|
1511
|
7.5
5.0
|
HIGH
Network
|
Directory traversal vulnerability in slp.c in the MSN protocol plugin in libpurple in Pidgin 2.6.4 and Adium 1.3.8 allows remote attackers to read arbitrary files via a .. (dot dot) in an application…
|
CWE-22
Path Traversal
|
CVE-2010-0013
|
cpe:2.3:o:redhat:enterprise_linux:5.0:* cpe:2.3:o:redhat:enterprise_linux:4.0:*
|
|
|
|
|
2026-04-23 09:35
2010-01-10
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1512
|
7.5
5.0
|
HIGH
Network
|
Use-after-free vulnerability in the abstract file-descriptor handling interface in the cupsdDoSelect function in scheduler/select.c in the scheduler in cupsd in CUPS 1.3.7 and 1.3.10 allows remote at…
|
CWE-416
Use After Free
|
CVE-2009-3553
|
cpe:2.3:o:redhat:enterprise_linux:5.0:*
|
|
|
|
|
2026-04-23 09:35
2009-11-20
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1513
|
6.5
4.3
|
MEDIUM
Network
|
Multiple use-after-free vulnerabilities in libxml2 2.5.10, 2.6.16, 2.6.26, 2.6.27, and 2.6.32, and libxml 1.8.17, allow context-dependent attackers to cause a denial of service (application crash) vi…
|
CWE-416
Use After Free
|
CVE-2009-2416
|
cpe:2.3:o:redhat:enterprise_linux:5.0:* cpe:2.3:o:redhat:enterprise_linux:4.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2026-04-23 09:35
2009-08-12
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1514
|
-
6.9
|
MEDIUM
|
The configtest function in the Red Hat dhcpd init script for DHCP 3.0.1 in Red Hat Enterprise Linux (RHEL) 3 allows local users to overwrite arbitrary files via a symlink attack on an unspecified tem…
|
CWE-59
Link Following
|
CVE-2009-1893
|
cpe:2.3:o:redhat:enterprise_linux:3.0:* cpe:2.3:o:redhat:enterprise_linux:3.0:* cpe:2.3:o:redhat:enterprise_linux…
|
|
|
|
|
2026-04-23 09:35
2009-07-18
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1515
|
7.5
9.3
|
HIGH
Network
|
Race condition in the NPObjWrapper_NewResolve function in modules/plugin/base/src/nsJSNPRuntime.cpp in xul.dll in Mozilla Firefox 3 before 3.0.11 might allow remote attackers to execute arbitrary cod…
|
CWE-362 CWE-416
Race Condition Use After Free
|
CVE-2009-1837
|
cpe:2.3:o:redhat:enterprise_linux:5.0:* cpe:2.3:o:redhat:enterprise_linux:4.0:*
|
|
|
|
|
2026-04-23 09:35
2009-06-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1516
|
-
10.0
|
HIGH
|
The asn1_decode_generaltime function in lib/krb5/asn.1/asn1_decode.c in the ASN.1 GeneralizedTime decoder in MIT Kerberos 5 (aka krb5) before 1.6.4 allows remote attackers to cause a denial of servic…
|
CWE-824
Access of Uninitialized Pointer
|
CVE-2009-0846
|
cpe:2.3:o:redhat:enterprise_linux:4.0:*
|
|
|
|
|
2026-04-23 09:35
2009-04-9
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1517
|
-
5.0
|
MEDIUM
|
The netsnmp_udp_fmtaddr function (snmplib/snmpUDPDomain.c) in net-snmp 5.0.9 through 5.4.2.1, when using TCP wrappers for client authorization, does not properly parse hosts.allow rules, which allows…
|
CWE-863
Incorrect Authorization
|
CVE-2008-6123
|
cpe:2.3:o:redhat:enterprise_linux:3.0:*
|
|
|
|
|
2026-04-23 09:35
2009-02-13
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1518
|
-
6.8
|
MEDIUM
|
tog-pegasus in OpenGroup Pegasus 2.7.0 on Red Hat Enterprise Linux (RHEL) 5, Fedora 9, and Fedora 10 does not log failed authentication attempts to the OpenPegasus CIM server, which makes it easier f…
|
NVD-CWE-Other
|
CVE-2008-4315
|
cpe:2.3:o:redhat:enterprise_linux:5.0:*
|
|
|
|
|
2026-04-23 09:35
2008-11-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1519
|
-
6.0
|
MEDIUM
|
A certain Red Hat patch for tog-pegasus in OpenGroup Pegasus 2.7.0 does not properly configure the PAM tty name, which allows remote authenticated users to bypass intended access restrictions and sen…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-4313
|
cpe:2.3:o:redhat:enterprise_linux:5.0:*
|
|
|
|
|
2026-04-23 09:35
2008-11-27
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
1520
|
-
4.4
|
MEDIUM
|
pam_krb5 2.2.14 in Red Hat Enterprise Linux (RHEL) 5 and earlier, when the existing_ticket option is enabled, uses incorrect privileges when reading a Kerberos credential cache, which allows local us…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-3825
|
cpe:2.3:o:redhat:enterprise_linux:5:unknown
|
|
|
|
|
2026-04-23 09:35
2008-10-4
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|