|
348781
|
- |
|
ez
|
ez_publish
|
The admin interface in eZ publish 3.5 before 3.5.7, 3.6 before 3.6.5, 3.7 before 3.7.3, and 3.8 before 20051110 does not properly handle authorization errors, which allows remote attackers to obtain …
|
CWE-19
Data Processing Errors
|
CVE-2005-4856
|
2015-07-29 00:03 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348782
|
- |
|
ez
|
ez_publish
|
eZ publish 3.5 through 3.7 before 20050830 does not use a folder's read permissions to restrict notifications, which allows remote authenticated users to obtain sensitive information about changes to…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2005-4854
|
2015-07-28 23:55 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348783
|
- |
|
ez
|
ez_publish
|
The default configuration of the forum package in eZ publish 3.5 before 3.5.5, 3.6 before 3.6.2, 3.7 before 3.7.0rc2, and 3.8 before 20050818 does not restrict edit permissions to a posting's owner, …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2005-4853
|
2015-07-28 23:41 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348784
|
- |
|
ez
|
ez_publish
|
Vendor has fixed this vulnerability in an upgrade starting at 3.5.5: http://ez.no/download/ez_publish
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2005-4853
|
2015-07-28 23:41 |
2005-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348785
|
- |
|
mp3info
|
mp3info
|
Buffer overflow in MP3Info 0.8.4 allows attackers to execute arbitrary code via a long command line argument. NOTE: if mp3info is not installed setuid or setgid in any reasonable context, then this …
|
NVD-CWE-Other
|
CVE-2006-2465
|
2014-05-31 11:22 |
2006-05-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348786
|
- |
|
emc
|
avamar
|
Unspecified vulnerability in EMC Avamar 4.1.x and 5.0 before SP1 allows remote attackers to cause a denial of service (gsan service hang) by sending a crafted message using TCP.
|
NVD-CWE-noinfo
|
CVE-2010-1919
|
2014-05-5 13:43 |
2010-05-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348787
|
- |
|
perl
|
perl
|
Integer overflow in the regular expression engine in Perl 5.8.x allows context-dependent attackers to cause a denial of service (stack consumption and application crash) by matching a crafted regular…
|
CWE-189
Numeric Errors
|
CVE-2010-1158
|
2013-10-24 12:22 |
2010-04-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348788
|
- |
|
larry_wall
|
perl
|
Untrusted search path vulnerability in Perl before 5.8.7-r1 on Gentoo Linux allows local users in the portage group to gain privileges via a malicious shared object in the Portage temporary build dir…
|
NVD-CWE-Other
|
CVE-2005-4278
|
2013-10-24 10:56 |
2005-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348789
|
- |
|
argosoft
|
argosoft_mail_server
|
ArGoSoft Mail Server 1.8.1.7 and earlier allows a webmail user to cause a denial of service (CPU consumption) by forwarding the email to the user while autoresponse is enabled, which creates an infin…
|
NVD-CWE-Other
|
CVE-2002-1005
|
2013-10-1 10:22 |
2002-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348790
|
- |
|
mms.pipp
|
com_mmsblog
|
Directory traversal vulnerability in the MMS Blog (com_mmsblog) component 2.3.0 for Joomla! allows remote attackers to read arbitrary files and possibly have unspecified other impact via a .. (dot do…
|
CWE-22
Path Traversal
|
CVE-2010-1491
|
2013-09-13 15:31 |
2010-04-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|