|
303931
|
- |
|
freebsd
|
freebsd
|
FreeBSD 7.1 through 8.1-PRERELEASE does not copy the read-only flag when creating a duplicate mbuf buffer reference, which allows local users to cause a denial of service (system file corruption) and…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-2693
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303932
|
- |
|
wimleers
|
hierarchical_select
|
Cross-site scripting (XSS) vulnerability in the Hierarchical Select module 5.x before 5.x-3.2 and 6.x before 6.x-3.2 for Drupal allows remote authenticated users, with administer taxonomy permissions…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2724
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303933
|
- |
|
lsoft
|
listserv
|
Cross-site scripting (XSS) vulnerability in LISTSERV 15 and 16 allows remote attackers to inject arbitrary web script or HTML via the T parameter. NOTE: the provenance of this information is unknown…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2723
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303934
|
- |
|
rightinpoint
|
lyrics_engine
|
Cross-site scripting (XSS) vulnerability in index.php in RightInPoint Lyrics Script 3.0 allows remote attackers to inject arbitrary web script or HTML via the artist_id parameter, which is not proper…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2722
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303935
|
- |
|
rightinpoint
|
lyrics_engine
|
SQL injection vulnerability in index.php in RightInPoint Lyrics Script 3.0 allows remote attackers to execute arbitrary SQL commands via the artist_id parameter in an addalbum action.
|
CWE-89
SQL Injection
|
CVE-2010-2721
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303936
|
- |
|
phpaa
|
phpaacms
|
SQL injection vulnerability in list.php in phpaaCms 0.3.1 UTF-8, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the id parameter. NOTE: some of these deta…
|
CWE-89
SQL Injection
|
CVE-2010-2720
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303937
|
- |
|
phpaa
|
phpaacms
|
SQL injection vulnerability in show.php in phpaaCms 0.3.1 UTF-8, and possibly other versions, allows remote attackers to execute arbitrary SQL commands via the id parameter.
|
CWE-89
SQL Injection
|
CVE-2010-2719
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303938
|
- |
|
cruxsoftware
|
cruxpa
|
Multiple cross-site scripting (XSS) vulnerabilities in CruxSoftware CruxPA 2.00, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) txtusername parameter …
|
CWE-79
Cross-site Scripting
|
CVE-2010-2718
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303939
|
- |
|
cruxsoftware
|
cruxcms
|
Cross-site scripting (XSS) vulnerability in manager/login.php in CruxSoftware CruxCMS 3.0, and possibly earlier, allows remote attackers to inject arbitrary web script or HTML via the txtusername par…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2717
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303940
|
- |
|
rich_kavanagh
|
psnews
|
Multiple SQL injection vulnerabilities in PsNews 1.3 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) ndetail.php and (2) print.php.
|
CWE-89
SQL Injection
|
CVE-2010-2716
|
2024-11-21 10:17 |
2010-07-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|