266121
|
- |
|
apple
|
airport_express_base_station_firmware airport_extreme_base_station_firmware airport_express airport_extreme time_capsule
|
Unspecified vulnerability in the network bridge functionality on the Apple Time Capsule, AirPort Extreme Base Station, and AirPort Express Base Station with firmware before 7.5.2 allows remote attack…
|
NVD-CWE-noinfo
|
CVE-2010-1804
|
2011-01-19 15:57 |
2010-12-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266122
|
- |
|
wordpress
|
wordpress
|
WordPress 2.9 before 2.9.2 allows remote authenticated users to read trash posts from other authors via a direct request with a modified p parameter.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-0682
|
2011-01-19 15:55 |
2010-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266123
|
- |
|
apple
|
airport_express_base_station_firmware airport_extreme_base_station_firmware airport_express airport_extreme time_capsule
|
The Application-Level Gateway (ALG) on the Apple Time Capsule, AirPort Extreme Base Station, and AirPort Express Base Station with firmware before 7.5.2 modifies PORT commands in incoming FTP traffic…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-0039
|
2011-01-19 15:53 |
2010-12-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266124
|
- |
|
apple
|
airport_express_base_station_firmware airport_extreme_base_station_firmware airport_express airport_extreme time_capsule
|
The ICMPv6 implementation on the Apple Time Capsule, AirPort Extreme Base Station, and AirPort Express Base Station with firmware before 7.5.2 does not limit the rate of (1) Router Advertisement and …
|
CWE-399
Resource Management Errors
|
CVE-2009-2189
|
2011-01-19 15:48 |
2010-12-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266125
|
- |
|
realnetworks
|
realplayer realplayer_sp
|
The cook codec in RealNetworks RealPlayer 11.0 through 11.1, RealPlayer SP 1.0 through 1.1.5, Mac RealPlayer 11.0 through 12.0.0.1444, and Linux RealPlayer 11.0.2.1744 does not properly perform initi…
|
NVD-CWE-Other
|
CVE-2010-0121
|
2011-01-19 14:00 |
2010-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266126
|
- |
|
realnetworks
|
realplayer realplayer_sp
|
Per: http://cwe.mitre.org/data/definitions/665.html
'CWE-665: Improper Initialization'
|
NVD-CWE-Other
|
CVE-2010-0121
|
2011-01-19 14:00 |
2010-12-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266127
|
- |
|
oracle
|
e-business_suite
|
Unspecified vulnerability in the Oracle Applications Manager component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect confidentiality and integrity via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2010-2388
|
2011-01-19 14:00 |
2010-10-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266128
|
- |
|
hypermail-project
|
hypermail
|
Cross-site scripting (XSS) vulnerability in Hypermail 2.2.0 allows remote attackers to inject arbitrary web script or HTML via a crafted From address, which is not properly handled when indexing mess…
|
CWE-79
Cross-site Scripting
|
CVE-2010-4339
|
2011-01-18 14:00 |
2011-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266129
|
- |
|
ecava
|
integraxor
|
Directory traversal vulnerability in Ecava IntegraXor 3.6.4000.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the file_name parameter in an open request.
|
CWE-22
Path Traversal
|
CVE-2010-4598
|
2011-01-14 15:48 |
2010-12-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266130
|
- |
|
cstr
|
festival
|
festival_server in Centre for Speech Technology Research (CSTR) Festival, probably 2.0.95-beta and earlier, places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gai…
|
NVD-CWE-Other
|
CVE-2010-3996
|
2011-01-14 15:47 |
2010-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|