|
306061
|
- |
|
g.rodola
|
pyftpdlib
|
Race condition in the FTPHandler class in ftpserver.py in pyftpdlib before 0.5.1 allows remote attackers to cause a denial of service (daemon outage) by establishing and then immediately closing a TC…
|
CWE-362
Race Condition
|
CVE-2009-5010
|
2024-11-21 10:10 |
2010-10-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306062
|
- |
|
apache redhat
|
qpid enterprise_mrg
|
The SessionAdapter::ExchangeHandlerImpl::checkAlternate function in broker/SessionAdapter.cpp in the C++ Broker component in Apache Qpid before 0.6, as used in Red Hat Enterprise MRG before 1.3 and o…
|
NVD-CWE-Other
|
CVE-2009-5006
|
2024-11-21 10:10 |
2010-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306063
|
- |
|
apache redhat
|
qpid enterprise_mrg
|
The Cluster::deliveredEvent function in cluster/Cluster.cpp in Apache Qpid, as used in Red Hat Enterprise MRG before 1.3 and other products, allows remote attackers to cause a denial of service (daem…
|
NVD-CWE-Other
|
CVE-2009-5005
|
2024-11-21 10:10 |
2010-10-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306064
|
- |
|
infradead
|
openconnect
|
Double free vulnerability in OpenConnect before 1.40 might allow remote AnyConnect SSL VPN servers to cause a denial of service (application crash) or possibly have unspecified other impact via a cra…
|
CWE-399
Resource Management Errors
|
CVE-2009-5009
|
2024-11-21 10:10 |
2010-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306065
|
- |
|
cisco
|
secure_desktop
|
Cisco Secure Desktop (CSD), when used in conjunction with an AnyConnect SSL VPN server, does not properly perform verification, which allows local users to bypass intended policy restrictions via a m…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-5008
|
2024-11-21 10:10 |
2010-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306066
|
- |
|
cisco
|
anyconnect_ssl_vpn
|
The Cisco trial client on Linux for Cisco AnyConnect SSL VPN allows local users to overwrite arbitrary files via a symlink attack on unspecified temporary files.
|
CWE-59
Link Following
|
CVE-2009-5007
|
2024-11-21 10:10 |
2010-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306067
|
- |
|
e-soft24
|
banner_exchange_script
|
SQL injection vulnerability in click.php in e-soft24 Banner Exchange Script 1.0 allows remote attackers to execute arbitrary SQL commands via the targetid parameter.
|
CWE-89
SQL Injection
|
CVE-2009-5003
|
2024-11-21 10:10 |
2010-09-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306068
|
- |
|
ibm
|
filenet_p8_application_engine
|
The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 4.0.2.x before 4.0.2.1-P8AE-FP001 does not record Get Content Failure Audit events, which might allow remote attackers to …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-5002
|
2024-11-21 10:10 |
2010-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306069
|
- |
|
ibm
|
filenet_p8_application_engine
|
The Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 4.0.2.x before 4.0.2.2-P8AE-FP002 grants a document's Creator-Owner full control over an annotation object, even if the de…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-5001
|
2024-11-21 10:10 |
2010-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306070
|
- |
|
ibm
|
filenet_p8_application_engine
|
Multiple cross-site scripting (XSS) vulnerabilities in the Workplace (aka WP) component in IBM FileNet P8 Application Engine (P8AE) 4.0.2.x before 4.0.2.3-P8AE-FP003 allow remote attackers to inject …
|
CWE-79
Cross-site Scripting
|
CVE-2009-5000
|
2024-11-21 10:10 |
2010-09-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|