|
307581
|
- |
|
mozilla
|
firefox
|
The js_InitRandom function in the JavaScript implementation in Mozilla Firefox 3.5.10 through 3.5.11, 3.6.4 through 3.6.8, and 4.0 Beta1 uses a context pointer in conjunction with its successor point…
|
CWE-310
Cryptographic Issues
|
CVE-2010-3399
|
2024-11-21 10:18 |
2010-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307582
|
- |
|
ibm
|
lotus_sametime
|
Unspecified vulnerability in the webcontainer implementation in IBM Lotus Sametime Connect 8.5.1 before CF1 has unknown impact and attack vectors, aka SPRs LXUU87S57H and LXUU87S93W.
|
NVD-CWE-noinfo
|
CVE-2010-3398
|
2024-11-21 10:18 |
2010-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307583
|
- |
|
mozilla
|
firefox
|
The Math.random function in the JavaScript implementation in Mozilla Firefox 3.5.10 through 3.5.11, 3.6.4 through 3.6.8, and 4.0 Beta1 uses a random number generator that is seeded only once per docu…
|
CWE-310
Cryptographic Issues
|
CVE-2010-3171
|
2024-11-21 10:18 |
2010-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307584
|
- |
|
gnu
|
mailman
|
Multiple cross-site scripting (XSS) vulnerabilities in GNU Mailman before 2.1.14rc1 allow remote authenticated users to inject arbitrary web script or HTML via vectors involving (1) the list informat…
|
CWE-79
Cross-site Scripting
|
CVE-2010-3089
|
2024-11-21 10:18 |
2010-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307585
|
- |
|
pgp
|
desktop
|
Untrusted search path vulnerability in PGP Desktop 9.9.0 Build 397, 9.10.x, 10.0.0 Build 2732, and probably other versions allows local users, and possibly remote attackers, to execute arbitrary code…
|
NVD-CWE-Other
|
CVE-2010-3397
|
2024-11-21 10:18 |
2010-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307586
|
- |
|
kingsoft
|
kingsoft_antivirus
|
Buffer overflow in kavfm.sys in Kingsoft Antivirus 2010.04.26.648 and earlier allows local users to execute arbitrary code via a long argument to IOCTL 0x80030004. NOTE: some of these details are ob…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-3396
|
2024-11-21 10:18 |
2010-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307587
|
- |
|
splunk
|
splunk
|
Splunk 4.0.0 through 4.1.4 allows remote attackers to conduct session hijacking attacks and obtain the splunkd session key via vectors related to the SPLUNKD_SESSION_KEY parameter.
|
NVD-CWE-Other
|
CVE-2010-3323
|
2024-11-21 10:18 |
2010-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307588
|
8.8 |
HIGH
Network
|
splunk
|
splunk
|
The XML parser in Splunk 4.0.0 through 4.1.4 allows remote authenticated users to obtain sensitive information and gain privileges via an XML External Entity (XXE) attack to unknown vectors.
|
CWE-611
XXE
|
CVE-2010-3322
|
2024-11-21 10:18 |
2010-09-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307589
|
- |
|
ibm
|
filenet_content_manager
|
Open redirect vulnerability in IBM Records Manager (RM) 4.5.x before 4.5.1.1-IER-FP001 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified ve…
|
CWE-20
Improper Input Validation
|
CVE-2010-3320
|
2024-11-21 10:18 |
2010-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307590
|
- |
|
ibm
|
filenet_content_manager
|
IBM Records Manager (RM) 4.5.x before 4.5.1.1-IER-FP001 places a session token in the URI, which might allow remote attackers to obtain sensitive information by reading a Referer log file.
|
CWE-255
Credentials Management
|
CVE-2010-3319
|
2024-11-21 10:18 |
2010-09-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|