264381
|
- |
|
oracle sun
|
glassfish_server java_system_application_server
|
Unspecified vulnerability in Oracle Sun GlassFish Enterprise Server 2.1, 2.1.1, and 3.0.1, and Sun Java System Application Server 9.1, allows remote attackers to affect confidentiality, integrity, an…
|
NVD-CWE-noinfo
|
CVE-2011-0807
|
2011-09-22 12:28 |
2011-04-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264382
|
- |
|
amix
|
skeletonz_cms_1.0
|
Multiple cross-site scripting (XSS) vulnerabilities in the comment feature in Skeletonz CMS 1.0, when the Blog plugin is enabled, allow remote attackers to inject arbitrary web script or HTML via the…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4734
|
2011-09-22 12:27 |
2011-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264383
|
- |
|
gatesoft
|
docusafe
|
SQL injection vulnerability in ECO.asp in GateSoft DocuSafe 4.1.0 and 4.1.2 allows remote attackers to execute arbitrary SQL commands via the ECO_ID parameter. NOTE: some of these details are obtain…
|
CWE-89
SQL Injection
|
CVE-2010-4736
|
2011-09-22 12:27 |
2011-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264384
|
- |
|
hotwebscripts
|
hotweb_rentals
|
SQL injection vulnerability in resorts.asp in HotWebScripts HotWeb Rentals allows remote attackers to execute arbitrary SQL commands via the PropResort parameter.
|
CWE-89
SQL Injection
|
CVE-2010-4737
|
2011-09-22 12:27 |
2011-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264385
|
- |
|
raemedia
|
real_estate_single_and_multi_agent_system
|
Multiple SQL injection vulnerabilities in Rae Media INC Real Estate Single and Multi Agent System 3.0 allow remote attackers to execute arbitrary SQL commands via the probe parameter to (1) multi/cit…
|
CWE-89
SQL Injection
|
CVE-2010-4738
|
2011-09-22 12:27 |
2011-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264386
|
- |
|
scadaengine
|
bacnet_opc_client
|
Stack-based buffer overflow in WTclient.dll in SCADA Engine BACnet OPC Client before 1.0.25 allows user-assisted remote attackers to execute arbitrary code via a crafted .csv file, related to a statu…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-4740
|
2011-09-22 12:27 |
2011-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264387
|
- |
|
pmwiki
|
pmwiki
|
Cross-site scripting (XSS) vulnerability in pmwiki.php in PmWiki 2.2.20 allows remote attackers to inject arbitrary web script or HTML via the from parameter to Main/WikiSandbox. NOTE: some of these…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4748
|
2011-09-22 12:27 |
2011-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264388
|
- |
|
blogcms
|
blog\
|
Multiple cross-site scripting (XSS) vulnerabilities in BLOG:CMS 4.2.1.e, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) body parameter to action.php a…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4749
|
2011-09-22 12:27 |
2011-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264389
|
- |
|
blogcms
|
blog\
|
Cross-site request forgery (CSRF) vulnerability in admin/libs/ADMIN.php in BLOG:CMS 4.2.1.e, and possibly earlier, allows remote attackers to hijack the authentication of administrators.
|
CWE-352
Origin Validation Error
|
CVE-2010-4750
|
2011-09-22 12:27 |
2011-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264390
|
- |
|
commodityrentals
|
dvd_rentals_script
|
SQL injection vulnerability in index.php in CommodityRentals DVD Rentals Script allows remote attackers to execute arbitrary SQL commands via the cat_id parameter in a catalog action.
|
CWE-89
SQL Injection
|
CVE-2010-4770
|
2011-09-22 12:27 |
2011-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|