265061
|
- |
|
squid-cache
|
squid
|
dns_internal.cc in Squid 3.1.6, when IPv6 DNS resolution is not enabled, accesses an invalid socket during an IPv4 TCP DNS query, which allows remote attackers to cause a denial of service (assertion…
|
NVD-CWE-Other
|
CVE-2010-2951
|
2010-10-13 13:00 |
2010-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265062
|
- |
|
david_shadoff
|
mednafen
|
The network-play implementation in Mednafen before 0.8.D might allow remote servers to execute arbitrary code via unspecified vectors, related to "stack manipulation" issues.
|
CWE-94
Code Injection
|
CVE-2010-3085
|
2010-10-13 13:00 |
2010-10-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265063
|
- |
|
apple
|
mail
|
The Limit Mail feature in the Parental Controls functionality in Mail on Apple Mac OS X does not properly enforce the correspondence whitelist, which allows remote attackers to bypass intended access…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-3887
|
2010-10-12 03:01 |
2010-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265064
|
- |
|
cmsmadesimple
|
cms_made_simple
|
Cross-site request forgery (CSRF) vulnerability in the Change Group Permissions module in CMS Made Simple 1.7.1 and earlier allows remote attackers to hijack the authentication of arbitrary users for…
|
CWE-352
Origin Validation Error
|
CVE-2010-3883
|
2010-10-12 02:45 |
2010-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265065
|
- |
|
cmsmadesimple
|
cms_made_simple
|
Multiple cross-site scripting (XSS) vulnerabilities in CMS Made Simple 1.7.1 and earlier allow remote attackers to inject arbitrary web script or HTML via input to the (1) Add Pages, (2) Add Global C…
|
CWE-79
Cross-site Scripting
|
CVE-2010-3882
|
2010-10-12 02:42 |
2010-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265066
|
- |
|
jianping_yu
|
pidgin-knotify
|
The notify function in pidgin-knotify.c in the pidgin-knotify plugin 0.2.1 and earlier for Pidgin allows remote attackers to execute arbitrary commands via shell metacharacters in a message.
|
CWE-94
Code Injection
|
CVE-2010-3088
|
2010-10-12 02:30 |
2010-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265067
|
- |
|
cmsmadesimple
|
cms_made_simple
|
Directory traversal vulnerability in lib/translation.functions.php in CMS Made Simple before 1.8.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the defau…
|
CWE-22
Path Traversal
|
CVE-2010-2797
|
2010-10-12 02:14 |
2010-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265068
|
- |
|
microsoft
|
windows
|
Unspecified vulnerability in Microsoft Windows on 32-bit platforms allows local users to gain privileges via unknown vectors, as exploited in the wild in July 2010 by the Stuxnet worm, and identified…
|
NVD-CWE-noinfo
|
CVE-2010-3888
|
2010-10-11 13:00 |
2010-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265069
|
- |
|
freeradius
|
freeradius
|
The wait_for_child_to_die function in main/event.c in FreeRADIUS 2.1.x before 2.1.10, in certain circumstances involving long-term database outages, does not properly handle long queue times for requ…
|
CWE-399
Resource Management Errors
|
CVE-2010-3697
|
2010-10-8 13:00 |
2010-10-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265070
|
- |
|
ibm
|
db2
|
The Install component in IBM DB2 9.5 before FP5 and 9.7 before FP1 configures the High Availability (HA) scripts with incorrect file-permission and authorization settings, which has unknown impact an…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-4331
|
2010-10-7 14:44 |
2009-12-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|