|
308511
|
- |
|
ibm
|
websphere_mq
|
IBM WebSphere MQ 6.0 before 6.0.2.9 and 7.0 before 7.0.1.1 does not encrypt the username and password in the security parameters field, which allows remote attackers to obtain sensitive information b…
|
CWE-310
Cryptographic Issues
|
CVE-2010-2637
|
2024-11-21 10:17 |
2010-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308512
|
- |
|
microsoft
|
forefront_unified_access_gateway
|
Cross-site scripting (XSS) vulnerability in the mobile portal in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, 2010 Update 1, and 2010 Update 2 allows remote attackers to inject arbitra…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2734
|
2024-11-21 10:17 |
2010-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308513
|
- |
|
microsoft
|
forefront_unified_access_gateway
|
Cross-site scripting (XSS) vulnerability in the Web Monitor in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, 2010 Update 1, and 2010 Update 2 allows remote attackers to inject arbitrary…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2733
|
2024-11-21 10:17 |
2010-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308514
|
- |
|
microsoft
|
forefront_unified_access_gateway
|
Open redirect vulnerability in the web interface in Microsoft Forefront Unified Access Gateway (UAG) 2010 Gold, 2010 Update 1, and 2010 Update 2 allows remote attackers to redirect users to arbitrary…
|
CWE-20
Improper Input Validation
|
CVE-2010-2732
|
2024-11-21 10:17 |
2010-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308515
|
- |
|
horde
|
horde_application_framework
|
Cross-site scripting (XSS) vulnerability in util/icon_browser.php in the Horde Application Framework before 3.3.9 allows remote attackers to inject arbitrary web script or HTML via the subdir paramet…
|
CWE-79
Cross-site Scripting
|
CVE-2010-3077
|
2024-11-21 10:17 |
2010-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308516
|
- |
|
cisco
|
intelligent_contact_manager
|
Multiple stack-based buffer overflows in agent.exe in Setup Manager in Cisco Intelligent Contact Manager (ICM) before 7.0 allow remote attackers to execute arbitrary code via a long parameter in a (1…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-3040
|
2024-11-21 10:17 |
2010-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308517
|
- |
|
cisco
|
unified_communications_manager
|
/usr/local/cm/bin/pktCap_protectData in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6, 7, and 8 allows remote authenticated administrators to execute arbitrary commands via …
|
CWE-78
OS Command
|
CVE-2010-3039
|
2024-11-21 10:17 |
2010-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308518
|
- |
|
ibm
|
websphere_commerce
|
Multiple cross-site scripting (XSS) vulnerabilities in sample store pages in IBM WebSphere Commerce 7.0 before 7.0.0.1 allow remote attackers to inject arbitrary web script or HTML via a crafted URL.
|
CWE-79
Cross-site Scripting
|
CVE-2010-2636
|
2024-11-21 10:17 |
2010-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308519
|
- |
|
ibm
|
websphere_commerce
|
SQL injection vulnerability in IBM WebSphere Commerce 6.0 before 6.0.0.10 allows remote authenticated users to execute arbitrary SQL commands via unspecified parameters to "Commerce Organization Admi…
|
CWE-89
SQL Injection
|
CVE-2010-2635
|
2024-11-21 10:17 |
2010-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308520
|
9.8 |
CRITICAL
Network
|
apple fedoraproject canonical debian opensuse suse redhat
|
cups mac_os_x_server mac_os_x fedora ubuntu_linux debian_linux opensuse linux_enterprise_server linux_enterprise enterprise_linux_server enterprise_linux enterprise_l…
|
ipp.c in cupsd in CUPS 1.4.4 and earlier does not properly allocate memory for attribute values with invalid string data types, which allows remote attackers to cause a denial of service (use-after-f…
|
CWE-416
Use After Free
|
CVE-2010-2941
|
2024-11-21 10:17 |
2010-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|