|
311501
|
7.8 |
HIGH
|
cisco
|
unified_wireless_network_solution_software
|
The workgroup bridge (aka WGB) functionality in Cisco Unified Wireless Network (UWN) Solution 7.x before 7.0.98.0 allows remote attackers to cause a denial of service (dropped connection) via a serie…
|
NVD-CWE-Other
|
CVE-2010-2983
|
2024-11-21 10:17 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311502
|
7.1 |
HIGH
|
cisco
|
unified_wireless_network_solution_software
|
Cisco Unified Wireless Network (UWN) Solution 7.x before 7.0.98.0 allows remote attackers to discover a group password via a series of SNMP requests, as demonstrated by an SNMP walk, aka Bug ID CSCtb…
|
CWE-200
Information Exposure
|
CVE-2010-2982
|
2024-11-21 10:17 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311503
|
7.1 |
HIGH
|
cisco
|
unified_wireless_network_solution_software
|
Cisco Unified Wireless Network (UWN) Solution 7.x before 7.0.98.0 allows remote attackers to cause a denial of service (device crash) by pinging a virtual interface, aka Bug ID CSCte55370.
|
NVD-CWE-Other
|
CVE-2010-2981
|
2024-11-21 10:17 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311504
|
7.8 |
HIGH
|
cisco
|
unified_wireless_network_solution_software
|
Cisco Unified Wireless Network (UWN) Solution 7.x before 7.0.98.0 on 5508 series controllers allows remote attackers to cause a denial of service (pbuf exhaustion and device crash) via fragmented tra…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-2980
|
2024-11-21 10:17 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311505
|
7.8 |
HIGH
|
cisco
|
unified_wireless_network_solution_software
|
Cisco Unified Wireless Network (UWN) Solution 7.x before 7.0.98.0 on 5508 series controllers allows remote attackers to cause a denial of service (buffer leak and device crash) via ARP requests that …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-2979
|
2024-11-21 10:17 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311506
|
10.0 |
HIGH
|
cisco
|
unified_wireless_network_solution_software
|
Cisco Unified Wireless Network (UWN) Solution 7.x before 7.0.98.0 does not use an adequate message-digest algorithm for a self-signed certificate, which allows remote attackers to bypass intended acc…
|
CWE-310
Cryptographic Issues
|
CVE-2010-2978
|
2024-11-21 10:17 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311507
|
10.0 |
HIGH
|
cisco
|
unified_wireless_network_solution_software
|
Cisco Unified Wireless Network (UWN) Solution 7.x before 7.0.98.0 does not properly implement TLS and SSL, which has unspecified impact and remote attack vectors, aka Bug ID CSCtd01611.
|
CWE-16
Configuration
|
CVE-2010-2977
|
2024-11-21 10:17 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311508
|
10.0 |
HIGH
|
cisco
|
unified_wireless_network_solution_software
|
The controller in Cisco Unified Wireless Network (UWN) Solution 7.x through 7.0.98.0 has (1) a default SNMP read-only community of public, (2) a default SNMP read-write community of private, and a va…
|
CWE-255
Credentials Management
|
CVE-2010-2976
|
2024-11-21 10:17 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311509
|
2.1 |
LOW
|
cisco
|
unified_wireless_network_solution_software
|
Cisco Unified Wireless Network (UWN) Solution 7.x through 7.0.98.0 does not properly handle multiple SSH sessions, which allows physically proximate attackers to read a password, related to an "arrow…
|
CWE-200
Information Exposure
|
CVE-2010-2975
|
2024-11-21 10:17 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311510
|
7.1 |
HIGH
|
cisco
|
firewall_services_module_software firewall_services_module
|
Unspecified vulnerability on the Cisco Firewall Services Module (FWSM) with software 3.2 before 3.2(17.2), 4.0 before 4.0(11.1), and 4.1 before 4.1(1.2) for Catalyst 6500 series switches and 7600 ser…
|
NVD-CWE-noinfo
|
CVE-2010-2821
|
2024-11-21 10:17 |
2010-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311511
|
7.8 |
HIGH
|
cisco
|
firewall_services_module_software firewall_services_module
|
Unspecified vulnerability in the SunRPC inspection feature on the Cisco Firewall Services Module (FWSM) with software 3.1 before 3.1(17.2), 3.2 before 3.2(16.1), 4.0 before 4.0(10.1), and 4.1 before …
|
NVD-CWE-noinfo
|
CVE-2010-2820
|
2024-11-21 10:17 |
2010-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311512
|
7.8 |
HIGH
|
cisco
|
firewall_services_module_software firewall_services_module
|
Unspecified vulnerability in the SunRPC inspection feature on the Cisco Firewall Services Module (FWSM) with software 3.1 before 3.1(17.2), 3.2 before 3.2(16.1), 4.0 before 4.0(10.1), and 4.1 before …
|
CWE-20
Improper Input Validation
|
CVE-2010-2819
|
2024-11-21 10:17 |
2010-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311513
|
7.8 |
HIGH
|
cisco
|
firewall_services_module_software firewall_services_module
|
Unspecified vulnerability in the SunRPC inspection feature on the Cisco Firewall Services Module (FWSM) with software 3.1 before 3.1(17.2), 3.2 before 3.2(16.1), 4.0 before 4.0(10.1), and 4.1 before …
|
NVD-CWE-noinfo
|
CVE-2010-2818
|
2024-11-21 10:17 |
2010-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311514
|
7.8 |
HIGH
|
cisco
|
adaptive_security_appliance adaptive_security_appliance_software asa_5500 asa_5505 asa_5510 asa_5520 asa_5540 asa_5550 asa_5580 pix_500 pix_501 pix_506e pix_firewa…
|
Unspecified vulnerability in the IKE implementation on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 7.0 before 7.0(8.11), 7.1 and 7.2 before 7.2(5), 8.0 before 8.0(5.15)…
|
NVD-CWE-noinfo
|
CVE-2010-2817
|
2024-11-21 10:17 |
2010-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311515
|
7.8 |
HIGH
|
cisco
|
adaptive_security_appliance adaptive_security_appliance_software asa_5500 asa_5505 asa_5510 asa_5520 asa_5540 asa_5550 asa_5580 pix_500 pix_501 pix_506e pix_firewa…
|
Unspecified vulnerability in the SIP inspection feature on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 8.0 before 8.0(5.17), 8.1 before 8.1(2.45), and 8.2 before 8.2(2.…
|
NVD-CWE-noinfo
|
CVE-2010-2816
|
2024-11-21 10:17 |
2010-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311516
|
7.8 |
HIGH
|
cisco
|
adaptive_security_appliance adaptive_security_appliance_software asa_5500 asa_5505 asa_5510 asa_5520 asa_5540 asa_5550 asa_5580 pix_500 pix_501 pix_506e pix_firewa…
|
Unspecified vulnerability in the Transport Layer Security (TLS) implementation on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 7.2 before 7.2(5), 8.0 before 8.0(5.15), 8…
|
NVD-CWE-noinfo
|
CVE-2010-2815
|
2024-11-21 10:17 |
2010-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311517
|
7.8 |
HIGH
|
cisco
|
adaptive_security_appliance adaptive_security_appliance_software asa_5500 asa_5505 asa_5510 asa_5520 asa_5540 asa_5550 asa_5580 pix_500 pix_501 pix_506e pix_firewa…
|
Unspecified vulnerability in the Transport Layer Security (TLS) implementation on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software 7.2 before 7.2(5), 8.0 before 8.0(5.15), 8…
|
NVD-CWE-noinfo
|
CVE-2010-2814
|
2024-11-21 10:17 |
2010-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311518
|
5.1 |
MEDIUM
|
cabextract_project
|
cabextract
|
Integer signedness error in the Quantum decompressor in cabextract before 1.3, when archive test mode is used, allows user-assisted remote attackers to cause a denial of service (application crash) o…
|
CWE-189
Numeric Errors
|
CVE-2010-2801
|
2024-11-21 10:17 |
2010-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311519
|
4.3 |
MEDIUM
|
cabextract_project
|
cabextract
|
The MS-ZIP decompressor in cabextract before 1.3 allows remote attackers to cause a denial of service (infinite loop) via a malformed MSZIP archive in a .cab file during a (1) test or (2) extract act…
|
CWE-399
Resource Management Errors
|
CVE-2010-2800
|
2024-11-21 10:17 |
2010-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311520
|
6.1 |
MEDIUM
|
hp
|
procurve_switch_software procurve_switch_2610 procurve_switch_2610-24 procurve_switch_2610-24-pwr procurve_switch_2610-24\/12pwr procurve_switch_2610-48 procurve_switch_2610-48-pwr
|
Unspecified vulnerability on the HP ProCurve 2610 switch before R.11.22, when DHCP is enabled, allows remote attackers to cause a denial of service via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2010-2708
|
2024-11-21 10:17 |
2010-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311521
|
8.3 |
HIGH
|
hp
|
procurve_switch_software procurve_switch_2626 procurve_switch_2626-pwr procurve_switch_2650 procurve_switch_2650-pwr
|
Unspecified vulnerability on the HP ProCurve 2626 and 2650 switches before H.10.80 allows remote attackers to obtain sensitive information, modify data, and cause a denial of service via unknown vect…
|
NVD-CWE-noinfo
|
CVE-2010-2707
|
2024-11-21 10:17 |
2010-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311522
|
6.1 |
MEDIUM
|
hp
|
procurve_switch_software procurve_switch_2610 procurve_switch_2610-24 procurve_switch_2610-24-pwr procurve_switch_2610-24\/12pwr procurve_switch_2610-48 procurve_switch_2610-48-pwr
|
Unspecified vulnerability in the In-band Agent on the HP ProCurve 2610 switch before R.11.30 allows remote attackers to cause a denial of service via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2010-2706
|
2024-11-21 10:17 |
2010-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311523
|
6.1 |
MEDIUM
|
hp
|
procurve_switch_software procurve_switch_1800-24g procurve_switch_1800-8g
|
Unspecified vulnerability on the HP ProCurve 1800-24G switch with software PB.03.02 and earlier, and the ProCurve 1800-8G switch with software PA.03.02 and earlier, when SNMP is enabled, allows remot…
|
NVD-CWE-noinfo
|
CVE-2010-2705
|
2024-11-21 10:17 |
2010-08-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311524
|
9.3 |
HIGH
|
invensys
|
wonderware_archestra_configuration_access_component_activex_control wonderware_application_server
|
Stack-based buffer overflow in the IConfigurationAccess interface in the Invensys Wonderware Archestra ConfigurationAccessComponent ActiveX control in Wonderware Application Server (WAS) before 3.1 S…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-2974
|
2024-11-21 10:17 |
2010-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311525
|
6.9 |
MEDIUM
|
apple
|
iphone_os
|
Integer overflow in IOSurface in Apple iOS before 4.0.2 on the iPhone and iPod touch, and before 3.2.2 on the iPad, allows local users to gain privileges via vectors involving IOSurface properties, a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-2973
|
2024-11-21 10:17 |
2010-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311526
|
9.3 |
HIGH
|
adobe
|
acrobat_reader acrobat
|
Integer overflow in CoolType.dll in Adobe Reader 8.2.3 and 9.3.3, and Acrobat 9.3.3, allows remote attackers to execute arbitrary code via a TrueType font with a large maxCompositePoints value in a M…
|
CWE-189
Numeric Errors
|
CVE-2010-2862
|
2024-11-21 10:17 |
2010-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311527
|
2.6 |
LOW
|
joachim_fritschi
|
phpcas
|
Cross-site scripting (XSS) vulnerability in phpCAS before 1.1.2, when proxy mode is enabled, allows remote attackers to inject arbitrary web script or HTML via a callback URL.
|
CWE-79
Cross-site Scripting
|
CVE-2010-2796
|
2024-11-21 10:17 |
2010-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311528
|
4.0 |
MEDIUM
|
joachim_fritschi
|
phpcas
|
phpCAS before 1.1.2 allows remote authenticated users to hijack sessions via a query string containing a crafted ticket value.
|
CWE-20
Improper Input Validation
|
CVE-2010-2795
|
2024-11-21 10:17 |
2010-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311529
|
5.0 |
MEDIUM
|
apache
|
http_server
|
mod_proxy in httpd in Apache HTTP Server 2.2.9, when running on Unix, does not close the backend connection if a timeout occurs when reading a response from a persistent connection, which allows remo…
|
CWE-200
Information Exposure
|
CVE-2010-2791
|
2024-11-21 10:17 |
2010-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311530
|
6.8 |
MEDIUM
|
nalin_dahyabhai
|
vte
|
The vte_sequence_handler_window_manipulation function in vteseq.c in libvte (aka libvte9) in VTE 0.25.1 and earlier, as used in gnome-terminal, does not properly handle escape sequences, which allows…
|
NVD-CWE-Other
|
CVE-2010-2713
|
2024-11-21 10:17 |
2010-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311531
|
9.3 |
HIGH
|
hp
|
openview_network_node_manager
|
Stack-based buffer overflow in webappmon.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via a long OvJavaLocale value in a cookie.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-2709
|
2024-11-21 10:17 |
2010-08-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311532
|
7.5 |
HIGH
|
avscripts
|
av_arcade
|
SQL injection vulnerability in AV Scripts AV Arcade 3 allows remote attackers to execute arbitrary SQL commands via the ava_code cookie to the "main page," related to index.php and the login task.
|
CWE-89
SQL Injection
|
CVE-2010-2933
|
2024-11-21 10:17 |
2010-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311533
|
9.3 |
HIGH
|
barcodewiz
|
barcode_activex_control
|
Buffer overflow in BarCodeWiz BarCode 3.29 ActiveX control (BarcodeWiz.dll) allows remote attackers to execute arbitrary code via a long argument to the LoadProperties method.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-2932
|
2024-11-21 10:17 |
2010-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311534
|
9.3 |
HIGH
|
topazsystems
|
sigplus_pro_activex_control
|
Stack-based buffer overflow in SigPlus Pro 3.74 ActiveX control allows remote attackers to execute arbitrary code via a long eighth argument (HexString) to the LCDWriteString method.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-2931
|
2024-11-21 10:17 |
2010-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311535
|
4.3 |
MEDIUM
|
zabbix
|
zabbix
|
Multiple cross-site scripting (XSS) vulnerabilities in the formatQuery function in frontends/php/include/classes/class.curl.php in Zabbix before 1.8.3rc1 allow remote attackers to inject arbitrary we…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2790
|
2024-11-21 10:17 |
2010-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311536
|
7.5 |
HIGH
|
barnowl
|
barnowl
|
BarnOwl before 1.6.2 does not check the return code of calls to the (1) ZPending and (2) ZReceiveNotice functions in libzephyr, which allows remote attackers to cause a denial of service (crash) and …
|
CWE-20
Improper Input Validation
|
CVE-2010-2725
|
2024-11-21 10:17 |
2010-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311537
|
9.3 |
HIGH
|
raphael_assenat
|
libmikmod
|
loaders/load_it.c in libmikmod, possibly 3.1.12, does not properly account for the larger size of name##env relative to name##tick and name##node, which allows remote attackers to trigger a buffer ov…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-2971
|
2024-11-21 10:17 |
2010-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311538
|
4.3 |
MEDIUM
|
moinmo
|
moinmoin
|
Multiple cross-site scripting (XSS) vulnerabilities in MoinMoin 1.9.x before 1.9.3 allow remote attackers to inject arbitrary web script or HTML via crafted content, related to (1) action/SlideShow.p…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2970
|
2024-11-21 10:17 |
2010-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311539
|
4.3 |
MEDIUM
|
moinmo
|
moinmoin
|
Multiple cross-site scripting (XSS) vulnerabilities in MoinMoin 1.7.3 and earlier, and 1.9.x before 1.9.3, allow remote attackers to inject arbitrary web script or HTML via crafted content, related t…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2969
|
2024-11-21 10:17 |
2010-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311540
|
7.8 |
HIGH
|
windriver
|
vxworks
|
The FTP daemon in Wind River VxWorks does not close the TCP connection after a number of failed login attempts, which makes it easier for remote attackers to obtain access via a brute-force attack.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-2968
|
2024-11-21 10:17 |
2010-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311541
|
7.8 |
HIGH
|
windriver
|
vxworks
|
The loginDefaultEncrypt algorithm in loginLib in Wind River VxWorks before 6.9 does not properly support a large set of distinct possible passwords, which makes it easier for remote attackers to obta…
|
CWE-310
Cryptographic Issues
|
CVE-2010-2967
|
2024-11-21 10:17 |
2010-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311542
|
7.8 |
HIGH
|
windriver
|
vxworks
|
The INCLUDE_SECURITY functionality in Wind River VxWorks 6.x, 5.x, and earlier uses the LOGIN_USER_NAME and LOGIN_USER_PASSWORD (aka LOGIN_PASSWORD) parameters to create hardcoded credentials, which …
|
CWE-255
Credentials Management
|
CVE-2010-2966
|
2024-11-21 10:17 |
2010-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311543
|
10.0 |
HIGH
|
rockwellautomation windriver
|
1756-enbt\/a_firmware vxworks
|
The WDB target agent debug service in Wind River VxWorks 6.x, 5.x, and earlier, as used on the Rockwell Automation 1756-ENBT series A with firmware 3.2.6 and 3.6.1 and other products, allows remote a…
|
CWE-863
Incorrect Authorization
|
CVE-2010-2965
|
2024-11-21 10:17 |
2010-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311544
|
9.3 |
HIGH
|
emc
|
celerra_network_attached_storage
|
The EMC Celerra Network Attached Storage (NAS) appliance accepts external network traffic to IP addresses intended for an intranet network within the appliance, which allows remote attackers to read,…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-2860
|
2024-11-21 10:17 |
2010-08-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311545
|
6.8 |
MEDIUM
|
matomo
|
matomo
|
Directory traversal vulnerability in Piwik 0.6 through 0.6.3 allows remote attackers to include arbitrary local files and possibly have unspecified other impact via directory traversal sequences in a…
|
CWE-22
Path Traversal
|
CVE-2010-2786
|
2024-11-21 10:17 |
2010-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311546
|
7.8 |
HIGH
|
emc
|
disk_library
|
Unspecified vulnerability in EMC Disk Library (EDL) before 3.2.7, 3.3.x before 3.3.2 epatch 8, and 4.0.x before 4.0.1 epatch 4 allows remote attackers to cause a denial of service (communication-modu…
|
NVD-CWE-noinfo
|
CVE-2010-2633
|
2024-11-21 10:17 |
2010-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311547
|
7.2 |
HIGH
|
pharscape
|
hsolink
|
Multiple stack-based buffer overflows in hsolinkcontrol in hsolink 1.0.118 allow local users to gain privileges via long command-line arguments, a different vulnerability than CVE-2010-1671. NOTE: s…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-2930
|
2024-11-21 10:17 |
2010-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311548
|
7.2 |
HIGH
|
pharscape
|
hsolink
|
Untrusted search path vulnerability in hsolinkcontrol in hsolink 1.0.118 allows local users to gain privileges via a modified PATH environment variable, which is used during execution of the (1) rout…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-2929
|
2024-11-21 10:17 |
2010-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311549
|
5.0 |
MEDIUM
|
ibm
|
tivoli_directory_server
|
The slapi_printmessage function in IBM Tivoli Directory Server (ITDS) before 6.0.0.8-TIV-ITDS-IF0006 allows remote attackers to cause a denial of service (daemon crash) via multiple incomplete DIGEST…
|
CWE-287
Improper Authentication
|
CVE-2010-2927
|
2024-11-21 10:17 |
2010-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
311550
|
6.5 |
MEDIUM
|
kvirc
|
kvirc
|
The IRC Protocol component in KVIrc 3.x and 4.x before r4693 does not properly handle \ (backslash) characters, which allows remote authenticated users to execute arbitrary CTCP commands via vectors …
|
NVD-CWE-Other
|
CVE-2010-2785
|
2024-11-21 10:17 |
2010-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|