|
301121
|
6.1 |
MEDIUM
Network
|
ikiwiki
|
ikiwiki
|
Cross Site Scripting (XSS) in ikiwiki before 3.20110122 could allow remote attackers to insert arbitrary JavaScript due to insufficient checking in comments.
|
CWE-79
Cross-site Scripting
|
CVE-2011-0428
|
2024-11-21 10:23 |
2019-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301122
|
6.1 |
MEDIUM
Network
|
icewarp
|
webclient
|
IceWarp Webclient before 10.2.1 has XSS via an HTTP POST request: webmail/ with the parameter password is non-persistent in 10.2.0.
|
CWE-79
Cross-site Scripting
|
CVE-2010-5340
|
2024-11-21 10:23 |
2019-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301123
|
6.1 |
MEDIUM
Network
|
icewarp
|
webclient
|
IceWarp Webclient before 10.2.1 has XSS via an HTTP POST request: webmail/basic/ with the parameter _dlg[captcha][uid] is non-persistent in 10.1.3 and 10.2.0.
|
CWE-79
Cross-site Scripting
|
CVE-2010-5339
|
2024-11-21 10:23 |
2019-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301124
|
6.1 |
MEDIUM
Network
|
icewarp
|
webclient
|
IceWarp Webclient before 10.2.1 has XSS via an HTTP POST request: webmail/basic/ with the parameter _dlg[captcha][action] is non-persistent in 10.1.3 and 10.2.0.
|
CWE-79
Cross-site Scripting
|
CVE-2010-5338
|
2024-11-21 10:23 |
2019-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301125
|
6.1 |
MEDIUM
Network
|
icewarp
|
webclient
|
IceWarp Webclient before 10.2.1 has XSS via an HTTP POST request: webmail/basic/ with the parameter _dlg[captcha][controller] is non-persistent in 10.1.3 and 10.2.0.
|
CWE-79
Cross-site Scripting
|
CVE-2010-5337
|
2024-11-21 10:23 |
2019-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301126
|
6.1 |
MEDIUM
Network
|
icewarp
|
webclient
|
IceWarp Webclient before 10.2.1 has XSS via an HTTP POST request: admin/login.html with the parameter username is persistent in 10.2.0.
|
CWE-79
Cross-site Scripting
|
CVE-2010-5336
|
2024-11-21 10:23 |
2019-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301127
|
7.5 |
HIGH
Network
|
icewarp
|
webclient
|
IceWarp Webclient before 10.2.1 has a directory traversal vulnerability. This can result in loss of confidential data of IceWarp Mailserver and the operating system. Input passed via a certain parame…
|
CWE-22
Path Traversal
|
CVE-2010-5335
|
2024-11-21 10:23 |
2019-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301128
|
7.5 |
HIGH
Network
|
icewarp
|
webclient
|
IceWarp Webclient before 10.2.1 has a directory traversal vulnerability. This can result in loss of confidential data of IceWarp Mailserver and the operating system. Input passed via a certain parame…
|
CWE-22
Path Traversal
|
CVE-2010-5334
|
2024-11-21 10:23 |
2019-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301129
|
9.8 |
CRITICAL
Network
|
integard_home_project integard_pro_project
|
integard_home integard_pro
|
The web server in Integard Pro and Home before 2.0.0.9037 and 2.2.x before 2.2.0.9037 has a buffer overflow via a long password in an administration login POST request, leading to arbitrary code exec…
|
CWE-120
Classic Buffer Overflow
|
CVE-2010-5333
|
2024-11-21 10:23 |
2019-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301130
|
5.6 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel before 2.6.37, an out of bounds array access happened in drivers/net/mlx4/port.c. When searching for a free entry in either mlx4_register_vlan() or mlx4_register_mac(), and there …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-5332
|
2024-11-21 10:23 |
2019-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|