271461
|
- |
|
apple
|
safari
|
WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 uses predictable random numbers in JavaScript applications, which makes it easier for re…
|
CWE-310
Cryptographic Issues
|
CVE-2009-1696
|
2011-02-17 15:43 |
2009-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271462
|
- |
|
apple
|
safari
|
CRLF injection vulnerability in WebKit in Apple Safari before 4.0, iPhone OS 1.0 through 2.2.1, and iPhone OS for iPod touch 1.1 through 2.2.1 allows remote attackers to inject HTTP headers and bypas…
|
CWE-20
Improper Input Validation
|
CVE-2009-1697
|
2011-02-17 15:43 |
2009-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271463
|
- |
|
apple
|
safari
|
WebKit in Apple Safari before 4.0 does not prevent references to file: URLs within (1) audio and (2) video elements, which allows remote attackers to determine the existence of arbitrary files via a …
|
CWE-200
Information Exposure
|
CVE-2009-1703
|
2011-02-17 15:43 |
2009-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271464
|
- |
|
apple
|
safari
|
Cross-site scripting (XSS) vulnerability in Web Inspector in WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to inject arbitrary web script or HTML, and read local files, via …
|
CWE-79
Cross-site Scripting
|
CVE-2009-1715
|
2011-02-17 15:43 |
2009-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271465
|
- |
|
apple
|
safari
|
WebKit in Apple Safari before 4.0 allows user-assisted remote attackers to obtain sensitive information via vectors involving drag events and the dragging of content over a crafted web page.
|
CWE-200
Information Exposure
|
CVE-2009-1718
|
2011-02-17 15:43 |
2009-06-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271466
|
- |
|
fetchmail
|
fetchmail
|
Fetchmail (aka fetchmail-ssl) before 5.8.17 allows a remote malicious (1) IMAP server or (2) POP/POP3 server to overwrite arbitrary memory and possibly gain privileges via a negative index number as …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2001-1009
|
2011-02-16 14:00 |
2001-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271467
|
- |
|
fetchmail
|
fetchmail
|
fetchmailconf in fetchmail before 5.7.4 allows local users to overwrite files of other users via a symlink attack on temporary files.
|
CWE-59
Link Following
|
CVE-2001-1378
|
2011-02-16 14:00 |
2001-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271468
|
- |
|
fetchmail
|
fetchmail
|
fetchmail email client before 5.9.10 does not properly limit the maximum number of messages available, which allows a remote IMAP server to overwrite memory via a message count that exceeds the bound…
|
CWE-20
Improper Input Validation
|
CVE-2002-0146
|
2011-02-16 05:45 |
2002-06-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271469
|
- |
|
ecouriersoftware
|
e-courirer_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in e-Courier CMS allow remote attackers to inject arbitrary web script or HTML via the UserGUID parameter to (1) Wizard_tracking.asp, (2) wizard_oe…
|
CWE-79
Cross-site Scripting
|
CVE-2009-3905
|
2011-02-2 15:48 |
2009-11-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
271470
|
- |
|
opera
|
opera_browser
|
Cross-site scripting (XSS) vulnerability in Opera before 9.52 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2008-4196
|
2011-02-2 03:09 |
2008-09-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|