264141
|
- |
|
citrix
|
access_gateway
|
Stack-based buffer overflow in the NSEPA.NsepaCtrl.1 ActiveX control in nsepa.ocx in Citrix Access Gateway Enterprise Edition 8.1 before 8.1-67.7, 9.0 before 9.0-70.5, and 9.1 before 9.1-96.4 allows …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2011-2882
|
2011-09-22 12:32 |
2011-07-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264142
|
- |
|
hp
|
network_node_manager_i
|
Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.0x allows local users to read or modify (1) log files or (2) other data via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2011-1855
|
2011-09-22 12:31 |
2011-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264143
|
- |
|
webmin
|
webmin
|
Cross-site scripting (XSS) vulnerability in Webmin 1.540 and earlier allows local users to inject arbitrary web script or HTML via a chfn command that changes the real (aka Full Name) field, related …
|
CWE-79
Cross-site Scripting
|
CVE-2011-1937
|
2011-09-22 12:31 |
2011-06-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264144
|
- |
|
inventivetec
|
mediacast
|
MediaCAST 8 and earlier stores passwords in cleartext, which makes it easier for context-dependent attackers to obtain sensitive information by reading an unspecified password data store, a different…
|
CWE-200
Information Exposure
|
CVE-2011-2076
|
2011-09-22 12:31 |
2011-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264145
|
- |
|
inventivetec
|
mediacast
|
The default configuration of the New Atlanta BlueDragon administrative interface in MediaCAST 8 and earlier enables external TCP connections to port 10000, instead of connections only from 127.0.0.1,…
|
CWE-16
Configuration
|
CVE-2011-2077
|
2011-09-22 12:31 |
2011-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264146
|
- |
|
inventivetec
|
mediacast
|
Multiple cross-site scripting (XSS) vulnerabilities in the New Atlanta BlueDragon administrative interface in MediaCAST 8 and earlier allow remote attackers to inject arbitrary web script or HTML via…
|
CWE-79
Cross-site Scripting
|
CVE-2011-2078
|
2011-09-22 12:31 |
2011-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264147
|
- |
|
inventivetec
|
mediacast
|
MediaCAST 8 and earlier allows remote attackers to have an unspecified impact via a (1) CP_RIGHTSOURCE or (2) bdclient_Inventive cookie to the default URI under inventivex/managetraining/, related to…
|
CWE-20
Improper Input Validation
|
CVE-2011-2079
|
2011-09-22 12:31 |
2011-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264148
|
- |
|
inventivetec
|
mediacast
|
MediaCAST 8 and earlier does not properly handle requests for inventivex/isptools/release/metadata/globalIncludeFolders.txt, which allows remote attackers to obtain sensitive information via unspecif…
|
CWE-200
Information Exposure
|
CVE-2011-2081
|
2011-09-22 12:31 |
2011-05-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264149
|
- |
|
apache
|
httpclient
|
Apache HttpClient 4.x before 4.1.1 in Apache HttpComponents, when used with an authenticating proxy server, sends the Proxy-Authorization header to the origin server, which allows remote web servers …
|
CWE-200
Information Exposure
|
CVE-2011-1498
|
2011-09-22 12:30 |
2011-07-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
264150
|
- |
|
nagios
|
nagios
|
Cross-site scripting (XSS) vulnerability in statusmap.c in statusmap.cgi in Nagios 3.2.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the layer parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2011-1523
|
2011-09-22 12:30 |
2011-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|