266271
|
- |
|
apple
|
mac_os_x_server
|
Cross-site scripting (XSS) vulnerability in Wiki Server in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vect…
|
CWE-79
Cross-site Scripting
|
CVE-2010-3797
|
2010-12-10 15:45 |
2010-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266272
|
- |
|
cisco
|
unified_videoconferencing_system_5110_firmware unified_videoconferencing_system_5115_firmware unified_videoconferencing_system_5110 unified_videoconferencing_system_5115
|
Cisco Unified Videoconferencing (UVC) System 5110 and 5115, when the Linux operating system is used, has a default password for the (1) root, (2) cs, and (3) develop accounts, which makes it easier f…
|
CWE-255
Credentials Management
|
CVE-2010-3038
|
2010-12-10 15:44 |
2010-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266273
|
- |
|
cisco
|
unified_videoconferencing_system_5110_firmware unified_videoconferencing_system_5115_firmware unified_videoconferencing_system_5110 unified_videoconferencing_system_5115 unified_videoconf…
|
goform/websXMLAdminRequestCgi.cgi in Cisco Unified Videoconferencing (UVC) System 5110 and 5115, and possibly Unified Videoconferencing System 3545 and 5230, Unified Videoconferencing 3527 Primary Ra…
|
CWE-94
Code Injection
|
CVE-2010-3037
|
2010-12-10 15:44 |
2010-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266274
|
- |
|
php
|
php
|
The default session serializer in PHP 5.2 through 5.2.13 and 5.3 through 5.3.2 does not properly handle the PS_UNDEF_MARKER marker, which allows context-dependent attackers to modify arbitrary sessio…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-3065
|
2010-12-10 15:44 |
2010-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266275
|
- |
|
pythonpaste
|
paste
|
Multiple cross-site scripting (XSS) vulnerabilities in the paste.httpexceptions implementation in Paste before 1.7.4 allow remote attackers to inject arbitrary web script or HTML via vectors involvin…
|
CWE-79
Cross-site Scripting
|
CVE-2010-2477
|
2010-12-10 15:43 |
2010-11-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266276
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
AFP Server in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon restart) via crafted reconnect authentication pa…
|
CWE-20
Improper Input Validation
|
CVE-2010-1828
|
2010-12-10 15:41 |
2010-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266277
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Directory traversal vulnerability in AFP Server in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote authenticated users to execute arbitrary code by creating files that are outside the bo…
|
CWE-22
Path Traversal
|
CVE-2010-1829
|
2010-12-10 15:41 |
2010-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266278
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
AFP Server in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 generates different error messages depending on whether a share exists, which allows remote attackers to enumerate valid share names via u…
|
NVD-CWE-Other
|
CVE-2010-1830
|
2010-12-10 15:41 |
2010-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266279
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Buffer overflow in Apple Type Services (ATS) in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code via a long name of an embedded font in a document.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-1831
|
2010-12-10 15:41 |
2010-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266280
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Stack-based buffer overflow in Apple Type Services (ATS) in Apple Mac OS X 10.5.8 and 10.6.x before 10.6.5 allows remote attackers to execute arbitrary code via a crafted embedded font in a document.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-1832
|
2010-12-10 15:41 |
2010-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|