258191
|
- |
|
dash
|
dash
|
Untrusted search path vulnerability in dash 0.5.4, when used as a login shell, allows local users to execute arbitrary code via a Trojan horse .profile file in the current working directory.
|
CWE-78
OS Command
|
CVE-2009-0854
|
2017-08-17 10:30 |
2009-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258192
|
- |
|
sun
|
management_center
|
Cross-site scripting (XSS) vulnerability in /prm/reports in the Performance Reporting Module (PRM) for Sun Management Center (SunMC) 3.6.1 and 4.0 allows remote attackers to inject arbitrary web scri…
|
CWE-79
Cross-site Scripting
|
CVE-2009-0857
|
2017-08-17 10:30 |
2009-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258193
|
- |
|
denorastats
|
phpdenora
|
Cross-site scripting (XSS) vulnerability in phpDenora before 1.2.3 allows remote attackers to inject arbitrary web script or HTML via an IRC channel name. NOTE: some of these details are obtained fr…
|
CWE-79
Cross-site Scripting
|
CVE-2009-0861
|
2017-08-17 10:30 |
2009-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258194
|
- |
|
fujitsu
|
enhanced_support_facility
|
The HRM-S service in Fujitsu Enhanced Support Facility 3.0 and 3.0.1 allows remote attackers to obtain (1) hardware and (2) software information via unspecified requests in a client connection.
|
CWE-200
Information Exposure
|
CVE-2009-0867
|
2017-08-17 10:30 |
2009-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258195
|
- |
|
fujitsu
|
enhanced_support_facility
|
Per: http://www.fujitsu.com/global/support/software/security/products-f/esf-200901e.html
For the Patches, please contact a Fujitsu system engineer or your partner(s).
|
CWE-200
Information Exposure
|
CVE-2009-0867
|
2017-08-17 10:30 |
2009-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258196
|
- |
|
fujitsu
|
jasmine2000
|
CRLF injection vulnerability in the WebLink template in Fujitsu Jasmine2000 Enterprise Edition allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via…
|
CWE-20
Improper Input Validation
|
CVE-2009-0868
|
2017-08-17 10:30 |
2009-03-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258197
|
- |
|
sun
|
opensolaris solaris
|
The NFSv4 Server module in the kernel in Sun Solaris 10, and OpenSolaris before snv_111, allow local users to cause a denial of service (infinite loop and system hang) by accessing an hsfs filesystem…
|
CWE-399
Resource Management Errors
|
CVE-2009-0870
|
2017-08-17 10:30 |
2009-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258198
|
- |
|
sun
|
opensolaris solaris
|
The NFS server in Sun Solaris 10, and OpenSolaris before snv_111, does not properly implement the AUTH_NONE (aka sec=none) security mode in combination with other security modes, which allows remote …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-0872
|
2017-08-17 10:30 |
2009-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258199
|
- |
|
sun
|
xvm_virtualbox
|
Sun xVM VirtualBox 2.0.0, 2.0.2, 2.0.4, 2.0.6r39760, 2.1.0, 2.1.2, and 2.1.4r42893 on Linux allows local users to gain privileges via a hardlink attack, which preserves setuid/setgid bits on Linux, r…
|
CWE-59
Link Following
|
CVE-2009-0876
|
2017-08-17 10:30 |
2009-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258200
|
- |
|
sun
|
xvm_virtualbox
|
Per: http://sunsolve.sun.com/search/document.do?assetkey=1-66-254568-1
"5. Resolution
This issue is addressed in the following releases:
Linux
* Sun xVM VirtualBox 2.0.6r43001
* …
|
CWE-59
Link Following
|
CVE-2009-0876
|
2017-08-17 10:30 |
2009-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|