|
304701
|
7.5 |
HIGH
Network
|
redhat
|
directory_server 389_directory_server
|
The _ger_parse_control function in Red Hat Directory Server 8 and the 389 Directory Server allows attackers to cause a denial of service (NULL pointer dereference) via a crafted search query.
|
CWE-476
NULL Pointer Dereference
|
CVE-2010-2222
|
2024-11-21 10:16 |
2019-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304702
|
9.1 |
CRITICAL
Network
|
redhat
|
icedtea6
|
IcedTea6 before 1.7.4 does not properly check property access, which allows unsigned apps to read and write arbitrary files.
|
CWE-863
Incorrect Authorization
|
CVE-2010-2548
|
2024-11-21 10:16 |
2019-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304703
|
6.5 |
MEDIUM
Network
|
mumble debian
|
mumble debian_linux
|
Mumble: murmur-server has DoS due to malformed client query
|
CWE-20
Improper Input Validation
|
CVE-2010-2490
|
2024-11-21 10:16 |
2019-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304704
|
7.5 |
HIGH
Network
|
apache
|
derby
|
In Apache Derby 10.1.2.1, 10.2.2.0, 10.3.1.4, and 10.4.1.3, Export processing may allow an attacker to overwrite an existing file.
|
CWE-284
Improper Access Control
|
CVE-2010-2232
|
2024-11-21 10:16 |
2017-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304705
|
7.4 |
HIGH
Network
|
apache
|
wink
|
XML External Entity (XXE) vulnerability in Apache Wink 1.1.1 and earlier allows remote attackers to read arbitrary files or cause a denial of service via a crafted XML document.
|
CWE-611
XXE
|
CVE-2010-2245
|
2024-11-21 10:16 |
2017-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304706
|
- |
|
redhat
|
spacewalk-java network_proxy satellite
|
The monitoring probe display in spacewalk-java before 2.1.148-1 and Red Hat Network (RHN) Satellite 4.0.0 through 4.2.0 and 5.1.0 through 5.3.0, and Proxy 5.3.0, allows remote authenticated users wit…
|
CWE-20
Improper Input Validation
|
CVE-2010-2236
|
2024-11-21 10:16 |
2014-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304707
|
- |
|
gnome
|
gnome_display_manager
|
vicious-extensions/ve-misc.c in GNOME Display Manager (gdm) 2.20.x before 2.20.11, when GDM debug is enabled, logs the user password when it contains invalid UTF8 encoded characters, which might allo…
|
CWE-255
Credentials Management
|
CVE-2010-2387
|
2024-11-21 10:16 |
2012-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304708
|
- |
|
feh_project
|
feh
|
feh before 1.8, when the --wget-timestamp option is enabled, might allow remote attackers to execute arbitrary commands via shell metacharacters in a URL.
|
CWE-20
Improper Input Validation
|
CVE-2010-2246
|
2024-11-21 10:16 |
2011-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304709
|
- |
|
adobe
|
shockwave_player
|
Integer overflow in the dirapi.dll module in Adobe Shockwave Player before 11.5.9.620 allows attackers to execute arbitrary code via unspecified vectors.
|
CWE-189
Numeric Errors
|
CVE-2010-2589
|
2024-11-21 10:16 |
2011-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304710
|
- |
|
adobe
|
shockwave_player
|
The dirapi.dll module in Adobe Shockwave Player before 11.5.9.620 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vuln…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-2588
|
2024-11-21 10:16 |
2011-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|