|
314611
|
5.8 |
MEDIUM
Network
|
chillcreations
|
com_ccnewsletter
|
Directory traversal vulnerability in the ccNewsletter (com_ccnewsletter) component 1.0.5 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the controller parameter in …
|
CWE-22
Path Traversal
|
CVE-2010-0467
|
2024-01-27 02:44 |
2010-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314612
|
9.8 |
CRITICAL
Network
|
debian canonical
|
lintian debian_linux ubuntu_linux
|
Multiple directory traversal vulnerabilities in Lintian 1.23.x through 1.23.28, 1.24.x through 1.24.2.1, and 2.x before 2.3.2 allow remote attackers to overwrite arbitrary files or obtain sensitive i…
|
CWE-22
Path Traversal
|
CVE-2009-4013
|
2024-01-27 02:44 |
2010-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314613
|
7.5 |
HIGH
Network
|
ibm
|
websphere_application_server
|
IBM WebSphere server 3.0.2 allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.
|
CWE-178
Improper Handling of Case Sensitivity
|
CVE-2000-0497
|
2024-01-27 02:43 |
2000-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314614
|
7.5 |
HIGH
Network
|
unify
|
ewave_servletexec
|
Unify eWave ServletExec allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.
|
CWE-178
Improper Handling of Case Sensitivity
|
CVE-2000-0498
|
2024-01-27 02:43 |
2000-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314615
|
7.5 |
HIGH
Network
|
bea
|
weblogic_server
|
The default configuration of BEA WebLogic 3.1.8 through 4.5.1 allows a remote attacker to view source code of a JSP program by requesting a URL which provides the JSP extension in upper case.
|
CWE-178
Improper Handling of Case Sensitivity
|
CVE-2000-0499
|
2024-01-27 02:43 |
2000-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314616
|
7.1 |
HIGH
Local
|
iss
|
blackice_server_protection blackice_pc_protection
|
BlackICE PC Protection and Server Protection installs (1) firewall.ini, (2) blackice.ini, (3) sigs.ini and (4) protect.ini with Everyone Full Control permissions, which allows local users to cause a …
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2004-1714
|
2024-01-27 02:21 |
2004-08-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314617
|
7.0 |
HIGH
Local
|
symantec
|
antivirus_scan_engine
|
The LiveUpdate capability (liveupdate.sh) in Symantec AntiVirus Scan Engine 4.0 and 4.3 for Red Hat Linux allows local users to create or append to arbitrary files via a symlink attack on /tmp/LiveUp…
|
CWE-59
Link Following
|
CVE-2004-0217
|
2024-01-27 02:21 |
2004-04-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314618
|
5.5 |
MEDIUM
Local
|
mgetty_project
|
mgetty
|
faxrunqd.in in mgetty 1.1.28 and earlier allows local users to overwrite files via a symlink attack on JOB files.
|
CWE-59
Link Following
|
CVE-2003-0517
|
2024-01-27 02:20 |
2003-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314619
|
7.8 |
HIGH
Local
|
ibm
|
u2_universe
|
cci_dir in IBM U2 UniVerse 10.0.0.9 and earlier creates hard links and unlinks files as root, which allows local users to gain privileges by deleting and overwriting arbitrary files.
|
CWE-59
Link Following
|
CVE-2003-0578
|
2024-01-27 02:19 |
2003-08-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
314620
|
7.8 |
HIGH
Local
|
oracle
|
mysql
|
Buffer overflow in MySQL daemon (mysqld) before 3.23.50, and 4.0 beta before 4.02, on the Win32 platform, allows local users to execute arbitrary code via a long "datadir" parameter in the my.ini ini…
|
CWE-120
Classic Buffer Overflow
|
CVE-2002-0969
|
2024-01-27 02:19 |
2002-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|