Page(s) : 1 ... 301 302 303 304 305 306 307 308 309 310 [311] 312 313 314 315 316 317 318 319 320 321 ... | Result(s) : 8831 |
Alerts
DATE | NAME | CATEGORIES | DETAIL | |
---|---|---|---|---|
3.5 | 2010-09-14 | CVE-2010-0155 | cve | CRLF injection vulnerability in load.php in the Local Management Interface (LMI) on the IBM Proventia Network Mail Security System (PNMSS) appliance with firmware before 2.5 all... |
2.6 | 2010-09-10 | CVE-2010-2957 | cve | Cross-site scripting (XSS) vulnerability in Serendipity before 1.5.4, when "Remember me" logins are enabled, allows remote attackers to inject arbitrary web script or HTML via u... |
3.5 | 2010-09-09 | CVE-2010-1810 | cve | FaceTime in Apple iOS before 4.1 on the iPhone and iPod touch does not properly handle invalid X.509 certificates, which allows man-in-the-middle attackers to redirect calls via... |
2.1 | 2010-09-08 | CVE-2010-3264 | cve | The engine installer in Novell Identity Manager (aka IDM) 3.6.1 stores admin tree credentials in /tmp/idmInstall.log, which allows local users to obtain sensitive information by... |
2.1 | 2010-09-08 | CVE-2010-2955 | cve | The cfg80211_wext_giwessid function in net/wireless/wext-compat.c in the Linux kernel before 2.6.36-rc3-next-20100831 does not properly initialize certain structure members, whi... |
1.9 | 2010-09-08 | CVE-2010-2803 | cve | The drm_ioctl function in drivers/gpu/drm/drm_drv.c in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 2.6.27.53, 2.6.32.x before 2.6.32.21, 2.6.34.x bef... |
2.1 | 2010-09-07 | CVE-2010-3245 | cve | The automated-backup functionality in Blackboard Transact Suite (formerly Blackboard Commerce Suite) stores the (1) database username and (2) database password in cleartext in (... |
3.5 | 2010-09-07 | CVE-2010-2802 | cve | Cross-site scripting (XSS) vulnerability in MantisBT before 1.2.2 allows remote authenticated users to inject arbitrary web script or HTML via an HTML document with a .gif filen... |
2.1 | 2010-09-03 | CVE-2010-2226 | cve | The xfs_swapext function in fs/xfs/xfs_dfrag.c in the Linux kernel before 2.6.35 does not properly check the file descriptors passed to the SWAPEXT ioctl, which allows local use... |
3.5 | 2010-08-31 | CVE-2010-3196 | cve | IBM DB2 9.7 before FP2, when AUTO_REVAL is IMMEDIATE, allows remote authenticated users to cause a denial of service (loss of privileges) to a view owner by defining a dependent... |
3.3 | 2010-08-30 | CVE-2010-2794 | cve | The SPICE (aka spice-xpi) plug-in 2.2 for Firefox allows local users to overwrite arbitrary files via a symlink attack on an unspecified log file. |
3.3 | 2010-08-30 | CVE-2010-2792 | cve | Race condition in the SPICE (aka spice-xpi) plug-in 2.2 for Firefox allows local users to obtain sensitive information, and conduct man-in-the-middle attacks, by providing a UNI... |
1.2 | 2010-08-20 | CVE-2010-3014 | cve | The Coda filesystem kernel module, as used in NetBSD and FreeBSD, when Coda is loaded and Venus is running with /coda mounted, allows local users to read sensitive heap memory v... |
3.6 | 2010-08-20 | CVE-2010-1172 | cve | DBus-GLib 0.73 disregards the access flag of exported GObject properties, which allows local users to bypass intended access restrictions and possibly cause a denial of service ... |
2.1 | 2010-08-20 | CVE-2008-7258 | cve | The standardise function in Anibal Monsalve Salazar sSMTP 2.61 and 2.62 allows local users to cause a denial of service (application exit) via an e-mail message containing a lon... |
2.1 | 2010-08-19 | CVE-2010-2242 | cve | Red Hat libvirt 0.2.0 through 0.8.2 creates iptables rules with improper mappings of privileged source ports, which allows guest OS users to bypass intended access restrictions ... |
2.1 | 2010-08-17 | CVE-2010-2241 | cve | The (1) setup-ds.pl and (2) setup-ds-admin.pl setup scripts for Red Hat Directory Server 8 before 8.2 use world-readable permissions when creating cache files, which allows loca... |
3.6 | 2010-08-16 | CVE-2010-3028 | cve | The Aardvertiser component before 2.2.1 for Joomla! uses insecure permissions (777) in unspecified folders, which allows local users to modify, create, or delete certain files. |
2.6 | 2010-08-16 | CVE-2010-3022 | cve | Cross-site scripting (XSS) vulnerability in the Performance logging module in the Devel module 5.x before 5.x-1.3 and 6.x before 6.x-1.21 for Drupal allows remote authenticated ... |
2.1 | 2010-08-16 | CVE-2009-4269 | cve | The password hash generation algorithm in the BUILTIN authentication functionality for Apache Derby before 10.6.1.0 performs a transformation that reduces the size of the set of... |
Page(s) : 1 ... 301 302 303 304 305 306 307 308 309 310 [311] 312 313 314 315 316 317 318 319 320 321 ... | Result(s) : 8831 |