258611
|
- |
|
typo3
|
typo3
|
Unspecified vulnerability in the OpenID Identity Authentication extension in TYPO3 4.3.0 allows remote attackers to bypass authentication and gain access to a backend user account via unknown attack …
|
NVD-CWE-noinfo
|
CVE-2010-0286
|
2017-08-17 10:31 |
2010-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258612
|
- |
|
lighttpd
|
lighttpd
|
lighttpd before 1.4.26, and 1.5.x, allocates a buffer for each read operation that occurs for a request, which allows remote attackers to cause a denial of service (memory consumption) by breaking a …
|
CWE-399
Resource Management Errors
|
CVE-2010-0295
|
2017-08-17 10:31 |
2010-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258613
|
- |
|
maildrop
|
maildrop
|
main.C in maildrop 2.3.0 and earlier, when run by root with the -d option, uses the gid of root for execution of the .mailfilter file in a user's home directory, which allows local users to gain priv…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-0301
|
2017-08-17 10:31 |
2010-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258614
|
- |
|
dinko_korunic
|
hybserv2
|
mystring.c in hybserv in IRCD-Hybrid (aka Hybrid2 IRC Services) 1.9.2 through 1.9.4 allows remote attackers to cause a denial of service (daemon crash) via a ":help \t" private message to the MemoSer…
|
CWE-20
Improper Input Validation
|
CVE-2010-0303
|
2017-08-17 10:31 |
2010-02-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258615
|
- |
|
process-one
|
ejabberd
|
ejabberd_c2s.erl in ejabberd before 2.1.3 allows remote attackers to cause a denial of service (daemon crash) via a large number of c2s (aka client2server) messages that trigger a queue overload.
|
CWE-20
Improper Input Validation
|
CVE-2010-0305
|
2017-08-17 10:31 |
2010-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258616
|
- |
|
sun
|
java_system_identity_server
|
Unspecified vulnerability in Sun Java System Identity Manager (aka IdM) 8.1.0.5 and 8.1.0.6, when Sun Java System Access Manager, OpenSSO Enterprise 8.0, or IBM Tivoli Access Manager is used, allows …
|
NVD-CWE-noinfo
|
CVE-2010-0311
|
2017-08-17 10:31 |
2010-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258617
|
- |
|
sun
|
java_system_directory_server
|
The core_get_proxyauth_dn function in ns-slapd in Sun Java System Directory Server Enterprise Edition 7.0 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon cra…
|
NVD-CWE-Other
|
CVE-2010-0313
|
2017-08-17 10:31 |
2010-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258618
|
- |
|
sun
|
java_system_directory_server
|
Per: http://cwe.mitre.org/data/definitions/476.html
'CWE-476: NULL Pointer Dereference'
|
NVD-CWE-Other
|
CVE-2010-0313
|
2017-08-17 10:31 |
2010-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258619
|
- |
|
docmint
|
docmint
|
Cross-site scripting (XSS) vulnerability in index.php in Docmint 1.0 and 2.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter. NOTE: some of these details are obta…
|
CWE-79
Cross-site Scripting
|
CVE-2010-0319
|
2017-08-17 10:31 |
2010-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258620
|
- |
|
x10media
|
glitter_central_script
|
Cross-site scripting (XSS) vulnerability in submitlink.php in Glitter Central Script allows remote attackers to inject arbitrary web script or HTML via the catid parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2010-0320
|
2017-08-17 10:31 |
2010-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|