263931
|
- |
|
plume-cms
|
plume_cms
|
Multiple PHP remote file inclusion vulnerabilities in Plume CMS 1.0.6 and earlier allow remote attackers to execute arbitrary PHP code via the _PX_config[manager_path] parameter to (1) articles.php, …
|
CWE-94
Code Injection
|
CVE-2006-4533
|
2011-11-10 14:00 |
2006-09-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263932
|
- |
|
adobe
|
coldfusion
|
Cross-site scripting (XSS) vulnerability in Adobe ColdFusion before 9.0.1 CHF1 allows remote attackers to inject arbitrary web script or HTML via the User-Agent HTTP header in an id=- query to a .cfm…
|
CWE-79
Cross-site Scripting
|
CVE-2011-0733
|
2011-11-8 13:18 |
2011-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263933
|
- |
|
adobe
|
coldfusion
|
Cross-site scripting (XSS) vulnerability in Adobe ColdFusion before 9.0.1 CHF1 allows remote attackers to inject arbitrary web script or HTML via an id parameter containing a JavaScript onLoad event …
|
CWE-79
Cross-site Scripting
|
CVE-2011-0734
|
2011-11-8 13:18 |
2011-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263934
|
- |
|
adobe
|
coldfusion
|
Cross-site scripting (XSS) vulnerability in Adobe ColdFusion before 9.0.1 CHF1 allows remote attackers to inject arbitrary web script or HTML via vectors involving a "tag script."
|
CWE-79
Cross-site Scripting
|
CVE-2011-0735
|
2011-11-8 13:18 |
2011-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263935
|
- |
|
cisco
|
ios ios_xe unified_communications_manager
|
Memory leak in Cisco IOS 12.4, 15.0, and 15.1, Cisco IOS XE 2.5.x through 3.2.x, and Cisco Unified Communications Manager (CUCM) 6.x and 7.x before 7.1(5b)su4, 8.x before 8.5(1)su2, and 8.6 before 8.…
|
CWE-399
Resource Management Errors
|
CVE-2011-2072
|
2011-11-3 11:58 |
2011-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263936
|
- |
|
plone
|
cmfeditions plone
|
The CMFEditions component 2.x in Plone 4.0.x through 4.0.9, 4.1, and 4.2 through 4.2a2 does not prevent the KwAsAttributes classes from being publishable, which allows remote attackers to access sub-…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-4030
|
2011-10-30 12:39 |
2011-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263937
|
- |
|
kbs
|
weblygo
|
Cross-site scripting (XSS) vulnerability in WeblyGo 5.0 Pro/LE, 5.02 Pro/LE, 5.03 Pro/LE, 5.04 Pro/LE, and 5.10 Pro/LE allows remote attackers to inject arbitrary web script or HTML via unspecified v…
|
CWE-79
Cross-site Scripting
|
CVE-2011-1330
|
2011-10-27 12:24 |
2011-06-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263938
|
- |
|
cisco
|
unified_ip_phone_7906 unified_ip_phone_7911g unified_ip_phone_7931g unified_ip_phone_7941g unified_ip_phone_7941g-ge unified_ip_phone_7942g unified_ip_phone_7945g unified_ip_phon…
|
Cisco Unified IP Phones 7900 devices (aka TNP phones) with software before 9.2.1 allow local users to gain privileges via unspecified vectors, aka Bug ID CSCtn65815.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-1603
|
2011-10-27 12:24 |
2011-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263939
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
The IPv6 implementation in the kernel in Apple Mac OS X before 10.6.8 allows local users to cause a denial of service (NULL pointer dereference and reboot) via vectors involving socket options.
|
NVD-CWE-Other
|
CVE-2011-1132
|
2011-10-27 12:23 |
2011-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263940
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Per: http://cwe.mitre.org/data/definitions/476.html
'CWE-476: NULL Pointer Dereference'
|
NVD-CWE-Other
|
CVE-2011-1132
|
2011-10-27 12:23 |
2011-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|