266171
|
- |
|
typo3
|
typo3
|
The be_user_creation task in TYPO3 4.2.x before 4.2.15 and 4.3.x before 4.3.7 allows remote authenticated users to gain privileges via a crafted POST request that creates a user account with arbitrar…
|
CWE-20
Improper Input Validation
|
CVE-2010-3716
|
2010-10-27 13:00 |
2010-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266172
|
- |
|
typo3
|
typo3
|
The t3lib_div::validEmail function in TYPO3 4.2.x before 4.2.15, 4.3.x before 4.3.7, and 4.4.x before 4.4.4 does not properly restrict input to filter_var FILTER_VALIDATE_EMAIL operations in PHP, whi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-3717
|
2010-10-27 13:00 |
2010-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266173
|
- |
|
typo3
|
typo3
|
Unspecified vulnerability in the Extension Manager in TYPO3 4.2.x before 4.2.15, 4.3.x before 4.3.7, and 4.4.x before 4.4.4 allows remote authenticated administrators to read and possibly modify arbi…
|
CWE-20
Improper Input Validation
|
CVE-2010-4068
|
2010-10-27 13:00 |
2010-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266174
|
- |
|
ibm
|
informix_dynamic_server
|
Stack-based buffer overflow in IBM Informix Dynamic Server (IDS) 7.x through 7.31, 9.x through 9.40, 10.00 before 10.00.xC10, 11.10 before 11.10.xC3, and 11.50 before 11.50.xC3 allows remote authenti…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-4069
|
2010-10-27 13:00 |
2010-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266175
|
- |
|
ibm
|
informix_dynamic_server
|
Integer overflow in librpc.dll in portmap.exe (aka the ISM Portmapper service) in ISM before 2.20.TC1.117 in IBM Informix Dynamic Server (IDS) 7.x before 7.31.xD11, 9.x before 9.40.xC10, 10.00 before…
|
CWE-189
Numeric Errors
|
CVE-2010-4070
|
2010-10-27 13:00 |
2010-10-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266176
|
- |
|
nos_microsystems
|
getplus_download_manager
|
Stack-based buffer overflow in the getPlus ActiveX control in gp.ocx 1.2.2.50 in NOS Microsystems getPlus Download Manager, as used for the Adobe Reader 8.1 installation process and other downloads, …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2008-5364
|
2010-10-25 13:00 |
2008-12-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266177
|
- |
|
erik_hjortsberg
|
ember
|
Ember 0.5.7 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
|
NVD-CWE-Other
|
CVE-2010-3355
|
2010-10-22 22:41 |
2010-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266178
|
- |
|
henner_zeller
|
henplus
|
HenPlus JDBC SQL-Shell 0.9.7 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
|
NVD-CWE-Other
|
CVE-2010-3358
|
2010-10-22 13:00 |
2010-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266179
|
- |
|
shrew
|
vpn_client
|
The (1) iked, (2) ikea, and (3) ikec scripts in Shrew Soft IKE 2.1.5 place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared l…
|
NVD-CWE-Other
|
CVE-2010-3361
|
2010-10-22 13:00 |
2010-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266180
|
- |
|
mistelix
|
mistelix
|
Mistelix 0.31 places a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.
|
NVD-CWE-Other
|
CVE-2010-3365
|
2010-10-22 05:22 |
2010-10-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|