CVE Feed

    Dashboard / CVE

    4.3
    Medium

    CVE-2011-1062

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in include/html/header.php in TaskFreak! 0.6.4 allow remote attackers to inject arbitrary web script or HTML via the (1) sContext, (2) sort, (3) dir, and (4) show parameters in a save action to index.php; the (5) dir and (6) show parameters to print_list.php; and the (7) HTTP referer header to rss.php. NOTE: some of these details are obtained from third party information.

    Published: 22 Feb 2011
    6.8
    Medium

    CVE-2011-1064

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in member/list.php in qibosoft Qi Bo CMS 7 allows remote attackers to execute arbitrary SQL commands via the aidDB[] parameter.

    Published: 22 Feb 2011
    7.5
    High

    CVE-2011-1060

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in the member function in classes/member.php in WSN Guest 1.24 allows remote attackers to execute arbitrary SQL commands via the wsnuser cookie to index.php.

    Published: 22 Feb 2011
    4.3
    Medium

    CVE-2011-1038

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in stconf.nsf in the server in IBM Lotus Sametime 8.0.1 allow remote attackers to inject arbitrary web script or HTML via (1) the messageString parameter in a WebMessage action or (2) the PATH_INFO.

    Published: 22 Feb 2011
    4.3
    Medium

    CVE-2011-1059

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in WebCore in WebKit before r77705, as used in Google Chrome before 11.0.672.2 and other products, allows user-assisted remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via vectors that entice a user to resubmit a form, related to improper handling of provisional items by the HistoryController component, aka rdar problem 8938557.

    Published: 22 Feb 2011
    7.5
    High

    CVE-2011-0530

    Last Modified: 11 Apr 2025

    Buffer overflow in the mainloop function in nbd-server.c in the server in Network Block Device (nbd) before 2.9.20 might allow remote attackers to execute arbitrary code via a long request. NOTE: this issue exists because of a CVE-2005-3534 regression.

    Published: 22 Feb 2011
    2.6
    Low

    CVE-2011-1058

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the reStructuredText (rst) parser in parser/text_rst.py in MoinMoin before 1.9.3, when docutils is installed or when "format rst" is set, allows remote attackers to inject arbitrary web script or HTML via a javascript: URL in the refuri attribute. NOTE: some of these details are obtained from third party information.

    Published: 22 Feb 2011
    7.5
    High

    CVE-2011-0019

    Last Modified: 11 Apr 2025

    slapd (aka ns-slapd) in 389 Directory Server 1.2.7.5 (aka Red Hat Directory Server 8.2.x or dirsrv) does not properly handle simple paged result searches, which allows remote attackers to cause a denial of service (daemon crash) or possibly have unspecified other impact via multiple search requests.

    Published: 22 Feb 2011
    4.7
    Medium

    CVE-2011-0022

    Last Modified: 11 Apr 2025

    The setup scripts in 389 Directory Server 1.2.x (aka Red Hat Directory Server 8.2.x), when multiple unprivileged instances are configured, use 0777 permissions for the /var/run/dirsrv directory, which allows local users to cause a denial of service (daemon outage or arbitrary process termination) by replacing PID files contained in this directory.

    Published: 22 Feb 2011
    7.1
    High

    CVE-2011-0414

    Last Modified: 11 Apr 2025

    ISC BIND 9.7.1 through 9.7.2-P3, when configured as an authoritative server, allows remote attackers to cause a denial of service (deadlock and daemon hang) by sending a query at the time of (1) an IXFR transfer or (2) a DDNS update.

    Published: 22 Feb 2011
    7.2
    High

    CVE-2011-1013

    Last Modified: 11 Apr 2025

    Integer signedness error in the drm_modeset_ctl function in (1) drivers/gpu/drm/drm_irq.c in the Direct Rendering Manager (DRM) subsystem in the Linux kernel before 2.6.38 and (2) sys/dev/pci/drm/drm_irq.c in the kernel in OpenBSD before 4.9 allows local users to trigger out-of-bounds write operations, and consequently cause a denial of service (system crash) or possibly have unspecified other impact, via a crafted num_crtcs (aka vb_num) structure member in an ioctl argument.

    Published: 22 Feb 2011
    3.6
    Low

    CVE-2011-1021

    Last Modified: 11 Apr 2025

    drivers/acpi/debugfs.c in the Linux kernel before 3.0 allows local users to modify arbitrary kernel memory locations by leveraging root privileges to write to the /sys/kernel/debug/acpi/custom_method file. NOTE: this vulnerability exists because of an incomplete fix for CVE-2010-4347.

    Published: 22 Feb 2011
    2.6
    Low

    CVE-2011-1772

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in XWork in Apache Struts 2.x before 2.2.3, and OpenSymphony XWork in OpenSymphony WebWork, allow remote attackers to inject arbitrary web script or HTML via vectors involving (1) an action name, (2) the action attribute of an s:submit element, or (3) the method attribute of an s:submit element.

    Published: 22 Feb 2011
    6.2
    Medium

    CVE-2011-0532

    Last Modified: 11 Apr 2025

    The (1) backup and restore scripts, (2) main initialization script, and (3) ldap-agent script in 389 Directory Server 1.2.x (aka Red Hat Directory Server 8.2.x) place a zero-length directory name in the LD_LIBRARY_PATH, which allows local users to gain privileges via a Trojan horse shared library in the current working directory.

    Published: 22 Feb 2011
    6.9
    Medium

    CVE-2011-1011

    Last Modified: 11 Apr 2025

    The seunshare_mount function in sandbox/seunshare.c in seunshare in certain Red Hat packages of policycoreutils 2.0.83 and earlier in Red Hat Enterprise Linux (RHEL) 6 and earlier, and Fedora 14 and earlier, mounts a new directory on top of /tmp without assigning root ownership and the sticky bit to this new directory, which allows local users to replace or delete arbitrary /tmp files, and consequently cause a denial of service or possibly gain privileges, by running a setuid application that relies on /tmp, as demonstrated by the ksu application.

    Published: 22 Feb 2011
    5
    Medium

    CVE-2011-2088

    Last Modified: 11 Apr 2025

    XWork 2.2.1 in Apache Struts 2.2.1, and OpenSymphony XWork in OpenSymphony WebWork, allows remote attackers to obtain potentially sensitive information about internal Java class paths via vectors involving an s:submit element and a nonexistent method, a different vulnerability than CVE-2011-1772.3.

    Published: 22 Feb 2011
    4.3
    Medium

    CVE-2011-1202

    Last Modified: 11 Apr 2025

    The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 and earlier, as used in Google Chrome before 10.0.648.127 and other products, allows remote attackers to obtain potentially sensitive information about heap memory addresses via an XML document containing a call to the XSLT generate-id XPath function.

    Published: 22 Feb 2011
    Unknown

    CVE-2011-1057

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-1056. Reason: This candidate is a duplicate of CVE-2011-1056. Notes: All CVE users should reference CVE-2011-1056 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 21 Feb 2011
    6.2
    Medium

    CVE-2011-1056

    Last Modified: 11 Apr 2025

    The installer for Metasploit Framework 3.5.1, when running on Windows, uses weak inherited permissions for the Metasploit installation directory, which allows local users to gain privileges by replacing critical files with a Trojan horse.

    Published: 21 Feb 2011
    4.3
    Medium

    CVE-2010-4745

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in nav.html in PHPXref before 0.7.1 allows remote attackers to inject arbitrary web script or HTML via the query string.

    Published: 21 Feb 2011
    7.5
    High

    CVE-2011-1047

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in VastHTML Forum Server (aka ForumPress) plugin 1.6.1 and 1.6.5 for WordPress allow remote attackers to execute arbitrary SQL commands via the (1) search_max parameter in a search action to index.php, which is not properly handled by wpf.class.php, (2) id parameter in an editpost action to index.php, which is not properly handled by wpf-post.php, or (3) topic parameter to feed.php.

    Published: 21 Feb 2011
    7.5
    High

    CVE-2011-1048

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in product.php in MihanTools 1.33 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 21 Feb 2011
    6.8
    Medium

    CVE-2011-1049

    Last Modified: 11 Apr 2025

    Buffer overflow in the Mach-O input file loader in Hex-Rays IDA Pro 5.7 and 6.0 allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted Macho-O file.

    Published: 21 Feb 2011
    10
    Critical

    CVE-2011-1050

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in Hex-Rays IDA Pro 5.7 and 6.0 has unknown impact and attack vectors related to "converson of string encodings" and "inconsistencies in the handling of UTF8 sequences by the user interface."

    Published: 21 Feb 2011
    10
    Critical

    CVE-2011-1054

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the PEF input file loader in Hex-Rays IDA Pro 5.7 and 6.0 has unknown impact and attack vectors.

    Published: 21 Feb 2011
    7.5
    High

    CVE-2011-1055

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in api/ice_media.cfc in Lingxia I.C.E CMS 1.0 allows remote attackers to execute arbitrary SQL commands via the session.user_id parameter to media.cfm.

    Published: 21 Feb 2011
    10
    Critical

    CVE-2011-1052

    Last Modified: 11 Apr 2025

    Integer overflow in the PSX/GEOS input file loaders in Hex-Rays IDA Pro 5.7 and 6.0 has unknown impact and attack vectors related to memory allocation.

    Published: 21 Feb 2011
    10
    Critical

    CVE-2011-1051

    Last Modified: 11 Apr 2025

    Integer overflow in the COFF/EPOC/EXPLOAD input file loaders in Hex-Rays IDA Pro 5.7 and 6.0 has unknown impact and attack vectors related to memory allocation.

    Published: 21 Feb 2011
    4.3
    Medium

    CVE-2011-1053

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Mach-O input file loader in Hex-Rays IDA Pro 5.7 and 6.0 allows user-assisted remote attackers to cause a denial of service (out-of-memory exception and inability to analyze code) via a crafted Mach-O file.

    Published: 21 Feb 2011
    5
    Medium

    CVE-2011-0329

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in the GetData method in the Dell DellSystemLite.Scanner ActiveX control in DellSystemLite.ocx 1.0.0.0 allows remote attackers to read arbitrary files via directory traversal sequences in the fileID parameter.

    Published: 21 Feb 2011
    5
    Medium

    CVE-2011-0330

    Last Modified: 11 Apr 2025

    The Dell DellSystemLite.Scanner ActiveX control in DellSystemLite.ocx 1.0.0.0 does not properly restrict the values of the WMIAttributesOfInterest property, which allows remote attackers to execute arbitrary WMI Query Language (WQL) statements via a crafted value, as demonstrated by a value that triggers disclosure of information about installed software.

    Published: 21 Feb 2011
    7.5
    High

    CVE-2011-0449

    Last Modified: 11 Apr 2025

    actionpack/lib/action_view/template/resolver.rb in Ruby on Rails 3.0.x before 3.0.4, when a case-insensitive filesystem is used, does not properly implement filters associated with the list of available templates, which allows remote attackers to bypass intended access restrictions via an action name that uses an unintended case for alphabetic characters.

    Published: 21 Feb 2011
    5
    Medium

    CVE-2011-1046

    Last Modified: 11 Apr 2025

    IBM FileNet P8 Content Engine (aka P8CE) 4.0.1 through 5.0.0, as used in FileNet P8 Content Manager (CM) and FileNet P8 Business Process Manager (BPM), does not require the PRIVILEGED_WRITE access role for all intended Object Store modifications, which allows remote attackers to change a privileged property of an object via unspecified vectors.

    Published: 21 Feb 2011
    9.3
    Critical

    CVE-2011-0694

    Last Modified: 11 Apr 2025

    RealNetworks RealPlayer 11.0 through 11.1, SP 1.0 through 1.1.5, and 14.0.0 through 14.0.1, and Enterprise 2.0 through 2.1.4, uses predictable names for temporary files, which allows remote attackers to conduct cross-domain scripting attacks and execute arbitrary code via the OpenURLinPlayerBrowser function.

    Published: 21 Feb 2011
    6.8
    Medium

    CVE-2011-1045

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Rendition Engine (aka P8RE) 4.0.1 through 4.5.1 in IBM FileNet P8 Content Manager (CM) allows remote attackers to gain privileges via unknown vectors.

    Published: 21 Feb 2011
    7.5
    High

    CVE-2011-0448

    Last Modified: 11 Apr 2025

    Ruby on Rails 3.0.x before 3.0.4 does not ensure that arguments to the limit function specify integer values, which makes it easier for remote attackers to conduct SQL injection attacks via a non-numeric argument.

    Published: 21 Feb 2011
    4.3
    Medium

    CVE-2011-1468

    Last Modified: 11 Apr 2025

    Multiple memory leaks in the OpenSSL extension in PHP before 5.3.6 might allow remote attackers to cause a denial of service (memory consumption) via (1) plaintext data to the openssl_encrypt function or (2) ciphertext data to the openssl_decrypt function.

    Published: 21 Feb 2011
    4.3
    Medium

    CVE-2011-1464

    Last Modified: 11 Apr 2025

    Buffer overflow in the strval function in PHP before 5.3.6, when the precision configuration option has a large value, might allow context-dependent attackers to cause a denial of service (application crash) via a small numerical value in the argument.

    Published: 20 Feb 2011
    7.5
    High

    CVE-2010-4323

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in novell-tftp.exe in Novell ZENworks Configuration Manager (ZCM) 10.3.1, 10.3.2, and 11.0, and earlier versions, allows remote attackers to execute arbitrary code via a long TFTP request.

    Published: 18 Feb 2011
    7.5
    High

    CVE-2010-4328

    Last Modified: 11 Apr 2025

    Multiple stack-based buffer overflows in opt/novell/iprint/bin/ipsmd in Novell iPrint for Linux Open Enterprise Server 2 SP2 and SP3 allow remote attackers to execute arbitrary code via unspecified LPR opcodes.

    Published: 18 Feb 2011
    4.3
    Medium

    CVE-2011-0050

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the nonjs interface (interfaces/nonjs.pm) in CGI:IRC before 0.5.10 allows remote attackers to inject arbitrary web script or HTML via the R parameter.

    Published: 18 Feb 2011
    9.3
    Critical

    CVE-2011-0724

    Last Modified: 11 Apr 2025

    The Live DVD for Edubuntu 9.10, 10.04 LTS, and 10.10 does not correctly regenerate iTALC private keys after installation, which causes each installation to have the same fixed key, which allows remote attackers to gain privileges.

    Published: 18 Feb 2011
    6.4
    Medium

    CVE-2011-1000

    Last Modified: 11 Apr 2025

    jingle-factory.c in Telepathy Gabble 0.11 before 0.11.7, 0.10 before 0.10.5, and 0.8 before 0.8.15 allows remote attackers to sniff audio and video calls via a crafted google:jingleinfo stanza that specifies an alternate server for streamed media.

    Published: 18 Feb 2011
    7.5
    High

    CVE-2011-1035

    Last Modified: 11 Apr 2025

    The password reset in PivotX before 2.2.4 allows remote attackers to modify the passwords of arbitrary users via unspecified vectors.

    Published: 18 Feb 2011
    10
    Critical

    CVE-2011-0364

    Last Modified: 11 Apr 2025

    The Management Console (webagent.exe) in Cisco Security Agent 5.1, 5.2, and 6.0 before 6.0.2.145 allows remote attackers to create arbitrary files and execute arbitrary code via unspecified parameters in a crafted st_upload request.

    Published: 18 Feb 2011
    5
    Medium

    CVE-2011-0431

    Last Modified: 11 Apr 2025

    The afs_linux_lock function in afs/LINUX/osi_vnodeops.c in the kernel module in OpenAFS 1.4.14, 1.4.12, 1.4.7, and possibly other versions does not properly handle errors, which allows attackers to cause a denial of service via unknown vectors. NOTE: some of these details are obtained from third party information.

    Published: 18 Feb 2011
    7.5
    High

    CVE-2011-0430

    Last Modified: 11 Apr 2025

    Double free vulnerability in the Rx server process in OpenAFS 1.4.14, 1.4.12, 1.4.7, and possibly other versions allows remote attackers to cause a denial of service and execute arbitrary code via unknown vectors.

    Published: 18 Feb 2011
    7.5
    High

    CVE-2011-0709

    Last Modified: 11 Apr 2025

    The br_mdb_ip_get function in net/bridge/br_multicast.c in the Linux kernel before 2.6.35-rc5 allows remote attackers to cause a denial of service (NULL pointer dereference and system crash) via an IGMP packet, related to lack of a multicast table.

    Published: 18 Feb 2011
    6.8
    Medium

    CVE-2010-4743

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in the getarena function in abc2ps.c in abcm2ps before 5.9.13 might allow remote attackers to execute arbitrary code via a crafted ABC file, a different vulnerability than CVE-2010-3441. NOTE: some of these details are obtained from third party information.

    Published: 18 Feb 2011
    10
    Critical

    CVE-2010-4744

    Last Modified: 11 Apr 2025

    Multiple unspecified vulnerabilities in abcm2ps before 5.9.13 have unknown impact and attack vectors, a different issue than CVE-2010-3441.

    Published: 18 Feb 2011