270121
|
- |
|
horde
|
horde
|
Unspecified cross-site scripting (XSS) vulnerability in Horde before 2.2.9 allows remote attackers to inject arbitrary web script or HTML via "not properly escaped error messages".
|
CWE-79
Cross-site Scripting
|
CVE-2005-3570
|
2011-05-19 13:00 |
2005-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270122
|
- |
|
sun
|
java_communications_services_delegated_administrator
|
Unspecified vulnerability in System Communications Services 6 Delegated Administrator 2005Q1 in Sun Java System Messaging Server 2005Q1 allows remote attackers to obtain the Top-Level Administrator (…
|
NVD-CWE-noinfo
|
CVE-2005-4045
|
2011-05-19 13:00 |
2005-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270123
|
- |
|
apple
|
quicktime
|
Apple QuickTime for Java 7.1.6 on Mac OS X and Windows does not properly restrict QTObject subclassing, which allows remote attackers to execute arbitrary code via a web page containing a user-define…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2007-2388
|
2011-05-18 13:00 |
2007-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270124
|
- |
|
cisco
|
cli cbos ids ios ios_xr
|
Unspecified vulnerability in Cisco IOS 12.0 through 12.4 allows context-dependent attackers to cause a denial of service (device restart and BGP routing table rebuild) via certain regular expressions…
|
NVD-CWE-noinfo CWE-20
Improper Input Validation
|
CVE-2007-4430
|
2011-05-18 13:00 |
2007-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270125
|
- |
|
aertherwide
|
exiftags
|
Unspecified vulnerability in exiftags before 1.01 has unknown impact and attack vectors, resulting from a "field offset overflow" that triggers an "illegal memory access," a different vulnerability t…
|
NVD-CWE-noinfo
|
CVE-2007-6354
|
2011-05-13 13:00 |
2007-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270126
|
- |
|
aertherwide
|
exiftags
|
Integer overflow in exiftags before 1.01 has unknown impact and attack vectors, resulting from a "field offset overflow" that triggers an "illegal memory access," a different vulnerability than CVE-2…
|
NVD-CWE-noinfo CWE-189
Numeric Errors
|
CVE-2007-6355
|
2011-05-13 13:00 |
2007-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270127
|
- |
|
ibm
|
db2
|
IBM DB2 UDB 9.1 before Fixpak 4 does not properly manage storage of a list containing authentication information, which might allow attackers to cause a denial of service (instance crash) or trigger …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2007-5652
|
2011-05-12 13:00 |
2007-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270128
|
- |
|
zeus
|
zeus_web_server
|
Zeus Web Server before 4.3r5 does not use random transaction IDs for DNS requests, which makes it easier for remote attackers to spoof DNS responses.
|
CWE-310
Cryptographic Issues
|
CVE-2010-0362
|
2011-05-6 13:00 |
2010-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270129
|
- |
|
arco_van_geest
|
goof_fotoboek
|
Directory traversal vulnerability in the Photo Book (goof_fotoboek) extension 1.7.14 and earlier for TYPO3 has unknown impact and remote attack vectors.
|
CWE-22
Path Traversal
|
CVE-2010-0350
|
2011-05-2 13:00 |
2010-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270130
|
- |
|
typo3
|
kiddog_mysqldumper
|
Unspecified vulnerability in the kiddog_mysqldumper (kiddog_mysqldumper) extension 0.0.3 and earlier for TYPO3 allows remote attackers to obtain sensitive information via unknown attack vectors.
|
NVD-CWE-noinfo
|
CVE-2010-0336
|
2011-04-29 13:00 |
2010-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|