267041
|
- |
|
cisco
|
scientific_atlanta_webstar_dpc2100r2
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the web interface on the Cisco Scientific Atlanta WebSTAR DPC2100R2 cable modem with firmware 2.0.2r1256-060303 allow remote attackers to…
|
CWE-352
Origin Validation Error
|
CVE-2010-2025
|
2010-05-27 13:00 |
2010-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267042
|
- |
|
cisco
|
scientific_atlanta_webstar_dpc2100r2
|
The web interface on the Cisco Scientific Atlanta WebSTAR DPC2100R2 cable modem with firmware 2.0.2r1256-060303 allows remote attackers to bypass authentication, and reset the modem or replace the fi…
|
CWE-287
Improper Authentication
|
CVE-2010-2026
|
2010-05-27 13:00 |
2010-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267043
|
- |
|
cisco
|
scientific_atlanta_webstar_dpc2100r2
|
The web interface on the Cisco Scientific Atlanta WebSTAR DPC2100R2 cable modem with firmware 2.0.2r1256-060303 has a default administrative password (aka SAPassword) of W2402, which makes it easier …
|
CWE-255
Credentials Management
|
CVE-2010-2082
|
2010-05-27 13:00 |
2010-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267044
|
- |
|
microsoft
|
dynamics_gp
|
Microsoft Dynamics GP has a default value of ACCESS for the system password, which might make it easier for remote authenticated users to bypass intended access restrictions via unspecified vectors.
|
CWE-255
Credentials Management
|
CVE-2010-2083
|
2010-05-27 13:00 |
2010-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267045
|
- |
|
novell
|
access_manager
|
The Identity Server in Novell Access Manager before 3.1 SP1 allows attackers with disabled Active Directory accounts to authenticate using X.509 authentication, which bypasses intended access restric…
|
CWE-287
Improper Authentication
|
CVE-2009-4879
|
2010-05-27 13:00 |
2010-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267046
|
- |
|
rhinosoft
|
serv-u
|
Stack-based buffer overflow in the HTTP server in Rhino Software Serv-U Web Client 9.0.0.5 allows remote attackers to cause a denial of service (server crash) or execute arbitrary code via a long Ses…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2009-4873
|
2010-05-27 03:30 |
2010-05-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267047
|
- |
|
percha
|
com_perchafieldsattach
|
Directory traversal vulnerability in the Percha Fields Attach (com_perchafieldsattach) component 1.x for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other im…
|
CWE-22
Path Traversal
|
CVE-2010-2036
|
2010-05-26 22:44 |
2010-05-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267048
|
- |
|
phorum
|
phorum
|
Cross-site scripting (XSS) vulnerability in Phorum before 5.2.15 allows remote attackers to inject arbitrary web script or HTML via an invalid email address.
|
CWE-79
Cross-site Scripting
|
CVE-2010-1629
|
2010-05-26 14:48 |
2010-05-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267049
|
- |
|
cactushop
|
cactushop
|
Multiple cross-site scripting (XSS) vulnerabilities in _invoice.asp in CactuShop before 6.155 allow remote attackers to inject arbitrary web script or HTML via the (1) billing address or (2) shipping…
|
CWE-79
Cross-site Scripting
|
CVE-2010-1486
|
2010-05-26 13:00 |
2010-04-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267050
|
- |
|
matamko
|
com_matamko
|
Directory traversal vulnerability in the Matamko (com_matamko) component 1.01 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.
|
CWE-22
Path Traversal
|
CVE-2010-1495
|
2010-05-26 13:00 |
2010-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|