267261
|
- |
|
ftpgetter
|
ftpgetter
|
Directory traversal vulnerability in FTPGetter Team FTPGetter 3.51.0.05, and probably earlier versions, allows remote FTP servers to write arbitrary files via a "..\" (dot dot backslash) in a filenam…
|
CWE-22
Path Traversal
|
CVE-2010-3103
|
2010-08-23 13:00 |
2010-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267262
|
- |
|
deskshare
|
auto_ftp_manager
|
Directory traversal vulnerability in DeskShare AutoFTP Manager 4.31, and probably earlier versions, allows remote FTP servers to write arbitrary files via a "..\" (dot dot backslash) in a filename.
|
CWE-22
Path Traversal
|
CVE-2010-3104
|
2010-08-23 13:00 |
2010-08-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267263
|
- |
|
cisco
|
ios
|
Cisco IOS 15.1(2)T allows remote attackers to cause a denial of service (resource consumption and TCP outage) via spoofed TCP packets, related to embryonic TCP connections that remain in the SYN_RCVD…
|
CWE-20
Improper Input Validation
|
CVE-2010-2827
|
2010-08-20 15:01 |
2010-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267264
|
- |
|
znc
|
znc
|
Client.cpp in ZNC 0.092 allows remote attackers to cause a denial of service (exception and daemon crash) via a PING command that lacks an argument.
|
CWE-20
Improper Input Validation
|
CVE-2010-2812
|
2010-08-18 13:00 |
2010-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267265
|
- |
|
znc
|
znc
|
Multiple unspecified vulnerabilities in ZNC 0.092 allow remote attackers to cause a denial of service (exception and daemon crash) via unknown vectors related to "unsafe substr() calls."
|
NVD-CWE-noinfo
|
CVE-2010-2934
|
2010-08-18 13:00 |
2010-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267266
|
- |
|
tomaz-muraus
|
open_blog
|
Cross-site request forgery (CSRF) vulnerability in Tomaz Muraus Open Blog 1.2.1, and possibly earlier, allows remote attackers to hijack the authentication of administrators for requests that change …
|
CWE-352
Origin Validation Error
|
CVE-2010-3030
|
2010-08-18 13:00 |
2010-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267267
|
- |
|
phpkick
|
phpkick
|
SQL injection vulnerability in statistics.php in PHPKick 0.8 allows remote attackers to execute arbitrary SQL commands via the gameday parameter in an overview action.
|
CWE-89
SQL Injection
|
CVE-2010-3029
|
2010-08-18 01:25 |
2010-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267268
|
- |
|
tycoon
|
baseball_script
|
SQL injection vulnerability in index.php in Tycoon Baseball Script 1.0.9 allows remote attackers to execute arbitrary SQL commands via the game_id parameter in a game_player action.
|
CWE-89
SQL Injection
|
CVE-2010-3027
|
2010-08-17 13:00 |
2010-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267269
|
- |
|
pligg
|
pligg_cms
|
Multiple SQL injection vulnerabilities in Pligg before 1.1.1 allow remote attackers to execute arbitrary SQL commands via the title parameter to (1) storyrss.php or (2) story.php.
|
CWE-89
SQL Injection
|
CVE-2010-2577
|
2010-08-17 02:37 |
2010-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
267270
|
- |
|
pligg
|
pligg_cms
|
SQL injection vulnerability in groupadmin.php in Pligg before 1.1.1 allows remote attackers to execute arbitrary SQL commands via the role parameter, a different vulnerability than CVE-2010-2577.
|
CWE-89
SQL Injection
|
CVE-2010-3013
|
2010-08-17 02:12 |
2010-08-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|