264651
|
- |
|
otrs
|
otrs
|
Open Ticket Request System (OTRS) before 2.2.7 sends e-mail containing a Bcc header field that lists the Blind Carbon Copy recipients, which allows remote attackers to obtain potentially sensitive e-…
|
CWE-200
Information Exposure
|
CVE-2008-7281
|
2011-03-22 13:00 |
2011-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264652
|
- |
|
otrs
|
otrs
|
Kernel/Output/HTML/CustomerNewTicketQueueSelectionGeneric.pm in Open Ticket Request System (OTRS) before 2.2.6, when the CustomerPanelOwnSelection and CustomerGroupSupport options are enabled, allows…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-7282
|
2011-03-22 13:00 |
2011-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264653
|
- |
|
otrs
|
otrs
|
Open Ticket Request System (OTRS) before 2.2.6, when customer group support is enabled, allows remote authenticated users to bypass intended access restrictions and perform web-interface updates to t…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2008-7283
|
2011-03-22 13:00 |
2011-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264654
|
- |
|
apple
|
itunes safari webkit
|
The DOM level 2 implementation in WebKit, as used in Apple iTunes before 10.2 on Windows and Apple Safari, does not properly handle DOM manipulations associated with event listeners during processing…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-0115
|
2011-03-18 11:56 |
2011-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264655
|
- |
|
apple
|
itunes safari webkit
|
Use-after-free vulnerability in the Runin box functionality in the Cascading Style Sheets (CSS) 2.1 Visual Formatting Model implementation in WebKit, as used in Apple iTunes before 10.2 on Windows an…
|
CWE-399
Resource Management Errors
|
CVE-2011-0132
|
2011-03-18 11:56 |
2011-03-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264656
|
- |
|
hp
|
web_jetadmin
|
Unspecified vulnerability in HP Web Jetadmin 10.2 Service Release 3 and 4 allows local users to bypass intended access restrictions via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2011-0278
|
2011-03-18 11:56 |
2011-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264657
|
- |
|
dell
|
dellsystemlite.scanner_activex_control
|
Directory traversal vulnerability in the GetData method in the Dell DellSystemLite.Scanner ActiveX control in DellSystemLite.ocx 1.0.0.0 allows remote attackers to read arbitrary files via directory …
|
CWE-22
Path Traversal
|
CVE-2011-0329
|
2011-03-18 11:56 |
2011-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264658
|
- |
|
dell
|
dellsystemlite.scanner_activex_control
|
The Dell DellSystemLite.Scanner ActiveX control in DellSystemLite.ocx 1.0.0.0 does not properly restrict the values of the WMIAttributesOfInterest property, which allows remote attackers to execute a…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-0330
|
2011-03-18 11:56 |
2011-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264659
|
- |
|
proftpd
|
proftpd
|
Heap-based buffer overflow in the sql_prepare_where function (contrib/mod_sql.c) in ProFTPD before 1.3.3d, when mod_sql is enabled, allows remote attackers to cause a denial of service (crash) and po…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-4652
|
2011-03-18 11:56 |
2011-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264660
|
- |
|
apple
|
safari webkit
|
The Cascading Style Sheets (CSS) implementation in WebKit in Apple Safari before 5.0 on Mac OS X 10.5 through 10.6 and Windows, and before 4.1 on Mac OS X 10.4, does not properly handle the :visited …
|
CWE-200
Information Exposure
|
CVE-2010-2264
|
2011-03-18 11:50 |
2010-06-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|