerabilities in the InterJoomla ArtForms (com_artforms) component 2.1b7.2 RC2 for Joomla! allow remote attackers to execute arbitrary SQL commands via the viewform parameter…
|
CWE-89
SQL Injection
|
CVE-2010-2847
|
2024-11-21 10:17 |
2010-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303925
|
- |
|
gonzalo_maser
|
com_artforms
|
Cross-site scripting (XSS) vulnerability in the InterJoomla ArtForms (com_artforms) component 2.1b7.2 RC2 for Joomla! allows remote attackers to inject arbitrary web script or HTML via the afmsg para…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2846
|
2024-11-21 10:17 |
2010-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303926
|
- |
|
schlu.net
|
com_quickfaq
|
SQL injection vulnerability in the QuickFAQ (com_quickfaq) component 1.0.3 for Joomla! allows remote attackers to execute arbitrary SQL commands via the Itemid parameter in a category action to index…
|
CWE-89
SQL Injection
|
CVE-2010-2845
|
2024-11-21 10:17 |
2010-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303927
|
- |
|
newanz
|
newsoffice
|
Cross-site scripting (XSS) vulnerability in news_show.php in Newanz NewsOffice 2.0.18 allows remote attackers to inject arbitrary web script or HTML via the n-cat parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-2844
|
2024-11-21 10:17 |
2010-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303928
|
7.8 |
HIGH
Local
|
siemens
|
simatic_wincc simatic_pcs_7
|
Siemens Simatic WinCC and PCS 7 SCADA system uses a hard-coded password, which allows local users to access a back-end database and gain privileges, as demonstrated in the wild in July 2010 by the St…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2010-2772
|
2024-11-21 10:17 |
2010-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303929
|
- |
|
ibm
|
soliddb
|
solid.exe in IBM solidDB before 6.5 FP2 allows remote attackers to execute arbitrary code via a long username field in the first handshake packet.
|
CWE-94
Code Injection
|
CVE-2010-2771
|
2024-11-21 10:17 |
2010-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303930
|
- |
|
vmware
|
studio
|
Multiple unspecified vulnerabilities in the Virtual Appliance Management Infrastructure (VAMI) in VMware Studio 2.0 allow remote authenticated users to execute arbitrary commands via vectors involvin…
|
NVD-CWE-noinfo
|
CVE-2010-2667
|
2024-11-21 10:17 |
2010-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|