267241
|
- |
|
freedesktop
|
udisks
|
probers/udisks-dm-export.c in udisks before 1.0.1 exports UDISKS_DM_TARGETS_PARAMS information to udev even for a crypt UDISKS_DM_TARGETS_TYPE, which allows local users to discover encryption keys by…
|
CWE-200
Information Exposure
|
CVE-2010-1149
|
2010-04-13 13:00 |
2010-04-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267242
|
- |
|
pulsecms
|
pulse_cms
|
Unrestricted file upload vulnerability in Pulse CMS Basic 1.2.4 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension followed by a safe extensi…
|
NVD-CWE-Other
|
CVE-2010-1334
|
2010-04-12 13:00 |
2010-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267243
|
- |
|
pulsecms
|
pulse_cms
|
Per: http://cwe.mitre.org/data/definitions/434.html
'CWE-434: Unrestricted Upload of File with Dangerous Type'
|
NVD-CWE-Other
|
CVE-2010-1334
|
2010-04-12 13:00 |
2010-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267244
|
- |
|
robertotto
|
teamsite_hack_plugin
|
Cross-site scripting (XSS) vulnerability in ts_other.php in the Teamsite Hack plugin 3.0 and earlier for WoltLab Burning Board allows remote attackers to inject arbitrary web script or HTML via the u…
|
CWE-79
Cross-site Scripting
|
CVE-2010-1339
|
2010-04-12 13:00 |
2010-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267245
|
- |
|
directnews
|
direct_news
|
Multiple PHP remote file inclusion vulnerabilities in Direct News 4.10.2, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the rootpath parameter to…
|
CWE-94
Code Injection
|
CVE-2010-1342
|
2010-04-12 13:00 |
2010-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267246
|
- |
|
cookex
|
com_ckforms
|
Directory traversal vulnerability in the Cookex Agency CKForms (com_ckforms) component 1.3.3 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter…
|
CWE-22
Path Traversal
|
CVE-2010-1345
|
2010-04-12 13:00 |
2010-04-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267247
|
- |
|
opera
|
opera_browser
|
Opera 10.50 allows remote attackers to obtain sensitive information via crafted XSLT constructs, which cause Opera to return cached contents of other pages.
|
CWE-200
Information Exposure
|
CVE-2010-1310
|
2010-04-10 02:01 |
2010-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267248
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Stack-based buffer overflow in PS Normalizer in Apple Mac OS X before 10.6.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted PostScrip…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-0513
|
2010-04-9 14:42 |
2010-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267249
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Per: http://support.apple.com/kb/HT4077
'On Mac OS X v10.6 systems this issue is mitigated by the -fstack-protector compiler flag.'
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-0513
|
2010-04-9 14:42 |
2010-03-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267250
|
- |
|
la-souris-verte
|
com_svmap
|
Directory traversal vulnerability in the SVMap (com_svmap) component 1.1.1 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter to index.php.
|
CWE-22
Path Traversal
|
CVE-2010-1308
|
2010-04-9 13:00 |
2010-04-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|