258771
|
- |
|
irssi
|
irssi
|
Irssi before 0.8.15, when SSL is used, does not verify that the server hostname matches a domain name in the subject's Common Name (CN) field or a Subject Alternative Name field of the X.509 certific…
|
CWE-20
Improper Input Validation
|
CVE-2010-1155
|
2017-08-17 10:32 |
2010-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258772
|
- |
|
irssi
|
irssi
|
core/nicklist.c in Irssi before 0.8.15 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via vectors related to an attempted fuzzy nick match at th…
|
NVD-CWE-Other
|
CVE-2010-1156
|
2017-08-17 10:32 |
2010-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258773
|
- |
|
irssi
|
irssi
|
Per: http://cwe.mitre.org/data/definitions/476.html
'NULL Pointer Dereference'
|
NVD-CWE-Other
|
CVE-2010-1156
|
2017-08-17 10:32 |
2010-04-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258774
|
- |
|
atlassian
|
jira
|
Multiple cross-site scripting (XSS) vulnerabilities in Atlassian JIRA 3.12 through 4.1 allow remote attackers to inject arbitrary web script or HTML via the (1) element or (2) defaultColor parameter …
|
CWE-79
Cross-site Scripting
|
CVE-2010-1164
|
2017-08-17 10:32 |
2010-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258775
|
- |
|
atlassian
|
jira
|
Atlassian JIRA 3.12 through 4.1 allows remote authenticated administrators to execute arbitrary code by modifying the (1) attachment (aka attachments), (2) index (aka indexing), or (3) backup path an…
|
CWE-94
Code Injection
|
CVE-2010-1165
|
2017-08-17 10:32 |
2010-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258776
|
- |
|
cisco
|
tftp_server
|
Cisco TFTP Server 1.1 allows remote attackers to cause a denial of service (daemon crash) via a crafted (1) read (aka RRQ) or (2) write (aka WRQ) request, or other TFTP packet. NOTE: some of these d…
|
CWE-20
Improper Input Validation
|
CVE-2010-1174
|
2017-08-17 10:32 |
2010-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258777
|
- |
|
apple
|
safari
|
Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) via a JavaScript loop that attempts to construct an infinitely long string.
|
NVD-CWE-noinfo
|
CVE-2010-1178
|
2017-08-17 10:32 |
2010-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258778
|
- |
|
apple
|
safari
|
Safari on Apple iPhone OS 3.1.3 for iPod touch allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long exception string in a throw state…
|
CWE-94
Code Injection
|
CVE-2010-1180
|
2017-08-17 10:32 |
2010-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258779
|
- |
|
microsoft
|
27mhz_wireless_keyboard
|
The Microsoft wireless keyboard uses XOR encryption with a key derived from the MAC address, which makes it easier for remote attackers to obtain keystroke information and inject arbitrary commands v…
|
CWE-310
Cryptographic Issues
|
CVE-2010-1184
|
2017-08-17 10:32 |
2010-03-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
258780
|
- |
|
alex_rabe
|
nextgen_gallery
|
Cross-site scripting (XSS) vulnerability in xml/media-rss.php in the NextGEN Gallery plugin before 1.5.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the mode para…
|
CWE-79
Cross-site Scripting
|
CVE-2010-1186
|
2017-08-17 10:32 |
2010-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|