CVE Feed

    Dashboard / CVE

    3.5
    Low

    CVE-2010-4624

    Last Modified: 11 Apr 2025

    MyBB (aka MyBulletinBoard) before 1.4.12 allows remote authenticated users to bypass intended restrictions on the number of [img] MyCodes by editing a post after it has been created.

    Published: 30 Dec 2010
    5
    Medium

    CVE-2010-4625

    Last Modified: 11 Apr 2025

    MyBB (aka MyBulletinBoard) before 1.4.12 does not properly handle a configuration with a visible forum that contains hidden threads, which allows remote attackers to obtain sensitive information by reading the Latest Threads block of the Portal Page.

    Published: 30 Dec 2010
    6.8
    Medium

    CVE-2010-4627

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in usercp2.php in MyBB (aka MyBulletinBoard) before 1.4.12 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

    Published: 30 Dec 2010
    4.3
    Medium

    CVE-2010-4630

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in pages/admin/surveys/create.php in the WP Survey And Quiz Tool plugin 1.2.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the action parameter.

    Published: 30 Dec 2010
    4.3
    Medium

    CVE-2010-4631

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in ASPilot Pilot Cart 7.3 allow remote attackers to inject arbitrary web script or HTML via the (1) countrycode parameter to contact.asp, USERNAME parameter to (2) gateway.asp and (3) cart.asp, and the specific parameter to (4) quote.asp and (5) buyitnow.

    Published: 30 Dec 2010
    7.5
    High

    CVE-2010-4632

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in ASPilot Pilot Cart 7.3 allow remote attackers to execute arbitrary SQL commands via the (1) article parameter to kb.asp, (2) specific parameter to cart.asp, (3) countrycode parameter to contact.asp, and the (4) srch parameter to search.asp. NOTE: the article parameter to pilot.asp is already covered by CVE-2008-2688.

    Published: 30 Dec 2010
    7.5
    High

    CVE-2010-4633

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in cart.php in digiSHOP 2.0.2 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vulnerability than CVE-2005-4614.1.

    Published: 30 Dec 2010
    5
    Medium

    CVE-2010-4634

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in osTicket 1.6 allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter to module.php, a different vector than CVE-2005-1439. NOTE: this issue has been disputed by a reliable third party

    Published: 30 Dec 2010
    7.5
    High

    CVE-2010-4635

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in detail.asp in Site2Nite Vacation Rental (VRBO) Listings allows remote attackers to execute arbitrary SQL commands via the ID parameter.

    Published: 30 Dec 2010
    4.3
    Medium

    CVE-2010-4637

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in feedlist/handler_image.php in the FeedList plugin 2.61.01 for WordPress allows remote attackers to inject arbitrary web script or HTML via the i parameter.

    Published: 30 Dec 2010
    7.5
    High

    CVE-2010-4639

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in index.php in MySource Matrix allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 30 Dec 2010
    7.5
    High

    CVE-2010-4641

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in XWiki Enterprise before 2.5 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 30 Dec 2010
    4.3
    Medium

    CVE-2010-4642

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in XWiki Enterprise before 2.5 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 30 Dec 2010
    5
    Medium

    CVE-2010-4629

    Last Modified: 11 Apr 2025

    MyBB (aka MyBulletinBoard) before 1.4.12 does not properly restrict uid values for group join requests, which allows remote attackers to cause a denial of service (resource consumption) by using guest access to submit join request forms for moderated groups, related to usercp.php and managegroup.php.

    Published: 30 Dec 2010
    4.3
    Medium

    CVE-2010-4640

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in XWiki Watch 1.0 allow remote attackers to inject arbitrary web script or HTML via the rev parameter to (1) bin/viewrev/Main/WebHome and (2) bin/view/Blog, and the (3) register_first_name and (4) register_last_name parameters to bin/register/XWiki/Register. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Published: 30 Dec 2010
    4.3
    Medium

    CVE-2010-4522

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in MyBB (aka MyBulletinBoard) 1.4.14, and 1.6.x before 1.6.1, allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) editpost.php, (2) member.php, and (3) newreply.php.

    Published: 30 Dec 2010
    5.1
    Medium

    CVE-2010-4626

    Last Modified: 11 Apr 2025

    The my_rand function in functions.php in MyBB (aka MyBulletinBoard) before 1.4.12 does not properly use the PHP mt_rand function, which makes it easier for remote attackers to obtain access to an arbitrary account by requesting a reset of the account's password, and then conducting a brute-force attack.

    Published: 30 Dec 2010
    5
    Medium

    CVE-2010-4628

    Last Modified: 11 Apr 2025

    member.php in MyBB (aka MyBulletinBoard) before 1.4.12 makes a certain superfluous call to the SQL COUNT function, which allows remote attackers to cause a denial of service (resource consumption) by making requests to member.php that trigger scans of the entire users table.

    Published: 30 Dec 2010
    7.5
    High

    CVE-2010-4636

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in detail.asp in Site2Nite Business e-Listings allows remote attackers to execute arbitrary SQL commands via the ID parameter.

    Published: 30 Dec 2010
    6.8
    Medium

    CVE-2010-4638

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in the submitSurvey function in controller.php in JQuarks4s (com_jquarks4s) component 1.0.0 for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the q parameter in a submitSurvey action to index.php.

    Published: 30 Dec 2010
    6.9
    Medium

    CVE-2010-3848

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in the econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to gain privileges by providing a large number of iovec structures.

    Published: 30 Dec 2010
    2.1
    Low

    CVE-2010-3850

    Last Modified: 11 Apr 2025

    The ec_dev_ioctl function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2 does not require the CAP_NET_ADMIN capability, which allows local users to bypass intended access restrictions and configure econet addresses via an SIOCSIFADDR ioctl call.

    Published: 30 Dec 2010
    4.3
    Medium

    CVE-2010-4276

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the lz_tracking_set_sessid function in templates/jscript/jstrack.tpl in LiveZilla 3.2.0.2 allows remote attackers to inject arbitrary web script or HTML via the livezilla parameter in a track action to server.php.

    Published: 30 Dec 2010
    7.1
    High

    CVE-2010-4342

    Last Modified: 11 Apr 2025

    The aun_incoming function in net/econet/af_econet.c in the Linux kernel before 2.6.37-rc6, when Econet is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and OOPS) by sending an Acorn Universal Networking (AUN) packet over UDP.

    Published: 30 Dec 2010
    5
    Medium

    CVE-2010-4622

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in WebSEAL in IBM Tivoli Access Manager for e-business 6.1.1 before 6.1.1-TIV-AWS-FP0001 on AIX allows remote attackers to read arbitrary files via a %uff0e%uff0e (encoded dot dot) in a URI.

    Published: 30 Dec 2010
    4
    Medium

    CVE-2010-4623

    Last Modified: 11 Apr 2025

    WebSEAL in IBM Tivoli Access Manager for e-business 6.1.1 before 6.1.1-TIV-AWS-FP0001 allows remote authenticated users to cause a denial of service (worker thread consumption) via shift-reload actions.

    Published: 30 Dec 2010
    4.7
    Medium

    CVE-2010-3849

    Last Modified: 11 Apr 2025

    The econet_sendmsg function in net/econet/af_econet.c in the Linux kernel before 2.6.36.2, when an econet address is configured, allows local users to cause a denial of service (NULL pointer dereference and OOPS) via a sendmsg call that specifies a NULL value for the remote address field.

    Published: 30 Dec 2010
    9.3
    Critical

    CVE-2010-4507

    Last Modified: 11 Apr 2025

    Multiple cross-site request forgery (CSRF) vulnerabilities on the iSpot 2.0.0.0 R1679, and the ClearSpot 2.0.0.0 R1512 and R1786, with firmware 1.9.9.4 allow remote attackers to hijack the authentication of administrators for requests that (1) execute arbitrary commands via the cmd parameter in an act_cmd_result action to webmain.cgi, (2) enable remote management via an enable_remote_access act_network_set action to webmain.cgi, (3) enable the TELNET service via an ENABLE_TELNET act_set_wimax_etc_config action to webmain.cgi, (4) enable TELNET sessions via a certain act_network_set action to webmain.cgi, or (5) read arbitrary files via the FILE_PATH parameter in an act_file_download action to upgrademain.cgi.

    Published: 30 Dec 2010
    9.3
    Critical

    CVE-2010-4321

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in an ActiveX control in ienipp.ocx in Novell iPrint Client 5.52 allows remote attackers to execute arbitrary code via a long argument to (1) the GetDriverSettings2 method, as reachable by (2) the GetDriverSettings method.

    Published: 30 Dec 2010
    6.8
    Medium

    CVE-2011-1778

    Last Modified: 11 Apr 2025

    Buffer overflow in libarchive through 2.8.5 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted TAR archive.

    Published: 30 Dec 2010
    7.5
    High

    CVE-2011-1779

    Last Modified: 11 Apr 2025

    Multiple use-after-free vulnerabilities in libarchive 2.8.4 and 2.8.5 allow remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted (1) TAR archive or (2) ISO9660 image.

    Published: 30 Dec 2010
    5
    Medium

    CVE-2010-4645

    Last Modified: 11 Apr 2025

    strtod.c, as used in the zend_strtod function in PHP 5.2 before 5.2.17 and 5.3 before 5.3.5, and other products, allows context-dependent attackers to cause a denial of service (infinite loop) via a certain floating-point value in scientific notation, which is not properly handled in x87 FPU registers, as demonstrated using 2.2250738585072011e-308.

    Published: 30 Dec 2010
    6.8
    Medium

    CVE-2011-1777

    Last Modified: 11 Apr 2025

    Multiple buffer overflows in the (1) heap_add_entry and (2) relocate_dir functions in archive_read_support_format_iso9660.c in libarchive through 2.8.5 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted ISO9660 image.

    Published: 30 Dec 2010
    5.8
    Medium

    CVE-2010-4651

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in util.c in GNU patch 2.6.1 and earlier allows user-assisted remote attackers to create or overwrite arbitrary files via a filename that is specified with a .. (dot dot) or full pathname, a related issue to CVE-2010-1679.

    Published: 30 Dec 2010
    7.5
    High

    CVE-2010-4666

    Last Modified: 11 Apr 2025

    Buffer overflow in libarchive 3.0 pre-release code allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted CAB file, which is not properly handled during the reading of Huffman code data within LZX compressed data.

    Published: 30 Dec 2010
    2.6
    Low

    CVE-2010-4607

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Habari 0.6.5, when register_globals is enabled, allow remote attackers to inject arbitrary web script or HTML via the (1) additem_form parameter to system/admin/dash_additem.php and the (2) status_data[] parameter to system/admin/dash_status.php. NOTE: some of these details are obtained from third party information.

    Published: 29 Dec 2010
    5
    Medium

    CVE-2010-4608

    Last Modified: 11 Apr 2025

    Habari 0.6.5 allows remote attackers to obtain sensitive information via a direct request to (1) header.php and (2) comments_items.php in system/admin/, which reveals the installation path in an error message.

    Published: 29 Dec 2010
    5
    Medium

    CVE-2010-4611

    Last Modified: 11 Apr 2025

    Html-edit CMS 3.1.8 allows remote attackers to obtain sensitive information via a direct request to (1) pages.php and (2) menu.php in includes/core_files and (3) extensions/login/frontend/pages/antihacker.php, which reveals the installation path in an error message.

    Published: 29 Dec 2010
    7.5
    High

    CVE-2010-4614

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in item.php in Ero Auktion 2010 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2010-0723.

    Published: 29 Dec 2010
    7.5
    High

    CVE-2010-4615

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in Oto Galeri Sistemi 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) arac parameter to carsdetail.asp and the (2) marka parameter to twohandscars.asp.

    Published: 29 Dec 2010
    4.3
    Medium

    CVE-2010-4616

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in modules/content/admin/content.php in ImpressCMS 1.2.3 Final, and possibly other versions before 1.2.4, allows remote attackers to inject arbitrary web script or HTML via the quicksearch_ContentContent parameter.

    Published: 29 Dec 2010
    6.8
    Medium

    CVE-2010-4617

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in the JotLoader (com_jotloader) component 2.2.1 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequences in the section parameter to index.php.

    Published: 29 Dec 2010
    4.3
    Medium

    CVE-2010-4610

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in index.php in Html-edit CMS 3.1.8 allows remote attackers to inject arbitrary web script or HTML via the error parameter.

    Published: 29 Dec 2010
    4.3
    Medium

    CVE-2010-4618

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Algis Info aiContactSafe component before 2.0.14 for Joomla! allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 29 Dec 2010
    7.5
    High

    CVE-2010-4619

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in profil.php in Mafya Oyun Scrpti (aka Mafia Game Script) allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Published: 29 Dec 2010
    7.5
    High

    CVE-2010-4609

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in index.php in Html-edit CMS 3.1.8 allows remote attackers to execute arbitrary SQL commands via the nuser parameter in a registrate action.

    Published: 29 Dec 2010
    6.8
    Medium

    CVE-2010-4612

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in index.php in Hycus CMS 1.0.3, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) user_name and (2) usr_email parameters to user/1/hregister.html, (3) usr_email parameter to user/1/hlogin.html, (4) useremail parameter to user/1/forgotpass.html, and the (5) q parameter to search/1.html. NOTE: some of these details are obtained from third party information.

    Published: 29 Dec 2010
    7.5
    High

    CVE-2010-4613

    Last Modified: 11 Apr 2025

    Multiple directory traversal vulnerabilities in Hycus CMS 1.0.3 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the site parameter to (1) index.php and (2) admin.php.

    Published: 29 Dec 2010
    5
    Medium

    CVE-2010-4600

    Last Modified: 11 Apr 2025

    Dojo Toolkit, as used in the Web client in IBM Rational ClearQuest 7.1.1.x before 7.1.1.4 and 7.1.2.x before 7.1.2.1, allows remote attackers to read cookies by navigating to a Dojo file, related to an "open direct" issue.

    Published: 29 Dec 2010
    6.6
    Medium

    CVE-2010-4605

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the backup-archive client in IBM Tivoli Storage Manager (TSM) 5.3.x before 5.3.6.10, 5.4.x before 5.4.3.4, 5.5.x before 5.5.3, 6.1.x before 6.1.4, and 6.2.x before 6.2.2 on Unix and Linux allows local users to overwrite arbitrary files via unknown vectors.

    Published: 29 Dec 2010