|
306021
|
- |
|
awstats
|
awstats
|
Open redirect vulnerability in awredir.pl in AWStats before 6.95 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
|
CWE-20
Improper Input Validation
|
CVE-2009-5020
|
2024-11-21 10:11 |
2010-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306022
|
- |
|
webwiz
|
web_wiz_newspad
|
Web Wiz NewsPad stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direct request for database/NewsPad.mdb.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-5019
|
2024-11-21 10:11 |
2010-12-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306023
|
- |
|
symantec
|
mobile_security
|
The Symantec Norton Mobile Security application 1.0 Beta for Android records setup details, possibly including wipe/lock credentials, in the device logs, which allows user-assisted remote attackers t…
|
CWE-255
Credentials Management
|
CVE-2010-0113
|
2024-11-21 10:11 |
2010-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306024
|
- |
|
symantec
|
im_manager
|
Multiple SQL injection vulnerabilities in the Administrative Interface in the IIS extension in Symantec IM Manager before 8.4.16 allow remote attackers to execute arbitrary SQL commands via (1) the r…
|
CWE-89
SQL Injection
|
CVE-2010-0112
|
2024-11-21 10:11 |
2010-10-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306025
|
- |
|
apache sap
|
axis2 businessobjects
|
Apache Axis2, as used in dswsbobje.war in SAP BusinessObjects Enterprise XI 3.2, CA ARCserve D2D r15, and other products, has a default password of axis2 for the admin account, which makes it easier …
|
CWE-255
Credentials Management
|
CVE-2010-0219
|
2024-11-21 10:11 |
2010-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306026
|
- |
|
isc
|
bind
|
ISC BIND 9.7.2 through 9.7.2-P1 uses an incorrect ACL to restrict the ability of Recursion Desired (RD) queries to access the cache, which allows remote attackers to obtain potentially sensitive info…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-0218
|
2024-11-21 10:11 |
2010-10-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306027
|
- |
|
ibm
|
proventia_network_mail_security_system_virtual_appliance proventia_network_mail_security_system_virtual_appliance_firmware
|
CRLF injection vulnerability in load.php in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5 allows remote authenticat…
|
CWE-94
Code Injection
|
CVE-2010-0155
|
2024-11-21 10:11 |
2010-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306028
|
- |
|
ibm
|
proventia_network_mail_security_system_virtual_appliance proventia_network_mail_security_system_virtual_appliance_firmware
|
Directory traversal vulnerability in sla/index.php in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5 allows remote a…
|
CWE-22
Path Traversal
|
CVE-2010-0154
|
2024-11-21 10:11 |
2010-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306029
|
- |
|
ibm
|
proventia_network_mail_security_system_virtual_appliance proventia_network_mail_security_system_virtual_appliance_firmware
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5.0.2 all…
|
CWE-352
Origin Validation Error
|
CVE-2010-0153
|
2024-11-21 10:11 |
2010-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306030
|
- |
|
ibm
|
proventia_network_mail_security_system_virtual_appliance proventia_network_mail_security_system_virtual_appliance_firmware
|
Multiple cross-site scripting (XSS) vulnerabilities in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5.0.2 allow remo…
|
CWE-79
Cross-site Scripting
|
CVE-2010-0152
|
2024-11-21 10:11 |
2010-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|