|
304271
|
- |
|
andy_armstrong
|
cgi.pm cgi-simple
|
The multipart_init function in (1) CGI.pm before 3.50 and (2) Simple.pm in CGI::Simple 1.112 and earlier uses a hardcoded value of the MIME boundary string in multipart/x-mixed-replace content, which…
|
CWE-94
Code Injection
|
CVE-2010-2761
|
2024-11-21 10:17 |
2010-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304272
|
- |
|
ibm
|
websphere_commerce
|
IBM WebSphere Commerce Enterprise 7.0 before 7.0.0.2 allows remote attackers to read messages intended for other recipients via vectors involving access by the outbound messaging system to the RunTim…
|
CWE-200
Information Exposure
|
CVE-2010-2639
|
2024-11-21 10:17 |
2010-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304273
|
- |
|
linux fedoraproject suse opensuse debian canonical
|
linux_kernel fedora linux_enterprise_desktop linux_enterprise_server opensuse debian_linux ubuntu_linux
|
drivers/media/video/v4l2-compat-ioctl32.c in the Video4Linux (V4L) implementation in the Linux kernel before 2.6.36 on 64-bit platforms does not validate the destination of a memory copy operation, w…
|
CWE-20
Improper Input Validation
|
CVE-2010-2963
|
2024-11-21 10:17 |
2010-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304274
|
- |
|
linux fedoraproject suse opensuse canonical
|
linux_kernel fedora linux_enterprise_desktop linux_enterprise_server opensuse linux_enterprise_real_time_extension ubuntu_linux
|
drivers/gpu/drm/i915/i915_gem.c in the Graphics Execution Manager (GEM) in the Intel i915 driver in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 2.6.36 does not properly va…
|
CWE-20
Improper Input Validation
|
CVE-2010-2962
|
2024-11-21 10:17 |
2010-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304275
|
- |
|
cisco
|
unified_videoconferencing_system_5110_firmware unified_videoconferencing_system_5115_firmware unified_videoconferencing_system_5110 unified_videoconferencing_system_5115
|
Cisco Unified Videoconferencing (UVC) System 5110 and 5115, when the Linux operating system is used, has a default password for the (1) root, (2) cs, and (3) develop accounts, which makes it easier f…
|
CWE-255
Credentials Management
|
CVE-2010-3038
|
2024-11-21 10:17 |
2010-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304276
|
- |
|
cisco
|
unified_videoconferencing_system_5110_firmware unified_videoconferencing_system_5115_firmware unified_videoconferencing_system_5110 unified_videoconferencing_system_5115 unified_videoconf…
|
goform/websXMLAdminRequestCgi.cgi in Cisco Unified Videoconferencing (UVC) System 5110 and 5115, and possibly Unified Videoconferencing System 3545 and 5230, Unified Videoconferencing 3527 Primary Ra…
|
CWE-94
Code Injection
|
CVE-2010-3037
|
2024-11-21 10:17 |
2010-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304277
|
- |
|
landesk
|
management_gateway
|
gsb/drivers.php in LANDesk Management Gateway 4.0 through 4.0-1.48 and 4.2 through 4.2-1.8 allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in the DRI…
|
CWE-20
Improper Input Validation
|
CVE-2010-2892
|
2024-11-21 10:17 |
2010-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304278
|
- |
|
ibm
|
websphere_mq
|
Unspecified vulnerability in IBM WebSphere MQ 7.0 before 7.0.1.5 allows remote authenticated users to cause a denial of service (disk consumption) via vectors that trigger an FDC with an RM680004 Pro…
|
CWE-399
Resource Management Errors
|
CVE-2010-2638
|
2024-11-21 10:17 |
2010-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304279
|
- |
|
ibm
|
websphere_mq
|
IBM WebSphere MQ 6.0 before 6.0.2.9 and 7.0 before 7.0.1.1 does not encrypt the username and password in the security parameters field, which allows remote attackers to obtain sensitive information b…
|
CWE-310
Cryptographic Issues
|
CVE-2010-2637
|
2024-11-21 10:17 |
2010-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304280
|
- |
|
microsoft
|
forefront_unified_access_gateway
|
Cross-site scripting (XSS) vulnerability in the mobile portal in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, 2010 Update 1, and 2010 Update 2 allows remote attackers to inject arbitra…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2734
|
2024-11-21 10:17 |
2010-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|