259441
|
- |
|
sunncomm
|
mediamax_drm
|
SunnComm MediaMax DRM 5.0.21.0, as used by Sony BMG, assigns insecure Everyone/Full Control permissions to the "SunnComm Shared" directory, which allows local users to gain privileges by modifying pr…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2005-4069
|
2011-03-7 14:00 |
2005-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259442
|
- |
|
mybulletinboard
|
mybulletinboard
|
Multiple unspecified vulnerabilities in MyBulletinBoard (MyBB) before 1.0 have unknown impact and attack vectors, a different set of vulnerabilities than those identified by CVE-2005-4199.
|
NVD-CWE-noinfo
|
CVE-2005-4200
|
2011-03-7 14:00 |
2005-12-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259443
|
- |
|
phpwebgallery
|
phpwebgallery
|
Multiple SQL injection vulnerabilities in PhpWebGallery 1.5.1 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) since, (2) sort_by, and (3) items_number parameters to c…
|
CWE-89
SQL Injection
|
CVE-2005-4228
|
2011-03-7 14:00 |
2005-12-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259444
|
- |
|
envolution
|
envolution
|
SQL injection vulnerability in the News module in Envolution allows remote attackers to execute arbitrary SQL commands via the (1) startrow and (2) catid parameter.
|
CWE-89
SQL Injection
|
CVE-2005-4263
|
2011-03-7 14:00 |
2005-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259445
|
- |
|
qualcomm
|
worldmail
|
Stack-based buffer overflow in Qualcomm WorldMail 3.0 allows remote attackers to execute arbitrary code via a long IMAP command that ends with a "}" character, as demonstrated using long (1) LIST, (2…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2005-4267
|
2011-03-7 14:00 |
2005-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259446
|
- |
|
nicplex
|
plexcart_x3
|
SQL injection vulnerability in the search function in Plexum PLEXCART X3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors, possibly involving the (1) s_itemname and (…
|
CWE-89
SQL Injection
|
CVE-2005-4315
|
2011-03-7 14:00 |
2005-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259447
|
- |
|
ibm
|
lotus_connections
|
IBM Lotus Connections 3.0, when IBM WebSphere Application Server 7.0.0.11 is used, does not properly restrict access to the internal login module, which has unspecified impact and attack vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-1032
|
2011-03-1 16:08 |
2011-02-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259448
|
- |
|
gnome
|
tomboy
|
The (1) tomboy and (2) tomboy-panel scripts in GNOME Tomboy 1.5.2 and earlier place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse…
|
CWE-94
Code Injection
|
CVE-2010-4005
|
2011-03-1 16:06 |
2010-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259449
|
- |
|
mutare
|
evm
|
Multiple cross-site request forgery (CSRF) vulnerabilities in Mutare EVM allow remote attackers to hijack the authentication of arbitrary users for requests that (1) change a PIN, (2) delete messages…
|
CWE-352
Origin Validation Error
|
CVE-2011-1104
|
2011-03-1 14:00 |
2011-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
259450
|
- |
|
ibm
|
lotus_domino
|
Buffer overflow in nLDAP.exe in IBM Lotus Domino allows remote attackers to execute arbitrary code via a long string in an LDAP Bind operation, aka SPR KLYH87LMVX.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-0917
|
2011-02-25 15:58 |
2011-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|