|
301801
|
- |
|
mit
|
kerberos_5
|
The lookup_lockout_policy function in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.8 through 1.8.4 and 1.9 through 1.9.1, when the db2 (aka Berkeley DB) or LDAP back end is used, …
|
CWE-20
Improper Input Validation
|
CVE-2011-1529
|
2024-11-21 10:26 |
2011-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301802
|
- |
|
mit
|
kerberos_5
|
The krb5_ldap_lockout_audit function in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.8 through 1.8.4 and 1.9 through 1.9.1, when the LDAP back end is used, allows remote attackers…
|
CWE-20
Improper Input Validation
|
CVE-2011-1528
|
2024-11-21 10:26 |
2011-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301803
|
- |
|
mit
|
kerberos_5
|
The kdb_ldap plugin in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.9 through 1.9.1, when the LDAP back end is used, allows remote attackers to cause a denial of service (NULL poi…
|
CWE-20
Improper Input Validation
|
CVE-2011-1527
|
2024-11-21 10:26 |
2011-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301804
|
- |
|
novell
|
identity_manager_roles_based_provisioning_module identity_manager_user_application
|
Cross-site scripting (XSS) vulnerability in Novell Identity Manager (aka IDM) User Application 3.5.0, 3.5.1, 3.6.0, 3.6.1, 3.7.0, and 4.0.0, and Identity Manager Roles Based Provisioning Module 3.6.0…
|
CWE-79
Cross-site Scripting
|
CVE-2011-1696
|
2024-11-21 10:26 |
2011-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301805
|
- |
|
gitolite
|
gitolite
|
Directory traversal vulnerability in the Admin Defined Commands (ADC) feature in gitolite before 1.5.9.1 allows remote attackers to execute arbitrary commands via .. (dot dot) sequences in admin-defi…
|
CWE-22
Path Traversal
|
CVE-2011-1572
|
2024-11-21 10:26 |
2011-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301806
|
- |
|
manageengine
|
servicedesk_plus
|
Cross-site scripting (XSS) vulnerability in SolutionSearch.do in ManageEngine ServiceDesk Plus (SDP) before 8012 allows remote attackers to inject arbitrary web script or HTML via the searchText para…
|
CWE-79
Cross-site Scripting
|
CVE-2011-1510
|
2024-11-21 10:26 |
2011-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301807
|
- |
|
manageengine
|
servicedesk_plus
|
The encryptPassword function in Login.js in ManageEngine ServiceDesk Plus (SDP) 8012 and earlier uses a Caesar cipher for encryption of passwords in cookies, which makes it easier for remote attacker…
|
CWE-310
Cryptographic Issues
|
CVE-2011-1509
|
2024-11-21 10:26 |
2011-09-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301808
|
- |
|
emc
|
avamar
|
EMC Avamar 4.x, 5.0.x, and 6.0.x before 6.0.0-592 allows remote authenticated users to modify client data or obtain sensitive information about product activities by leveraging privileged access to a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-1740
|
2024-11-21 10:26 |
2011-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301809
|
- |
|
adobe
|
acrobat_reader
|
Unspecified vulnerability in Adobe Reader 10.x before 10.1.1 on Windows allows local users to gain privileges via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2011-1353
|
2024-11-21 10:26 |
2011-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
301810
|
- |
|
ibm
|
websphere_application_server
|
Directory traversal vulnerability in the administration console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.41, 7.0 before 7.0.0.19, and 8.0 before 8.0.0.1 allows remote attackers to r…
|
CWE-22
Path Traversal
|
CVE-2011-1359
|
2024-11-21 10:26 |
2011-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|