262381
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Certificate Assistant in Apple Mac OS X 10.5.6 allows local users to overwrite arbitrary files via unknown vectors related to an "insecure file operation" on a temporary file.
|
NVD-CWE-noinfo CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2009-0011
|
2017-08-8 10:33 |
2009-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262382
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
dscl in DS Tools in Apple Mac OS X 10.4.11 and 10.5.6 requires that passwords must be provided as command line arguments, which allows local users to gain privileges by listing process information.
|
CWE-255
Credentials Management
|
CVE-2009-0013
|
2017-08-8 10:33 |
2009-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262383
|
- |
|
apple
|
cups
|
CUPS on Mandriva Linux 2008.0, 2008.1, 2009.0, Corporate Server (CS) 3.0 and 4.0, and Multi Network Firewall (MNF) 2.0 allows local users to overwrite arbitrary files via a symlink attack on the /tmp…
|
CWE-59
Link Following
|
CVE-2009-0032
|
2017-08-8 10:33 |
2009-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262384
|
- |
|
cisco
|
unified_communications_manager
|
The Certificate Authority Proxy Function (CAPF) service in Cisco Unified Communications Manager 5.x before 5.1(3e) and 6.x before 6.1(3) allows remote attackers to cause a denial of service (voice se…
|
CWE-20
Improper Input Validation
|
CVE-2009-0057
|
2017-08-8 10:33 |
2009-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262385
|
- |
|
symantec
|
brightmail_gateway_appliance
|
Cross-site scripting (XSS) vulnerability in the Control Center in Symantec Brightmail Gateway Appliance before 8.0.1 allows remote authenticated users to inject arbitrary web script or HTML via unspe…
|
CWE-79
Cross-site Scripting
|
CVE-2009-0063
|
2017-08-8 10:33 |
2009-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262386
|
- |
|
symantec
|
brightmail_gateway_appliance
|
Multiple unspecified vulnerabilities in the Control Center in Symantec Brightmail Gateway Appliance before 8.0.1 allow remote authenticated users to gain privileges, and possibly obtain sensitive inf…
|
NVD-CWE-noinfo
|
CVE-2009-0064
|
2017-08-8 10:33 |
2009-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262387
|
- |
|
sun
|
opensolaris solaris
|
Unspecified vulnerability in the nfs4rename_persistent_fh function in the NFS 4 (aka NFSv4) client in the kernel in Sun Solaris 10 and OpenSolaris before snv_102 allows local users to cause a denial …
|
NVD-CWE-noinfo CWE-399
Resource Management Errors
|
CVE-2009-0069
|
2017-08-8 10:33 |
2009-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262388
|
- |
|
expinion
|
poll_pro
|
Cross-site request forgery (CSRF) vulnerability in admin/agent_edit.asp in PollPro 3.0 allows remote attackers to create or modify accounts as administrators via the username, password, and name para…
|
CWE-352
Origin Validation Error
|
CVE-2009-0112
|
2017-08-8 10:33 |
2009-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262389
|
- |
|
apple
|
safari
|
Unspecified vulnerability in Apple Safari on Mac OS X 10.5 and Windows allows remote attackers to read arbitrary files on a client machine via vectors related to the association of Safari with the (1…
|
NVD-CWE-noinfo CWE-200
Information Exposure
|
CVE-2009-0123
|
2017-08-8 10:33 |
2009-01-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
262390
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
CFNetwork in Apple Mac OS X 10.5 before 10.5.7 does not properly parse noncompliant Set-Cookie headers, which allows remote attackers to obtain sensitive information by sniffing the network for "secu…
|
CWE-16
Configuration
|
CVE-2009-0144
|
2017-08-8 10:33 |
2009-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|