264131
|
- |
|
vilistextum
|
vilistextum
|
Memory leak in the push_align function in src/util.c in Vilistextum before 2.6.9 allows remote attackers to cause a denial of service (memory consumption) via unspecified vectors related to the tmp_a…
|
CWE-399
Resource Management Errors
|
CVE-2006-5656
|
2011-10-3 13:00 |
2006-11-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264132
|
- |
|
otrs
|
otrs
|
Unspecified vulnerability in Kernel/Modules/AdminPackageManager.pm in OTRS-Core in Open Ticket Request System (OTRS) 2.x before 2.4.11 and 3.x before 3.0.10 allows remote authenticated administrators…
|
NVD-CWE-noinfo
|
CVE-2011-2746
|
2011-09-23 12:34 |
2011-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264133
|
- |
|
tibco
|
spotfire_analytics_server spotfire_server
|
Cross-site scripting (XSS) vulnerability in TIBCO Spotfire Server 3.0.x before 3.0.2, 3.1.x before 3.1.2, 3.2.x before 3.2.1, and 3.3.x before 3.3.1, and Spotfire Analytics Server before 10.1.1, allo…
|
CWE-79
Cross-site Scripting
|
CVE-2011-3132
|
2011-09-23 12:34 |
2011-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264134
|
- |
|
tibco
|
spotfire_analytics_server spotfire_server
|
Session fixation vulnerability in TIBCO Spotfire Server 3.0.x before 3.0.2, 3.1.x before 3.1.2, 3.2.x before 3.2.1, and 3.3.x before 3.3.1, and Spotfire Analytics Server before 10.1.1, allows remote …
|
NVD-CWE-Other
|
CVE-2011-3133
|
2011-09-23 12:34 |
2011-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264135
|
- |
|
tibco
|
spotfire_analytics_server spotfire_server
|
Per: http://cwe.mitre.org/data/definitions/384.html
'CWE-384: Session Fixation'
|
NVD-CWE-Other
|
CVE-2011-3133
|
2011-09-23 12:34 |
2011-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264136
|
- |
|
tibco
|
spotfire_analytics_server spotfire_server
|
Unspecified vulnerability in TIBCO Spotfire Server 3.0.x before 3.0.2, 3.1.x before 3.1.2, 3.2.x before 3.2.1, and 3.3.x before 3.3.1, and Spotfire Analytics Server before 10.1.1, allows remote attac…
|
NVD-CWE-noinfo
|
CVE-2011-3134
|
2011-09-23 12:34 |
2011-09-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264137
|
- |
|
geoff_wong
|
hammerhead
|
hammerhead.cc in Hammerhead 2.1.4 allows local users to write to arbitrary files via a symlink attack on (1) /tmp/hammer.log (aka the HH_LOG file) or (2) the REPORT_LOG file.
|
CWE-59
Link Following
|
CVE-2011-3204
|
2011-09-23 12:34 |
2011-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264138
|
- |
|
bcfg2
|
bcfg2
|
The server in Bcfg2 1.1.2 and earlier, and 1.2 prerelease, allows remote attackers to execute arbitrary commands via shell metacharacters in data received from a client.
|
CWE-20
Improper Input Validation
|
CVE-2011-3211
|
2011-09-23 12:34 |
2011-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264139
|
- |
|
ibm
|
lotus_domino
|
Cross-site scripting (XSS) vulnerability in IBM Lotus Domino 8.5.2 allows remote attackers to inject arbitrary web script or HTML via the PanelIcon parameter in an fmpgPanelHeader ReadForm action to …
|
CWE-79
Cross-site Scripting
|
CVE-2011-3576
|
2011-09-23 12:34 |
2011-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264140
|
- |
|
chyrp
|
chyrp
|
upload_handler.php in the swfupload extension in Chyrp 2.0 and earlier relies on client-side JavaScript code to restrict the file extensions of uploaded files, which allows remote authenticated users…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2011-2745
|
2011-09-22 12:32 |
2011-07-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|