|
306971
|
- |
|
wireshark
|
wireshark
|
Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows user-assisted remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted Diameter diction…
|
NVD-CWE-Other
|
CVE-2011-1958
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306972
|
- |
|
wireshark
|
wireshark
|
The dissect_dcm_main function in epan/dissectors/packet-dcm.c in the DICOM dissector in Wireshark 1.2.x before 1.2.17 and 1.4.x before 1.4.7 allows remote attackers to cause a denial of service (infi…
|
CWE-399
Resource Management Errors
|
CVE-2011-1957
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306973
|
- |
|
wireshark
|
wireshark
|
The bytes_repr_len function in Wireshark 1.4.5 uses an incorrect pointer argument, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via arbi…
|
NVD-CWE-Other
|
CVE-2011-1956
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306974
|
- |
|
postrev
|
post_revolution
|
Multiple cross-site request forgery (CSRF) vulnerabilities in Post Revolution 0.8.0c-2 and earlier allow remote attackers to hijack the authentication of arbitrary users for requests to (1) ajax-webl…
|
CWE-352
Origin Validation Error
|
CVE-2011-1954
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306975
|
- |
|
postrev
|
post_revolution
|
Multiple cross-site scripting (XSS) vulnerabilities in common.php in Post Revolution before 0.8.0c-2 allow remote attackers to inject arbitrary web script or HTML via an attribute of a (1) P, a (2) S…
|
CWE-79
Cross-site Scripting
|
CVE-2011-1953
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306976
|
- |
|
postrev
|
post_revolution
|
common.php in Post Revolution before 0.8.0c-2 allows remote attackers to cause a denial of service (infinite loop) via malformed HTML markup, as demonstrated by an a< sequence.
|
CWE-399
Resource Management Errors
|
CVE-2011-1952
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306977
|
- |
|
plone
|
plone
|
plone.app.users in Plone 4.0 and 4.1 allows remote authenticated users to modify the properties of arbitrary accounts via unspecified vectors, as exploited in the wild in June 2011.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-1950
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306978
|
- |
|
plone
|
plone
|
Cross-site scripting (XSS) vulnerability in the safe_html filter in Products.PortalTransforms in Plone 2.1 through 4.1 allows remote authenticated users to inject arbitrary web script or HTML via uns…
|
CWE-79
Cross-site Scripting
|
CVE-2011-1949
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306979
|
- |
|
plone
|
plone
|
Cross-site scripting (XSS) vulnerability in Plone 4.1 and earlier allows remote attackers to inject arbitrary web script or HTML via a crafted URL.
|
CWE-79
Cross-site Scripting
|
CVE-2011-1948
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306980
|
- |
|
apache
|
subversion
|
The mod_dav_svn module for the Apache HTTP Server, as distributed in Apache Subversion 1.5.x and 1.6.x before 1.6.17, when the SVNPathAuthz short_circuit option is disabled, does not properly enforce…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-1921
|
2024-11-21 10:27 |
2011-06-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|