264511
|
- |
|
ibm
|
tivoli_directory_server
|
IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.5-TIV-ITDS-LA0007 does not properly handle the simultaneous changing of multiple passwords, which makes it easier for remote authenticated users to …
|
CWE-20
Improper Input Validation
|
CVE-2008-7289
|
2011-04-21 19:55 |
2011-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264512
|
- |
|
ibm
|
tivoli_directory_server
|
Memory leak in the ldap_explode_rdn API function in IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.5-TIV-ITDS-LA0007 allows remote authenticated users to cause a denial of service (memory consump…
|
CWE-399
Resource Management Errors
|
CVE-2008-7290
|
2011-04-21 19:55 |
2011-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264513
|
- |
|
ibm
|
tivoli_directory_server
|
The get_filter_list function in IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.5-TIV-ITDS-LA0006 does not properly perform certain sub filter parsing, which allows remote authenticated users to c…
|
CWE-399
Resource Management Errors
|
CVE-2007-6742
|
2011-04-21 19:55 |
2011-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264514
|
- |
|
ibm
|
tivoli_directory_server
|
Double free vulnerability in IBM Tivoli Directory Server (TDS) 5.2 before 5.2.0.5-TIV-ITDS-LA0005 allows remote authenticated users to cause a denial of service (ABEND) via search operations that tri…
|
CWE-399
Resource Management Errors
|
CVE-2007-6743
|
2011-04-21 19:55 |
2011-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264515
|
- |
|
novell
|
opensuse_build_service
|
The API in SUSE openSUSE Build Service (OBS) 2.0.x before 2.0.8 and 2.1.x before 2.1.6 allows attackers to bypass intended write-access restrictions and modify a (1) package or (2) project via unspec…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-0466
|
2011-04-21 13:00 |
2011-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264516
|
- |
|
microsoft
|
windows_azure_sdk
|
Microsoft Windows Azure Software Development Kit (SDK) 1.3.x before 1.3.20121.1237, when Full IIS and a Web Role are used with an ASP.NET application, does not properly support the use of cookies for…
|
CWE-20
Improper Input Validation
|
CVE-2011-1068
|
2011-04-21 13:00 |
2011-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264517
|
- |
|
ibm
|
websphere_application_server
|
The installer in IBM WebSphere Application Server (WAS) before 7.0.0.15 uses 777 permissions for a temporary log directory, which allows local users to have unintended access to log files via standar…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-1307
|
2011-04-21 13:00 |
2011-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264518
|
- |
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server (WAS) 6.0.x through 6.0.2.43, 6.1.x before 6.1.0.37, and 7.0.x before 7.0.0.17 on z/OS, when a Local OS user registry or Federated Repository with RACF adapter is use…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-1683
|
2011-04-21 13:00 |
2011-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264519
|
- |
|
lightneasy
|
lightneasy
|
Cross-site scripting (XSS) vulnerability in LightNEasy.php in LightNEasy 3.2.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter, which is not properly handled in a …
|
CWE-79
Cross-site Scripting
|
CVE-2010-4753
|
2011-04-21 13:00 |
2011-03-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264520
|
- |
|
pwhois
|
layer_four_traceroute
|
Unspecified vulnerability in lft in pWhois Layer Four Traceroute (LFT) 3.x before 3.3 allows local users to gain privileges via a crafted command line.
|
NVD-CWE-noinfo
|
CVE-2011-0765
|
2011-04-21 11:33 |
2011-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|