CVE Feed

    Dashboard / CVE

    9.3
    Critical

    CVE-2011-0026

    Last Modified: 11 Apr 2025

    Integer signedness error in the SQLConnectW function in an ODBC API (odbc32.dll) in Microsoft Data Access Components (MDAC) 2.8 SP1 and SP2, and Windows Data Access Components (WDAC) 6.0, allows remote attackers to execute arbitrary code via a long string in the Data Source Name (DSN) and a crafted szDSN argument, which bypasses a signed comparison and leads to a buffer overflow, aka "DSN Overflow Vulnerability."

    Published: 12 Jan 2011
    6.5
    Medium

    CVE-2011-0314

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in IBM WebSphere MQ 6.0 before 6.0.2.11 and 7.0 before 7.0.1.5 allows remote authenticated users to execute arbitrary code or cause a denial of service (queue manager crash) by inserting an invalid message into the queue.

    Published: 12 Jan 2011
    5
    Medium

    CVE-2011-0316

    Last Modified: 11 Apr 2025

    The Administrative Console component in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.35 and 7.0 before 7.0.0.15 does not properly restrict access to console servlets, which allows remote attackers to obtain potentially sensitive status information via a direct request.

    Published: 12 Jan 2011
    6.8
    Medium

    CVE-2010-1679

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in dpkg-source in dpkg before 1.14.31 and 1.15.x allows user-assisted remote attackers to modify arbitrary files via directory traversal sequences in a patch for a source-format 3.0 package.

    Published: 11 Jan 2011
    4.9
    Medium

    CVE-2010-4175

    Last Modified: 11 Apr 2025

    Integer overflow in the rds_cmsg_rdma_args function (net/rds/rdma.c) in Linux kernel 2.6.35 allows local users to cause a denial of service (crash) and possibly trigger memory corruption via a crafted Reliable Datagram Sockets (RDS) request, a different vulnerability than CVE-2010-3865.

    Published: 11 Jan 2011
    5
    Medium

    CVE-2010-4225

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the mod_mono module for XSP in Mono 2.8.x before 2.8.2 allows remote attackers to obtain the source code for .aspx (ASP.NET) applications via unknown vectors related to an "unloading bug."

    Published: 11 Jan 2011
    4.3
    Medium

    CVE-2010-4693

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Coppermine Photo Gallery 1.5.10 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) h and (2) t parameters to help.php, or (3) picfile_XXX parameter to searchnew.php.

    Published: 11 Jan 2011
    3.3
    Low

    CVE-2011-0007

    Last Modified: 11 Apr 2025

    pimd 2.1.5 and possibly earlier versions allows user-assisted local users to overwrite arbitrary files via a symlink attack on (1) pimd.dump when a USR1 signal is sent, or (2) pimd.cache when USR2 is sent.

    Published: 11 Jan 2011
    6.8
    Medium

    CVE-2011-0402

    Last Modified: 11 Apr 2025

    dpkg-source in dpkg before 1.14.31 and 1.15.x allows user-assisted remote attackers to modify arbitrary files via a symlink attack on unspecified files in the .pc directory.

    Published: 11 Jan 2011
    9.3
    Critical

    CVE-2011-0403

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in ImgBurn.exe in ImgBurn 2.4.0.0, 2.5.4.0, and other versions allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the same folder as a CUE file.

    Published: 11 Jan 2011
    7.5
    High

    CVE-2011-0404

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in NetSupport Manager Agent for Linux 11.00, for Solaris 9.50, and for Mac OS X 11.00 allows remote attackers to execute arbitrary code via a long control hostname to TCP port 5405, probably a different vulnerability than CVE-2007-5252.

    Published: 11 Jan 2011
    6.8
    Medium

    CVE-2011-0405

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in module.php in PhpGedView 4.2.3 and possibly other versions, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via directory traversal sequences in the pgvaction parameter.

    Published: 11 Jan 2011
    10
    Critical

    CVE-2011-0406

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in HistorySvr.exe in WellinTech KingView 6.53 allows remote attackers to execute arbitrary code via a long request to TCP port 777.

    Published: 11 Jan 2011
    7.5
    High

    CVE-2011-0407

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in the store function in _phenotype/system/class/PhenoTypeDataObject.class.php in Phenotype CMS 3.0 allows remote attackers to execute arbitrary SQL commands via a crafted URI, as demonstrated by Gallery/gal_id/1/image1,1.html. NOTE: some of these details are obtained from third party information.

    Published: 11 Jan 2011
    4.3
    Medium

    CVE-2011-0005

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the com_search module for Joomla! 1.0.x through 1.0.15 allows remote attackers to inject arbitrary web script or HTML via the ordering parameter to index.php.

    Published: 11 Jan 2011
    5.8
    Medium

    CVE-2011-0003

    Last Modified: 11 Apr 2025

    MediaWiki before 1.16.1, when user or site JavaScript or CSS is enabled, allows remote attackers to conduct clickjacking attacks via unspecified vectors.

    Published: 11 Jan 2011
    2.1
    Low

    CVE-2010-4341

    Last Modified: 11 Apr 2025

    The pam_parse_in_data_v2 function in src/responder/pam/pamsrv_cmd.c in the PAM responder in SSSD 1.5.0, 1.4.x, and 1.3 allows local users to cause a denial of service (infinite loop, crash, and login prevention) via a crafted packet.

    Published: 11 Jan 2011
    4.3
    Medium

    CVE-2011-0013

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in the HTML Manager Interface in Apache Tomcat 5.5 before 5.5.32, 6.0 before 6.0.30, and 7.0 before 7.0.6 allow remote attackers to inject arbitrary web script or HTML, as demonstrated via the display-name tag.

    Published: 11 Jan 2011
    5
    Medium

    CVE-2011-0445

    Last Modified: 11 Apr 2025

    The ASN.1 BER dissector in Wireshark 1.4.0 through 1.4.2 allows remote attackers to cause a denial of service (assertion failure) via crafted packets, as demonstrated by fuzz-2010-12-30-28473.pcap.

    Published: 11 Jan 2011
    10
    Critical

    CVE-2011-0444

    Last Modified: 11 Apr 2025

    Buffer overflow in the MAC-LTE dissector (epan/dissectors/packet-mac-lte.c) in Wireshark 1.2.0 through 1.2.13 and 1.4.0 through 1.4.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large number of RARs.

    Published: 11 Jan 2011
    6.9
    Medium

    CVE-2011-0536

    Last Modified: 11 Apr 2025

    Multiple untrusted search path vulnerabilities in elf/dl-object.c in certain modified versions of the GNU C Library (aka glibc or libc6), including glibc-2.5-49.el5_5.6 and glibc-2.12-1.7.el6_0.3 in Red Hat Enterprise Linux, allow local users to gain privileges via a crafted dynamic shared object (DSO) in a subdirectory of the current working directory during execution of a (1) setuid or (2) setgid program that has $ORIGIN in (a) RPATH or (b) RUNPATH within the program itself or a referenced library. NOTE: this issue exists because of an incorrect fix for CVE-2010-3847.

    Published: 11 Jan 2011
    4.4
    Medium

    CVE-2011-0010

    Last Modified: 11 Apr 2025

    check.c in sudo 1.7.x before 1.7.4p5, when a Runas group is configured, does not require a password for command execution that involves a gid change but no uid change, which allows local users to bypass an intended authentication requirement via the -g option to a sudo command.

    Published: 11 Jan 2011
    6.4
    Medium

    CVE-2011-0398

    Last Modified: 11 Apr 2025

    The Piwik_Common::getIP function in Piwik before 1.1 does not properly determine the client IP address, which allows remote attackers to bypass intended geolocation and logging functionality via (1) use of a private (aka RFC 1918) address behind a proxy server or (2) spoofing of the X-Forwarded-For HTTP header.

    Published: 10 Jan 2011
    4.3
    Medium

    CVE-2011-0399

    Last Modified: 11 Apr 2025

    Piwik before 1.1 does not prevent the rendering of the login form inside a frame in a third-party HTML document, which makes it easier for remote attackers to conduct clickjacking attacks via a crafted web site.

    Published: 10 Jan 2011
    6.8
    Medium

    CVE-2010-4013

    Last Modified: 11 Apr 2025

    Format string vulnerability in PackageKit in Apple Mac OS X 10.6.x before 10.6.6 allows man-in-the-middle attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to interaction between Software Update and distribution scripts.

    Published: 10 Jan 2011
    5
    Medium

    CVE-2010-4535

    Last Modified: 11 Apr 2025

    The password reset functionality in django.contrib.auth in Django before 1.1.3, 1.2.x before 1.2.4, and 1.3.x before 1.3 beta 1 does not validate the length of a string representing a base36 timestamp, which allows remote attackers to cause a denial of service (resource consumption) via a URL that specifies a large base36 integer.

    Published: 10 Jan 2011
    4.3
    Medium

    CVE-2011-0004

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Piwik before 1.1 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 10 Jan 2011
    5
    Medium

    CVE-2011-0401

    Last Modified: 11 Apr 2025

    Piwik before 1.1 does not properly limit the number of files stored under tmp/sessions/, which might allow remote attackers to cause a denial of service (inode consumption) by establishing many sessions.

    Published: 10 Jan 2011
    4
    Medium

    CVE-2010-4534

    Last Modified: 11 Apr 2025

    The administrative interface in django.contrib.admin in Django before 1.1.3, 1.2.x before 1.2.4, and 1.3.x before 1.3 beta 1 does not properly restrict use of the query string to perform certain object filtering, which allows remote authenticated users to obtain sensitive information via a series of requests containing regular expressions, as demonstrated by a created_by__password__regex parameter.

    Published: 10 Jan 2011
    5
    Medium

    CVE-2011-0400

    Last Modified: 11 Apr 2025

    Cookie.php in Piwik before 1.1 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attackers to capture this cookie by intercepting its transmission within an http session.

    Published: 10 Jan 2011
    6.4
    Medium

    CVE-2011-0002

    Last Modified: 11 Apr 2025

    libuser before 0.57 uses a cleartext password value of (1) !! or (2) x for new LDAP user accounts, which makes it easier for remote attackers to obtain access by specifying one of these values.

    Published: 10 Jan 2011
    5
    Medium

    CVE-2011-1067

    Last Modified: 11 Apr 2025

    slapd (aka ns-slapd) in 389 Directory Server before 1.2.8.a2 does not properly manage the c_timelimit field of the connection table element, which allows remote attackers to cause a denial of service (daemon outage) via Simple Paged Results connections, as demonstrated by using multiple processes to replay TCP sessions, a different vulnerability than CVE-2011-0019.

    Published: 10 Jan 2011
    7.5
    High

    CVE-2010-4267

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in the hpmud_get_pml function in io/hpmud/pml.c in Hewlett-Packard Linux Imaging and Printing (HPLIP) 1.6.7, 3.9.8, 3.10.9, and probably other versions allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted SNMP response with a large length value.

    Published: 10 Jan 2011
    6.8
    Medium

    CVE-2011-0408

    Last Modified: 11 Apr 2025

    pngrtran.c in libpng 1.5.x before 1.5.1 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted palette-based PNG image that triggers a buffer overflow, related to the png_do_expand_palette function, the png_do_rgb_to_gray function, and an integer underflow. NOTE: some of these details are obtained from third party information.

    Published: 8 Jan 2011
    4.3
    Medium

    CVE-2010-3201

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in NetWin Surgemail before 4.3g allows remote attackers to inject arbitrary web script or HTML via the username_ex parameter to the surgeweb program.

    Published: 7 Jan 2011
    3.5
    Low

    CVE-2010-4322

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in gwtTeaming.rpc in Novell Vibe OnPrem 3 BETA allows remote authenticated users to inject arbitrary web script or HTML via the Micro Blog (aka What Are You Working On?) field.

    Published: 7 Jan 2011
    7.8
    High

    CVE-2010-4688

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the SIP inspection feature on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.3(2) allows remote attackers to cause a denial of service (device crash) by making many SIP calls, aka Bug ID CSCte20030.

    Published: 7 Jan 2011
    7.8
    High

    CVE-2010-4689

    Last Modified: 11 Apr 2025

    Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.3(2) do not properly preserve ACL behavior after a migration, which allows remote attackers to bypass intended access restrictions via an unspecified type of network traffic that had previously been denied, aka Bug ID CSCte46460.

    Published: 7 Jan 2011
    5
    Medium

    CVE-2010-4690

    Last Modified: 11 Apr 2025

    The Mobile User Security (MUS) service on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.3(2) does not properly authenticate HTTP requests from a Web Security appliance (WSA), which might allow remote attackers to obtain sensitive information via a HEAD request, aka Bug ID CSCte53635.

    Published: 7 Jan 2011
    9.3
    Critical

    CVE-2011-0347

    Last Modified: 11 Apr 2025

    Microsoft Internet Explorer on Windows XP allows remote attackers to trigger an incorrect GUI display and have unspecified other impact via vectors related to the DOM implementation, as demonstrated by cross_fuzz.

    Published: 7 Jan 2011
    7.8
    High

    CVE-2010-4691

    Last Modified: 11 Apr 2025

    Unspecified vulnerability on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.3(2) allows remote attackers to cause a denial of service (device crash) via multicast traffic, aka Bug IDs CSCtg61810 and CSCtg69742.

    Published: 7 Jan 2011
    7.8
    High

    CVE-2010-4692

    Last Modified: 11 Apr 2025

    Unspecified vulnerability on Cisco Adaptive Security Appliances (ASA) 5500 series devices with software before 8.3(2) allows remote attackers to cause a denial of service (device crash) via a large number of LAN-to-LAN (aka L2L) IPsec sessions, aka Bug ID CSCth36592.

    Published: 7 Jan 2011
    8.1
    High

    CVE-2011-0346

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in the ReleaseInterface function in MSHTML.DLL in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to the DOM implementation and the BreakAASpecial and BreakCircularMemoryReferences functions, as demonstrated by cross_fuzz, aka "MSHTML Memory Corruption Vulnerability."

    Published: 7 Jan 2011
    6
    Medium

    CVE-2010-0215

    Last Modified: 11 Apr 2025

    ActiveCollab before 2.3.2 allows remote authenticated users to bypass intended access restrictions, and (1) delete an attachment or (2) subscribe to an object, via a crafted URL.

    Published: 7 Jan 2011
    7.5
    High

    CVE-2010-3984

    Last Modified: 11 Apr 2025

    Buffer overflow in mng_core_com.dll in CA XOsoft Replication r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft High Availability r12.0 SP1 and r12.5 SP2 rollup, CA XOsoft Content Distribution r12.0 SP1 and r12.5 SP2 rollup, and CA ARCserve Replication and High Availability (RHA) r15.0 SP1 allows remote attackers to execute arbitrary code via a crafted create_session_bab operation in a SOAP request to xosoapapi.asmx.

    Published: 7 Jan 2011
    7.2
    High

    CVE-2010-4523

    Last Modified: 11 Apr 2025

    Multiple stack-based buffer overflows in libopensc in OpenSC 0.11.13 and earlier allow physically proximate attackers to execute arbitrary code via a long serial-number field on a smart card, related to (1) card-acos5.c, (2) card-atrust-acos.c, and (3) card-starcos.c.

    Published: 7 Jan 2011
    7.8
    High

    CVE-2009-5038

    Last Modified: 11 Apr 2025

    Cisco IOS before 15.0(1)XA does not properly handle IRC traffic during a specific time period after an initial reload, which allows remote attackers to cause a denial of service (device reload) via an attempted connection to a certain IRC server, related to a "corrupted magic value," aka Bug ID CSCso05336.

    Published: 7 Jan 2011
    4.3
    Medium

    CVE-2010-4324

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Approval Form in the User Application in the Roles Based Provisioning Module 3.7.0 before 370D in Novell Identity Manager (aka IDM) allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 7 Jan 2011
    7.1
    High

    CVE-2010-4684

    Last Modified: 11 Apr 2025

    Cisco IOS before 15.0(1)XA1, when certain TFTP debugging is enabled, allows remote attackers to cause a denial of service (device crash) via a TFTP copy over IPv6, aka Bug ID CSCtb28877.

    Published: 7 Jan 2011
    4
    Medium

    CVE-2010-4685

    Last Modified: 11 Apr 2025

    Cisco IOS before 15.0(1)XA1 does not clear the public key cache upon a change to a certificate map, which allows remote authenticated users to bypass a certificate ban by connecting with a banned certificate that had previously been valid, aka Bug ID CSCta79031.

    Published: 7 Jan 2011