|
348671
|
- |
|
eric_fichot
|
downfile
|
DownFile 1.3 allows remote attackers to gain administrator privileges via a direct request to (1) update.php, (2) del.php, and (3) add_form.php.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2005-2819
|
2011-05-19 13:00 |
2005-09-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348672
|
- |
|
realnetworks
|
realone_player realplayer
|
Unquoted Windows search path vulnerability in RealNetworks RealPlayer 10.5 6.0.12.1040 through 6.0.12.1348, RealPlayer 10, RealOne Player v2, RealOne Player v1, and RealPlayer 8 before 20060322 might…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2005-2936
|
2011-05-19 13:00 |
2005-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348673
|
- |
|
horde
|
horde
|
Unspecified cross-site scripting (XSS) vulnerability in Horde before 2.2.9 allows remote attackers to inject arbitrary web script or HTML via "not properly escaped error messages".
|
CWE-79
Cross-site Scripting
|
CVE-2005-3570
|
2011-05-19 13:00 |
2005-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348674
|
- |
|
sun
|
java_communications_services_delegated_administrator
|
Unspecified vulnerability in System Communications Services 6 Delegated Administrator 2005Q1 in Sun Java System Messaging Server 2005Q1 allows remote attackers to obtain the Top-Level Administrator (…
|
NVD-CWE-noinfo
|
CVE-2005-4045
|
2011-05-19 13:00 |
2005-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348675
|
- |
|
suse
|
opensuse suse_linux
|
SUSE Linux Enterprise 10 SP3 (SLE10-SP3) and openSUSE 11.2 configures postfix to listen on all network interfaces, which might allow remote attackers to bypass intended access restrictions.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2010-0230
|
2011-04-28 13:00 |
2010-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348676
|
- |
|
tor
|
tor
|
Tor 0.2.2.x before 0.2.2.7-alpha, when functioning as a directory mirror, does not prevent logging of the client IP address upon detection of erroneous client behavior, which might make it easier for…
|
CWE-200
Information Exposure
|
CVE-2010-0384
|
2011-04-27 13:00 |
2010-01-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348677
|
- |
|
fetchmail
|
fetchmail
|
The sdump function in sdump.c in fetchmail 6.3.11, 6.3.12, and 6.3.13, when running in verbose mode on platforms for which char is signed, allows remote attackers to cause a denial of service (applic…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2010-0562
|
2011-04-27 13:00 |
2010-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348678
|
- |
|
apple
|
mac_os_x mac_os_x_server
|
Unspecified vulnerability in the "compression state handling" in Bom for Apple Mac OS X 10.3.9 and 10.4.7 allows user-assisted attackers to cause a denial of service (application crash) and possibly …
|
NVD-CWE-noinfo
|
CVE-2006-3497
|
2011-04-7 13:00 |
2006-08-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348679
|
- |
|
ibm
|
webi
|
Multiple cross-site scripting (XSS) vulnerabilities in the IBM Web Interface for Content Management (aka WEBi) before 1.0.4 allow remote attackers to inject arbitrary web script or HTML via unspecifi…
|
CWE-79
Cross-site Scripting
|
CVE-2010-1242
|
2011-04-7 12:18 |
2010-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
348680
|
- |
|
ibm
|
webi
|
The IBM Web Interface for Content Management (aka WEBi) before 1.0.4 creates persistent cookies on client workstations, which has unspecified impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2010-1243
|
2011-04-7 12:18 |
2010-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|