271291
|
- |
|
ibm
|
websphere_portal
|
Cross-site scripting (XSS) vulnerability in the Portlet Palette in IBM WebSphere Portal 6.0.1.5 wp6015_008_01 allows remote attackers to inject arbitrary web script or HTML via the search field.
|
CWE-79
Cross-site Scripting
|
CVE-2010-0704
|
2010-03-2 14:00 |
2010-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271292
|
- |
|
moinmo
|
moinmoin
|
MoinMoin 1.9 before 1.9.1 does not perform the expected clearing of the sys.argv array in situations where the GATEWAY_INTERFACE environment variable is set, which allows remote attackers to obtain s…
|
CWE-200
Information Exposure
|
CVE-2010-0667
|
2010-03-1 14:00 |
2010-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271293
|
- |
|
greatjoomla
|
scriptegrator_plugin
|
Multiple directory traversal vulnerabilities in the Core Design Scriptegrator plugin 1.4.1 for Joomla! allow remote attackers to include and execute arbitrary local files via directory traversal sequ…
|
CWE-22
Path Traversal
|
CVE-2010-0760
|
2010-03-1 14:00 |
2010-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271294
|
- |
|
gnome
|
screensaver
|
gnome-screensaver before 2.28.2 allows physically proximate attackers to bypass screen locking and access an unattended workstation by moving the mouse position to an external monitor and then discon…
|
NVD-CWE-Other
|
CVE-2010-0414
|
2010-02-26 16:11 |
2010-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271295
|
- |
|
hp
|
dreamscreen
|
Unspecified vulnerability on the HP DreamScreen 100 and 130 with firmware before 1.6.0.0, when using a web-connected configuration, allows remote attackers to obtain sensitive information via unknown…
|
NVD-CWE-noinfo
|
CVE-2010-0446
|
2010-02-26 16:11 |
2010-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271296
|
- |
|
cisco
|
ironport_encryption_appliance ironport_postx
|
Unspecified vulnerability in the administrative interface in the embedded HTTPS server on the Cisco IronPort Encryption Appliance 6.2.x before 6.2.9.1 and 6.5.x before 6.5.2, and the IronPort PostX M…
|
NVD-CWE-noinfo
|
CVE-2010-0143
|
2010-02-26 16:10 |
2010-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271297
|
- |
|
cisco
|
ironport_encryption_appliance ironport_postx
|
Unspecified vulnerability in the WebSafe DistributorServlet in the embedded HTTPS server on the Cisco IronPort Encryption Appliance 6.2.x before 6.2.9.1 and 6.5.x before 6.5.2, and the IronPort PostX…
|
NVD-CWE-noinfo
|
CVE-2010-0144
|
2010-02-26 16:10 |
2010-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271298
|
- |
|
cisco
|
ironport_encryption_appliance ironport_postx
|
Unspecified vulnerability in the embedded HTTPS server on the Cisco IronPort Encryption Appliance 6.2.x before 6.2.9.1 and 6.5.x before 6.5.2, and the IronPort PostX MAP before 6.2.9.1, allows remote…
|
NVD-CWE-noinfo
|
CVE-2010-0145
|
2010-02-26 16:10 |
2010-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271299
|
- |
|
pps.jussieu
|
polipo
|
The httpClientDiscardBody function in client.c in Polipo 0.9.8, 0.9.12, 1.0.4, and possibly other versions, allows remote attackers to cause a denial of service (crash) via a request with a large Con…
|
CWE-189
Numeric Errors
|
CVE-2009-4413
|
2010-02-26 16:10 |
2009-12-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271300
|
- |
|
pps.jussieu
|
polipo
|
Polipo 1.0.4, and possibly other versions, allows remote attackers to cause a denial of service (crash) via a request with a Cache-Control header that lacks a value for the max-age field, which trigg…
|
CWE-20
Improper Input Validation
|
CVE-2009-3305
|
2010-02-26 16:08 |
2009-12-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|