266751
|
- |
|
squid-cache
|
squid
|
The htcpHandleTstRequest function in htcp.c in Squid 2.x before 2.6.STABLE24 and 2.7 before 2.7.STABLE8, and htcp.cc in 3.0 before 3.0.STABLE24, allows remote attackers to cause a denial of service (…
|
NVD-CWE-Other
|
CVE-2010-0639
|
2010-08-2 13:00 |
2010-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266752
|
- |
|
squid-cache
|
squid
|
Per: http://cwe.mitre.org/data/definitions/476.html
'NULL Pointer Dereference'
|
NVD-CWE-Other
|
CVE-2010-0639
|
2010-08-2 13:00 |
2010-02-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266753
|
- |
|
mediawiki
|
mediawiki
|
Cross-site scripting (XSS) vulnerability in MediaWiki 1.15 before 1.15.4 and 1.16 before 1.16 beta 3 allows remote attackers to inject arbitrary web script or HTML via crafted Cascading Style Sheets …
|
CWE-79
Cross-site Scripting
|
CVE-2010-1647
|
2010-07-30 14:48 |
2010-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266754
|
- |
|
mediawiki
|
mediawiki
|
Cross-site request forgery (CSRF) vulnerability in the login interface in MediaWiki 1.15 before 1.15.4 and 1.16 before 1.16 beta 3 allows remote attackers to hijack the authentication of users for re…
|
CWE-352
Origin Validation Error
|
CVE-2010-1648
|
2010-07-30 14:48 |
2010-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266755
|
- |
|
openx
|
openx
|
Unspecified vulnerability in OpenX 2.8.1 and 2.8.2 allows remote attackers to bypass authentication and obtain access to an Administrator account via unknown vectors, possibly related to www/admin/in…
|
NVD-CWE-noinfo CWE-287
Improper Authentication
|
CVE-2009-4830
|
2010-07-30 13:00 |
2010-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266756
|
- |
|
jared_meeker
|
event_horizon
|
Multiple SQL injection vulnerabilities in modfile.php in Event Horizon (EVH) 1.1.10, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) YourEmail …
|
CWE-89
SQL Injection
|
CVE-2010-2855
|
2010-07-29 13:00 |
2010-07-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266757
|
- |
|
ibm
|
filenet_content_manager
|
IBM FileNet Content Manager (CM) 4.0.0, 4.0.1, 4.5.0, and 4.5.1 before FP4 does not properly manage the InheritParentPermissions setting during an upgrade from 3.x, which might allow attackers to byp…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-2896
|
2010-07-29 13:00 |
2010-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266758
|
- |
|
ibm
|
filenet_content_manager
|
Per: http://www-01.ibm.com/support/docview.wss?uid=swg21441225
'Fix Central can be found at: http://www-933.ibm.com/support/fixcentral/'
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-2896
|
2010-07-29 13:00 |
2010-07-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266759
|
- |
|
stefan_koch
|
t3m
|
SQL injection vulnerability in the T3M E-Mail Marketing Tool (t3m) extension 0.2.4 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2009-4959
|
2010-07-28 23:43 |
2010-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
266760
|
- |
|
typo3
|
commerce_extension
|
Cross-site scripting (XSS) vulnerability in the Commerce extension before 0.9.9 for TYPO3 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2009-4963
|
2010-07-28 23:43 |
2010-07-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|