270761
|
- |
|
web_development_house
|
alibaba_clone
|
Multiple SQL injection vulnerabilities in Web Development House Alibaba Clone allow remote attackers to execute arbitrary SQL commands via the (1) IndustryID parameter to category.php and the (2) Sel…
|
CWE-89
SQL Injection
|
CVE-2009-2439
|
2010-02-13 14:00 |
2009-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270762
|
- |
|
osticket
|
osticket
|
SQL injection vulnerability in scp/ajax.php in osTicket before 1.6.0 Stable allows remote authenticated users, with "Staff" permissions, to execute arbitrary SQL commands via the input parameter.
|
CWE-89
SQL Injection
|
CVE-2010-0605
|
2010-02-12 14:00 |
2010-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270763
|
- |
|
novaboard
|
novaboard
|
SQL injection vulnerability in index.php in NovaBoard 1.1.2 allows remote attackers to execute arbitrary SQL commands via the forums[] parameter in a search action.
|
CWE-89
SQL Injection
|
CVE-2010-0608
|
2010-02-12 14:00 |
2010-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270764
|
- |
|
netbsd
|
netbsd
|
Integer signedness error in NetBSD 4.0, 5.0, and NetBSD-current before 2010-01-21 allows local users to cause a denial of service (kernel panic) via a negative mixer index number being passed to (1) …
|
CWE-189
Numeric Errors
|
CVE-2010-0561
|
2010-02-9 14:00 |
2010-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270765
|
- |
|
sun
|
one_web_server
|
Sun ONE (aka iPlanet) Web Server 6 on Windows, when DNS resolution is enabled for client IP addresses, uses a logging format that does not identify whether a dotted quad represents an unresolved IP a…
|
CWE-189
Numeric Errors
|
CVE-2003-1579
|
2010-02-8 23:55 |
2010-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270766
|
- |
|
ibm
|
cognos_express
|
IBM Cognos Express 9.0 allows attackers to obtain unspecified access to the Tomcat Manager component, and cause a denial of service, by leveraging hardcoded credentials.
|
CWE-255
Credentials Management
|
CVE-2010-0557
|
2010-02-8 14:00 |
2010-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270767
|
- |
|
apache
|
http_server
|
The Apache HTTP Server 2.0.44, when DNS resolution is enabled for client IP addresses, uses a logging format that does not identify whether a dotted quad represents an unresolved IP address, which al…
|
CWE-189
Numeric Errors
|
CVE-2003-1580
|
2010-02-8 14:00 |
2010-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270768
|
- |
|
apache
|
http_server
|
The Apache HTTP Server 2.0.44, when DNS resolution is enabled for client IP addresses, allows remote attackers to inject arbitrary text into log files via an HTTP request in conjunction with a crafte…
|
CWE-79
Cross-site Scripting
|
CVE-2003-1581
|
2010-02-8 14:00 |
2010-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270769
|
- |
|
tor
|
tor
|
Tor before 0.2.1.22, and 0.2.2.x before 0.2.2.7-alpha, uses deprecated identity keys for certain directory authorities, which makes it easier for man-in-the-middle attackers to compromise the anonymi…
|
CWE-200
Information Exposure
|
CVE-2010-0383
|
2010-02-5 16:13 |
2010-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
270770
|
- |
|
ircd-ratbox
|
ircd-ratbox
|
cache.c in ircd-ratbox before 2.2.9 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a HELP command.
|
NVD-CWE-Other
|
CVE-2010-0300
|
2010-02-5 14:00 |
2010-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|