265021
|
- |
|
cisco
|
unified_wireless_network_solution_software
|
Cross-site scripting (XSS) vulnerability in Cisco Unified Wireless Network (UWN) Solution 7.x before 7.0.98.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2988
|
2010-08-11 05:02 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265022
|
- |
|
cisco
|
wireless_control_system_software
|
Multiple cross-site scripting (XSS) vulnerabilities in Cisco Wireless Control System (WCS) 7.x before 7.0.164, as used in Cisco Unified Wireless Network (UWN) Solution 7.x before 7.0.98.0, allow remo…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2987
|
2010-08-11 04:59 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265023
|
- |
|
cisco
|
unified_wireless_network_solution_software
|
Cisco Unified Wireless Network (UWN) Solution 7.x before 7.0.98.0 does not properly implement TLS and SSL, which has unspecified impact and remote attack vectors, aka Bug ID CSCtd01611.
|
CWE-16
Configuration
|
CVE-2010-2977
|
2010-08-10 23:26 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265024
|
- |
|
cisco
|
unified_wireless_network_solution_software
|
Cisco Unified Wireless Network (UWN) Solution 7.x before 7.0.98.0 does not use an adequate message-digest algorithm for a self-signed certificate, which allows remote attackers to bypass intended acc…
|
CWE-310
Cryptographic Issues
|
CVE-2010-2978
|
2010-08-10 23:26 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265025
|
- |
|
cisco
|
unified_wireless_network_solution_software
|
The controller in Cisco Unified Wireless Network (UWN) Solution 7.x through 7.0.98.0 has (1) a default SNMP read-only community of public, (2) a default SNMP read-write community of private, and a va…
|
CWE-255
Credentials Management
|
CVE-2010-2976
|
2010-08-10 23:25 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265026
|
- |
|
ubuntu
|
ubuntu_linux
|
The base-files package before 5.0.0ubuntu7.1 on Ubuntu 9.10 and before 5.0.0ubuntu20.10.04.2 on Ubuntu 10.04 LTS, as shipped on Dell Latitude 2110 netbooks, does not require authentication for packag…
|
CWE-287
Improper Authentication
|
CVE-2010-0834
|
2010-08-10 21:23 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265027
|
- |
|
redhat
|
jboss_enterprise_service_bus jboss_enterprise_soa_platform
|
JBoss Enterprise Service Bus (ESB) before 4.7 CP02 in JBoss Enterprise SOA Platform before 5.0.2 does not properly consider the security domain with which a service is secured, which might allow remo…
|
CWE-20
Improper Input Validation
|
CVE-2010-2474
|
2010-08-10 21:23 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265028
|
- |
|
redhat
|
jboss_enterprise_soa_platform
|
The default configuration of the deployment descriptor (aka web.xml) in picketlink-sts.war in (1) the security_saml quickstart, (2) the webservice_proxy_security quickstart, (3) the web-console appli…
|
CWE-16
Configuration
|
CVE-2010-2493
|
2010-08-10 21:23 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265029
|
- |
|
ibm
|
websphere_service_registry_and_repository
|
Multiple cross-site scripting (XSS) vulnerabilities in IBM WebSphere Service Registry and Repository (WSRR) 6.3 allow remote attackers to inject arbitrary web script or HTML via (1) the searchTerm pa…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2985
|
2010-08-10 21:23 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
265030
|
- |
|
cisco
|
unified_wireless_network_solution_software
|
Cisco Unified Wireless Network (UWN) Solution 7.x before 7.0.98.0 on 5508 series controllers allows remote attackers to cause a denial of service (buffer leak and device crash) via ARP requests that …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-2979
|
2010-08-10 21:19 |
2010-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|