CVE Feed

    Dashboard / CVE

    9.3
    Critical

    CVE-2010-4253

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in Impress in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted PNG file in an ODF or Microsoft Office document, as demonstrated by a PowerPoint (aka PPT) document.

    Published: 26 Jan 2011
    7.8
    High

    CVE-2011-0413

    Last Modified: 11 Apr 2025

    The DHCPv6 server in ISC DHCP 4.0.x and 4.1.x before 4.1.2-P1, 4.0-ESV and 4.1-ESV before 4.1-ESV-R1, and 4.2.x before 4.2.1b1 allows remote attackers to cause a denial of service (assertion failure and daemon crash) by sending a message over IPv6 for a declined and abandoned address.

    Published: 26 Jan 2011
    9.3
    Critical

    CVE-2010-3450

    Last Modified: 11 Apr 2025

    Multiple directory traversal vulnerabilities in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to overwrite arbitrary files via a .. (dot dot) in an entry in (1) an XSLT JAR filter description file, (2) an Extension (aka OXT) file, or unspecified other (3) JAR or (4) ZIP files.

    Published: 26 Jan 2011
    9.3
    Critical

    CVE-2010-3453

    Last Modified: 11 Apr 2025

    The WW8ListManager::WW8ListManager function in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 does not properly handle an unspecified number of list levels in user-defined list styles in WW8 data in a Microsoft Word document, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted .DOC file that triggers an out-of-bounds write.

    Published: 26 Jan 2011
    9.3
    Critical

    CVE-2010-3454

    Last Modified: 11 Apr 2025

    Multiple off-by-one errors in the WW8DopTypography::ReadFromMem function in oowriter in OpenOffice.org (OOo) 2.x and 3.x before 3.3 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted typography information in a Microsoft Word .DOC file that triggers an out-of-bounds write.

    Published: 26 Jan 2011
    2.1
    Low

    CVE-2010-4256

    Last Modified: 11 Apr 2025

    The pipe_fcntl function in fs/pipe.c in the Linux kernel before 2.6.37 does not properly determine whether a file is a named pipe, which allows local users to cause a denial of service via an F_SETPIPE_SZ fcntl call.

    Published: 25 Jan 2011
    4.3
    Medium

    CVE-2011-0009

    Last Modified: 11 Apr 2025

    Best Practical Solutions RT 3.x before 3.8.9rc2 and 4.x before 4.0.0rc4 uses the MD5 algorithm for password hashes, which makes it easier for context-dependent attackers to determine cleartext passwords via a brute-force attack on the database.

    Published: 25 Jan 2011
    9.3
    Critical

    CVE-2011-0021

    Last Modified: 11 Apr 2025

    Multiple heap-based buffer overflows in cdg.c in the CDG decoder in VideoLAN VLC Media Player before 1.1.6 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted CDG video.

    Published: 25 Jan 2011
    4.3
    Medium

    CVE-2011-0641

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in wp-admin/admin.php in the StatPressCN plugin 1.9.0 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) what1, (2) what2, (3) what3, (4) what4, and (5) what5 parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 25 Jan 2011
    4.3
    Medium

    CVE-2011-0642

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in news/admin.php in N-13 News 3.4, 3.7, and 4.0 allows remote attackers to hijack the authentication of administrators for requests that create new users via the options action. NOTE: some of these details are obtained from third party information.

    Published: 25 Jan 2011
    6.8
    Medium

    CVE-2011-0643

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in admin/conf_users_edit.php in PHP Link Directory (phpLD) 4.1.0 allows remote attackers to hijack the authentication of administrators for requests that add an administrator via the N action.

    Published: 25 Jan 2011
    7.5
    High

    CVE-2011-0644

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in include/admin/model_field.class.php in PHPCMS 2008 V2 allows remote attackers to execute arbitrary SQL commands via the modelid parameter to flash_upload.php.

    Published: 25 Jan 2011
    7.5
    High

    CVE-2011-0646

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in viewfaqs.php in PHP LOW BIDS allows remote attackers to execute arbitrary SQL commands via the cat parameter.

    Published: 25 Jan 2011
    7.5
    High

    CVE-2011-0645

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in data.php in PHPCMS 2008 V2 allows remote attackers to execute arbitrary SQL commands via the where_time parameter in a get action.

    Published: 25 Jan 2011
    6
    Medium

    CVE-2010-4353

    Last Modified: 11 Apr 2025

    Unrestricted file upload vulnerability in modules/gallery/models/item.php in Menalto Gallery before 3.0 and beta allows remote authenticated users with upload permissions to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory.

    Published: 25 Jan 2011
    6.9
    Medium

    CVE-2011-0017

    Last Modified: 11 Apr 2025

    The open_log function in log.c in Exim 4.72 and earlier does not check the return value from (1) setuid or (2) setgid system calls, which allows local users to append log data to arbitrary files via a symlink attack.

    Published: 25 Jan 2011
    9.3
    Critical

    CVE-2011-0273

    Last Modified: 11 Apr 2025

    Buffer overflow in crs.exe in HP OpenView Storage Data Protector Cell Manager 6.11 allows remote attackers to execute arbitrary code via unspecified message types.

    Published: 25 Jan 2011
    4.9
    Medium

    CVE-2011-0637

    Last Modified: 11 Apr 2025

    The FC SCSI protocol driver in IBM AIX 6.1 does not verify that a timer is unused before deallocating this timer, which might allow attackers to cause a denial of service (system crash) via unspecified vectors.

    Published: 25 Jan 2011
    6.9
    Medium

    CVE-2011-0639

    Last Modified: 11 Apr 2025

    Apple Mac OS X does not properly warn the user before enabling additional Human Interface Device (HID) functionality over USB, which allows user-assisted attackers to execute arbitrary programs via crafted USB data, as demonstrated by keyboard and mouse data sent by malware on a smartphone that the user connected to the computer.

    Published: 25 Jan 2011
    6.9
    Medium

    CVE-2011-0638

    Last Modified: 11 Apr 2025

    Microsoft Windows does not properly warn the user before enabling additional Human Interface Device (HID) functionality over USB, which allows user-assisted attackers to execute arbitrary programs via crafted USB data, as demonstrated by keyboard and mouse data sent by malware on a smartphone that the user connected to the computer.

    Published: 25 Jan 2011
    6.9
    Medium

    CVE-2010-3927

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in Lunascape before 6.4.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory.

    Published: 24 Jan 2011
    4.3
    Medium

    CVE-2011-0274

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in HP Business Availability Center (BAC) 7.x through 7.55 and 8.x through 8.05, and Business Service Management (BSM) through 9.01, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 24 Jan 2011
    7.8
    High

    CVE-2011-0352

    Last Modified: 11 Apr 2025

    Buffer overflow in the web-based management interface on the Cisco Linksys WRT54GC router with firmware before 1.06.1 allows remote attackers to cause a denial of service (device crash) via a long string in a POST request.

    Published: 24 Jan 2011
    5
    Medium

    CVE-2011-0410

    Last Modified: 11 Apr 2025

    CollabNet ScrumWorks Basic 1.8.4 uses cleartext credentials for network communication and the internal database, which makes it easier for context-dependent attackers to obtain sensitive information by (1) sniffing the network for transmissions of Java objects or (2) reading the database.

    Published: 24 Jan 2011
    4.3
    Medium

    CVE-2010-4704

    Last Modified: 11 Apr 2025

    libavcodec/vorbis_dec.c in the Vorbis decoder in FFmpeg 0.6.1 and earlier allows remote attackers to cause a denial of service (application crash) via a crafted .ogg file, related to the vorbis_floor0_decode function. NOTE: this might overlap CVE-2011-0480.

    Published: 22 Jan 2011
    9.3
    Critical

    CVE-2010-4705

    Last Modified: 11 Apr 2025

    Integer overflow in the vorbis_residue_decode_internal function in libavcodec/vorbis_dec.c in the Vorbis decoder in FFmpeg, possibly 0.6, has unspecified impact and remote attack vectors, related to the sizes of certain integer data types. NOTE: this might overlap CVE-2011-0480.

    Published: 22 Jan 2011
    6
    Medium

    CVE-2011-0635

    Last Modified: 11 Apr 2025

    Static code injection vulnerability in Simploo CMS 1.7.1 and earlier allows remote authenticated users to inject arbitrary PHP code into config/custom/base.ini.php via the ftpserver parameter (FTP-Server field) to the sicore/updates/optionssav operation for index.php.

    Published: 22 Jan 2011
    2.1
    Low

    CVE-2011-0636

    Last Modified: 11 Apr 2025

    The (1) cudaHostAlloc and (2) cuMemHostAlloc functions in the NVIDIA CUDA Toolkit 3.2 developer drivers for Linux 260.19.26, and possibly other versions, do not initialize pinned memory, which allows local users to read potentially sensitive memory, such as file fragments during read or write operations.

    Published: 22 Jan 2011
    6.2
    Medium

    CVE-2011-5320

    Last Modified: 20 Apr 2025

    scanf and related functions in glibc before 2.15 allow local users to cause a denial of service (segmentation fault) via a large string of 0s.

    Published: 22 Jan 2011
    5
    Medium

    CVE-2011-0534

    Last Modified: 11 Apr 2025

    Apache Tomcat 7.0.0 through 7.0.6 and 6.0.0 through 6.0.30 does not enforce the maxHttpHeaderSize limit for requests involving the NIO HTTP connector, which allows remote attackers to cause a denial of service (OutOfMemoryError) via a crafted request.

    Published: 21 Jan 2011
    Unknown

    CVE-2010-3932

    Last Modified: 17 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was in a CNA pool that was not assigned to any issues during 2010. Notes: none

    Published: 21 Jan 2011
    7.2
    High

    CVE-2010-2743

    Last Modified: 11 Apr 2025

    The kernel-mode drivers in Microsoft Windows XP SP3 do not properly perform indexing of a function-pointer table during the loading of keyboard layouts from disk, which allows local users to gain privileges via a crafted application, as demonstrated in the wild in July 2010 by the Stuxnet worm, aka "Win32k Keyboard Layout Vulnerability." NOTE: this might be a duplicate of CVE-2010-3888 or CVE-2010-3889.

    Published: 20 Jan 2011
    9.3
    Critical

    CVE-2011-0500

    Last Modified: 11 Apr 2025

    Buffer overflow in VideoSpirit Pro 1.6.8.1, 1.68, and earlier; and VideoSpirit Lite 1.4.0.1 and possibly other versions; allows user-assisted remote attackers to execute arbitrary code via a VideoSpirit project (.visprj) file containing a valitem element with a long "value" attribute, as demonstrated using a valitem with the mp3 name.

    Published: 20 Jan 2011
    9.3
    Critical

    CVE-2011-0501

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in Music Animation Machine MIDI Player 2006aug19 Release 035 and possibly other versions allows user-assisted remote attackers to execute arbitrary code via a long line in a .mamx file.

    Published: 20 Jan 2011
    2.6
    Low

    CVE-2010-4071

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in AgentTicketZoom in OTRS 2.4.x before 2.4.9, when RichText is enabled, allows remote attackers to inject arbitrary web script or HTML via JavaScript in an HTML e-mail.

    Published: 20 Jan 2011
    4.3
    Medium

    CVE-2010-4331

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Seo Panel 2.2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) default_news or (2) sponsors cookies, which are not properly handled by (a) controllers/index.ctrl.php or (b) controllers/settings.ctrl.php.

    Published: 20 Jan 2011
    7.5
    High

    CVE-2010-4702

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in JRadio (com_jradio) component before 1.5.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 20 Jan 2011
    7.5
    High

    CVE-2010-4703

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in default.asp in HotWebScripts HotWeb Rentals allows remote attackers to execute arbitrary SQL commands via the PageId parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 20 Jan 2011
    9.3
    Critical

    CVE-2011-0498

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in Nokia Multimedia Player 1.00.55.5010, and possibly other versions, allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long entry in a playlist (.npl) file.

    Published: 20 Jan 2011
    9.3
    Critical

    CVE-2011-0502

    Last Modified: 11 Apr 2025

    Music Animation Machine MIDI Player 2006aug19 Release 035 and possibly other versions allows user-assisted remote attackers to cause a denial of service (crash) and possibly have other unspecified impact via a long line in a MIDI (.mid) file.

    Published: 20 Jan 2011
    6.8
    Medium

    CVE-2011-0503

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in VaM Shop 1.6, 1.6.1, and probably earlier versions allows remote attackers to hijack the authentication of administrators for requests that (1) change user status via admin/customers.php or (2) change user permissions via admin/accounting.php. NOTE: some of these details are obtained from third party information.

    Published: 20 Jan 2011
    4.3
    Medium

    CVE-2011-0504

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in VaM Shop 1.6, 1.6.1, and probably earlier versions llow remote attackers to inject arbitrary web script or HTML via the (1) status parameter to admin/orders.php, (2) search parameter to admin/customers.php, or (3) STORE_NAME parameter to admin/configuration.php.

    Published: 20 Jan 2011
    5.1
    Medium

    CVE-2011-0505

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in system/system.php in Zwii 2.1.1, when magic_quotes_gpc is disabled and register_globals is enabled, allows remote attackers to include and execute arbitrary local files via directory traversal sequences in the set[template][value] parameter.

    Published: 20 Jan 2011
    6.8
    Medium

    CVE-2011-0506

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in modules/profile/user.php in Ax Developer CMS (AxDCMS) 0.1.1 allows remote attackers to execute arbitrary code via a .. (dot dot) in the aXconf[default_language] parameter.

    Published: 20 Jan 2011
    4.3
    Medium

    CVE-2011-0509

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in Vaadin before 6.4.9 allows remote attackers to inject arbitrary web script or HTML via unknown vectors related to the index page.

    Published: 20 Jan 2011
    7.5
    High

    CVE-2011-0510

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in cart.php in Advanced Webhost Billing System (AWBS) 2.9.2 and possibly earlier allows remote attackers to execute arbitrary SQL commands via the oid parameter in an add_other action.

    Published: 20 Jan 2011
    7.5
    High

    CVE-2011-0511

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in the allCineVid component (com_allcinevid) 1.0.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.

    Published: 20 Jan 2011
    6.8
    Medium

    CVE-2011-0512

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in team.php in the Teams Structure module 3.0 for PHP-Fusion allows remote attackers to execute arbitrary SQL commands via the team_id parameter.

    Published: 20 Jan 2011
    7.2
    High

    CVE-2011-0513

    Last Modified: 11 Apr 2025

    DCR.sys driver in SecurStar DriveCrypt 5.4, 5.3, and earlier allows local users to execute arbitrary code via a crafted argument to the 0x00073800 IOCTL.

    Published: 20 Jan 2011
    5
    Medium

    CVE-2011-0514

    Last Modified: 11 Apr 2025

    The RDS service (rds.exe) in HP Data Protector Manager 6.11 allows remote attackers to cause a denial of service (crash) via a packet with a large data size to TCP port 1530.

    Published: 20 Jan 2011