|
304681
|
- |
|
paul_mcenery
|
php_bible_search
|
Cross-site scripting (XSS) vulnerability in bible.php in PHP Bible Search allows remote attackers to inject arbitrary web script or HTML via the chapter parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-2617
|
2024-11-21 10:17 |
2010-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304682
|
- |
|
paul_mcenery
|
php_bible_search
|
SQL injection vulnerability in bible.php in PHP Bible Search, probably 0.99, allows remote attackers to execute arbitrary SQL commands via the chapter parameter.
|
CWE-89
SQL Injection
|
CVE-2010-2616
|
2024-11-21 10:17 |
2010-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304683
|
- |
|
grafik-power
|
grafik_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in admin/admin.php in Grafik CMS 1.1.2, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) page_menu a…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2615
|
2024-11-21 10:17 |
2010-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304684
|
- |
|
grafik-power
|
grafik_cms
|
SQL injection vulnerability in admin/admin.php in Grafik CMS 1.1.2, and possibly earlier, allows remote attackers to execute arbitrary SQL commands via the id parameter in an edit_page action.
|
CWE-89
SQL Injection
|
CVE-2010-2614
|
2024-11-21 10:17 |
2010-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304685
|
- |
|
harmistechnology
|
com_awd_song
|
Cross-site scripting (XSS) vulnerability in the JExtensions JE Awd Song (com_awd_song) component for Joomla! allows remote attackers to inject arbitrary web script or HTML via the song review field, …
|
CWE-79
Cross-site Scripting
|
CVE-2010-2613
|
2024-11-21 10:17 |
2010-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304686
|
- |
|
hp
|
openvms openvms_for_integrity_servers
|
Unspecified vulnerability in the HP OpenVMS Auditing feature in OpenVMS ALPHA 7.3-2, 8.2, and 8.3; and OpenVMS for Integrity Servers 8.3 AND 8.3-1H1; allows local users to obtain sensitive informatio…
|
CWE-200 NVD-CWE-noinfo
Information Exposure
|
CVE-2010-2612
|
2024-11-21 10:17 |
2010-07-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304687
|
5.5 |
MEDIUM
Local
|
clusterlabs
|
cluster_glue pacemaker
|
stonith-ng in pacemaker and cluster-glue passed passwords as commandline parameters, making it possible for local attackers to gain access to passwords of the HA stack and potentially influence its o…
|
CWE-287
Improper Authentication
|
CVE-2010-2496
|
2024-11-21 10:16 |
2021-10-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304688
|
7.8 |
HIGH
Local
|
linux
|
linux_kernel
|
A flaw was discovered in gfs2 file system’s handling of acls (access control lists). An unprivileged local attacker could exploit this flaw to gain access or execute any file stored in the gfs2 file …
|
-
|
CVE-2010-2525
|
2024-11-21 10:16 |
2021-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304689
|
7.5 |
HIGH
Network
|
znc
|
znc
|
NULL pointer dereference vulnerability in ZNC before 0.092 caused by traffic stats when there are unauthenticated connections.
|
CWE-476
NULL Pointer Dereference
|
CVE-2010-2488
|
2024-11-21 10:16 |
2019-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304690
|
9.8 |
CRITICAL
Network
|
syscp_project
|
syscp
|
syscp 1.4.2.1 allows attackers to add arbitrary paths via the documentroot of a domain by appending a colon to it and setting the open basedir path to use that domain documentroot.
|
CWE-20
Improper Input Validation
|
CVE-2010-2476
|
2024-11-21 10:16 |
2019-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|