|
305601
|
- |
|
mantisbt
|
mantisbt
|
Cross-site scripting (XSS) vulnerability in MantisBT before 1.2.2 allows remote authenticated users to inject arbitrary web script or HTML via an HTML document with a .gif filename extension, related…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2802
|
2024-11-21 10:17 |
2010-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305602
|
- |
|
linux suse opensuse canonical
|
linux_kernel linux_enterprise_desktop linux_enterprise_server opensuse ubuntu_linux
|
The irda_bind function in net/irda/af_irda.c in the Linux kernel before 2.6.36-rc3-next-20100901 does not properly handle failure of the irda_open_tsap function, which allows local users to cause a d…
|
CWE-476
NULL Pointer Dereference
|
CVE-2010-2954
|
2024-11-21 10:17 |
2010-09-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305603
|
- |
|
hp
|
hp-ux
|
Unspecified vulnerability in Software Distributor (sd) in HP HP-UX B.11.11, B.11.23, and B.11.31 allows local users to gain privileges via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2010-2712
|
2024-11-21 10:17 |
2010-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305604
|
- |
|
realnetworks
|
realplayer
|
Unspecified vulnerability in RealNetworks RealPlayer 11.0 through 11.1 allows attackers to bypass intended access restrictions on files via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2010-3002
|
2024-11-21 10:17 |
2010-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305605
|
- |
|
realnetworks
|
realplayer realplayer_sp
|
Unspecified vulnerability in an ActiveX control in the Internet Explorer (IE) plugin in RealNetworks RealPlayer 11.0 through 11.1 and RealPlayer SP 1.0 through 1.1.4 on Windows has unknown impact and…
|
NVD-CWE-noinfo
|
CVE-2010-3001
|
2024-11-21 10:17 |
2010-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305606
|
- |
|
realnetworks
|
realplayer realplayer_sp
|
Multiple integer overflows in the ParseKnownType function in RealNetworks RealPlayer 11.0 through 11.1 and RealPlayer SP 1.0 through 1.1.4 on Windows allow remote attackers to execute arbitrary code …
|
CWE-189
Numeric Errors
|
CVE-2010-3000
|
2024-11-21 10:17 |
2010-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305607
|
- |
|
realnetworks
|
realplayer
|
Array index error in RealNetworks RealPlayer 11.0 through 11.1 on Windows allows remote attackers to execute arbitrary code via a malformed header in a RealMedia .IVR file.
|
CWE-94
Code Injection
|
CVE-2010-2996
|
2024-11-21 10:17 |
2010-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305608
|
- |
|
simone_rota
|
slim_simple_login_manager
|
The default configuration of SLiM before 1.3.2 places ./ (dot slash) at the beginning of the default_path option, which might allow local users to gain privileges via a Trojan horse program in the cu…
|
CWE-16
Configuration
|
CVE-2010-2945
|
2024-11-21 10:17 |
2010-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305609
|
- |
|
fedoraproject
|
sssd
|
The auth_send function in providers/ldap/ldap_auth.c in System Security Services Daemon (SSSD) 1.3.0, when LDAP authentication and anonymous bind are enabled, allows remote attackers to bypass the au…
|
CWE-287
Improper Authentication
|
CVE-2010-2940
|
2024-11-21 10:17 |
2010-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305610
|
- |
|
redhat
|
spice-xpi
|
The SPICE (aka spice-xpi) plug-in 2.2 for Firefox allows local users to overwrite arbitrary files via a symlink attack on an unspecified log file.
|
CWE-59
Link Following
|
CVE-2010-2794
|
2024-11-21 10:17 |
2010-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|