261101
|
- |
|
matthias_klose
|
fastjar
|
Directory traversal vulnerability in the extract_jar function in jartool.c in FastJar 0.98 allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in a non-initial pathname …
|
CWE-22
Path Traversal
|
CVE-2010-0831
|
2013-04-19 11:59 |
2010-06-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261102
|
- |
|
bibtex
|
bibtex
|
Buffer overflow in BibTeX 0.99 allows context-dependent attackers to cause a denial of service (memory corruption and crash) via a long .bib bibliography file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-1284
|
2013-04-19 11:49 |
2009-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261103
|
- |
|
matthias_klose
|
bash-doc
|
bash-doc 3.2 allows local users to overwrite arbitrary files via a symlink attack on a /tmp/cb#####.? temporary file, related to the (1) aliasconv.sh, (2) aliasconv.bash, and (3) cshtobash scripts.
|
CWE-59
Link Following
|
CVE-2008-5374
|
2013-04-19 11:42 |
2008-12-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261104
|
- |
|
chatelao
|
php_address_book
|
Multiple SQL injection vulnerabilities in PHP Address Book 8.2.5 allow remote attackers to execute arbitrary SQL commands via unspecified parameters to (1) edit.php or (2) import.php. NOTE: the view…
|
CWE-89
SQL Injection
|
CVE-2013-1748
|
2013-04-19 01:19 |
2013-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261105
|
- |
|
chatelao
|
php_address_book
|
Cross-site scripting (XSS) vulnerability in edit.php in PHP Address Book 8.2.5 allows user-assisted remote attackers to inject arbitrary web script or HTML via the Address field.
|
CWE-79
Cross-site Scripting
|
CVE-2013-1749
|
2013-04-18 20:33 |
2013-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261106
|
- |
|
schneider-electric
|
micom_s1_studio
|
The installer routine in Schneider Electric MiCOM S1 Studio uses world-writable permissions for executable files, which allows local users to modify the service or the configuration files, and conseq…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-0687
|
2013-04-18 13:00 |
2013-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261107
|
- |
|
bestwebsharing
|
groovy_media_player
|
Buffer overflow in Groovy Media Player 3.2.0 allows remote attackers to execute arbitrary code via a long string in a .m3u file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-2760
|
2013-04-18 13:00 |
2013-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261108
|
- |
|
rockwellautomation
|
rslinx_enterprise
|
LogReceiver.exe in Rockwell Automation RSLinx Enterprise CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 allows remote attackers to cause a denial of service (service…
|
CWE-20
Improper Input Validation
|
CVE-2012-4695
|
2013-04-18 13:00 |
2013-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261109
|
- |
|
rockwellautomation
|
factorytalk_services_platform
|
Integer signedness error in RNADiagnostics.dll in Rockwell Automation FactoryTalk Services Platform (FTSP) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 allows remo…
|
CWE-189
Numeric Errors
|
CVE-2012-4713
|
2013-04-18 13:00 |
2013-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261110
|
- |
|
rockwellautomation
|
factorytalk_services_platform
|
Integer overflow in RNADiagnostics.dll in Rockwell Automation FactoryTalk Services Platform (FTSP) CPR9, CPR9-SR1, CPR9-SR2, CPR9-SR3, CPR9-SR4, CPR9-SR5, CPR9-SR5.1, and CPR9-SR6 allows remote attac…
|
CWE-189
Numeric Errors
|
CVE-2012-4714
|
2013-04-18 13:00 |
2013-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|