270791
|
- |
|
sun
|
iplanet_messaging_server one_messaging_server
|
Cross-site scripting (XSS) vulnerability in Webmail in Sun ONE Messaging Server 6.1 and iPlanet Messaging Server 5.2 before 5.2hf2.02, when Internet Explorer is used, allows remote attackers to injec…
|
CWE-79
Cross-site Scripting
|
CVE-2004-2765
|
2010-01-31 14:00 |
2010-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270792
|
- |
|
sun
|
iplanet_messaging_server one_messaging_server
|
Webmail in Sun ONE Messaging Server 6.1 and iPlanet Messaging Server 5.2 before 5.2hf2.02 allows remote attackers to obtain unspecified "access" to e-mail via a crafted e-mail message, related to a "…
|
CWE-200
Information Exposure
|
CVE-2004-2766
|
2010-01-31 14:00 |
2010-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270793
|
- |
|
symantec
|
vxfs
|
VERITAS File System (VxFS) 3.3.3, 3.4, and 3.5 before MP1 Rolling Patch 02 for Sun Solaris 2.5.1 through 9 does not properly implement inheritance of default ACLs in certain circumstances related to …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2003-1575
|
2010-01-31 14:00 |
2010-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270794
|
- |
|
sun
|
change_manager
|
Buffer overflow in pamverifier in Change Manager (CM) 1.0 for Sun Management Center (SunMC) 3.0 on Solaris 8 and 9 on the sparc platform allows remote attackers to execute arbitrary code via unspecif…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2003-1576
|
2010-01-31 14:00 |
2010-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270795
|
- |
|
sun
|
change_manager
|
Per: http://sunsolve.sun.com/search/document.do?assetkey=1-66-201231-1
* "SunMC Change Manager" 1.0 is an unbundled Sun Management Center (SunMC) 3.0 add-on. It is not a part of the SunMC …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2003-1576
|
2010-01-31 14:00 |
2010-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270796
|
- |
|
martin_lambers
|
msmtp
|
Martin Lambers msmtp before 1.4.19, when OpenSSL is used, does not properly handle a '\0' character in a domain name in the (1) subject's Common Name or (2) Subject Alternative Name field of an X.509…
|
CWE-310
Cryptographic Issues
|
CVE-2009-3942
|
2010-01-28 16:00 |
2009-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270797
|
- |
|
tor
|
tor
|
Tor before 0.2.1.22, and 0.2.2.x before 0.2.2.7-alpha, when functioning as a bridge directory authority, allows remote attackers to obtain sensitive information about bridge identities and bridge des…
|
CWE-200
Information Exposure
|
CVE-2010-0385
|
2010-01-26 14:00 |
2010-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270798
|
- |
|
ibm
|
lotus_domino_server
|
The default configuration of the web server in IBM Lotus Domino Server, possibly 6.0 through 8.0, enables the HTTP TRACE method, which makes it easier for remote attackers to steal cookies and authen…
|
CWE-16
Configuration
|
CVE-2008-7253
|
2010-01-26 14:00 |
2010-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270799
|
- |
|
oracle
|
database_server
|
Unspecified vulnerability in the Oracle OLAP component in Oracle Database Server 10.1.0.4 (10g) allows remote authenticated attackers to affect availability via unknown vectors, aka DB02.
|
NVD-CWE-noinfo
|
CVE-2005-4884
|
2010-01-26 14:00 |
2010-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270800
|
- |
|
jce-tech
|
php_calendars_script
|
install.php in JCE-Tech PHP Calendars, downloaded 20100121, allows remote attackers to bypass intended access restrictions and modify application settings via a direct request. NOTE: this is only a …
|
CWE-16 CWE-264
Configuration Permissions, Privileges, and Access Controls
|
CVE-2010-0380
|
2010-01-25 14:00 |
2010-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|