263141
|
- |
|
stdutility
|
stdu_explorer
|
Untrusted search path vulnerability in STDU Explorer 1.0.201 allows local users to gain privileges via a Trojan horse dwmapi.dll file in the current working directory. NOTE: some of these details ar…
|
NVD-CWE-Other
|
CVE-2010-5221
|
2012-09-6 19:41 |
2012-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263142
|
- |
|
stdutility
|
stdu_explorer
|
Per: http://cwe.mitre.org/data/definitions/426.html
'CWE-426 Untrusted Search Path'
|
NVD-CWE-Other
|
CVE-2010-5221
|
2012-09-6 19:41 |
2012-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263143
|
- |
|
phoenixcpm
|
phoenix_project_manager
|
Multiple untrusted search path vulnerabilities in Phoenix Project Manager 2.1.0.8 allow local users to gain privileges via a Trojan horse (1) wbtrv32.dll or (2) w3btrv7.dll file in the current workin…
|
NVD-CWE-Other
|
CVE-2010-5223
|
2012-09-6 19:41 |
2012-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263144
|
- |
|
phoenixcpm
|
phoenix_project_manager
|
Per: http://cwe.mitre.org/data/definitions/426.html
'CWE-426 Untrusted Search Path'
|
NVD-CWE-Other
|
CVE-2010-5223
|
2012-09-6 19:41 |
2012-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263145
|
- |
|
babylon
|
babylon
|
Untrusted search path vulnerability in Babylon 8.1.0 r16 allows local users to gain privileges via a Trojan horse BESExtension.dll file in the current working directory, as demonstrated by a director…
|
NVD-CWE-Other
|
CVE-2010-5225
|
2012-09-6 19:41 |
2012-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263146
|
- |
|
babylon
|
babylon
|
Per: http://cwe.mitre.org/data/definitions/426.html
'CWE-426 Untrusted Search Path'
|
NVD-CWE-Other
|
CVE-2010-5225
|
2012-09-6 19:41 |
2012-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263147
|
- |
|
dell
|
crowbar
|
Cross-site scripting (XSS) vulnerability in crowbar_framework/app/views/support/index.html.haml in the Crowbar barclamp in Crowbar, possibly 1.4 and earlier, allows remote attackers to inject arbitra…
|
CWE-79
Cross-site Scripting
|
CVE-2012-3551
|
2012-09-6 13:00 |
2012-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263148
|
- |
|
typo3
|
typo3
|
The Extbase Framework in TYPO3 4.6.x through 4.6.6, 4.7, and 6.0 unserializes untrusted data, which allows remote attackers to unserialize arbitrary objects and possibly execute arbitrary code via ve…
|
NVD-CWE-Other
|
CVE-2012-1605
|
2012-09-5 22:46 |
2012-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263149
|
- |
|
typo3
|
typo3
|
Multiple cross-site scripting (XSS) vulnerabilities in the Backend component in TYPO3 4.4.0 through 4.4.13, 4.5.0 through 4.5.13, 4.6.0 through 4.6.6, 4.7, and 6.0 allow remote authenticated backend …
|
CWE-79
Cross-site Scripting
|
CVE-2012-1606
|
2012-09-5 13:00 |
2012-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
263150
|
- |
|
typo3
|
typo3
|
The Command Line Interface (CLI) script in TYPO3 4.4.0 through 4.4.13, 4.5.0 through 4.5.13, 4.6.0 through 4.6.6, 4.7, and 6.0 allows remote attackers to obtain the database name via a direct request.
|
CWE-200
Information Exposure
|
CVE-2012-1607
|
2012-09-5 13:00 |
2012-09-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|