CVE Feed

    Dashboard / CVE

    5
    Medium

    CVE-2010-4585

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the auto-update functionality in Opera before 11.00 allows remote attackers to cause a denial of service (application crash) by triggering an Opera Unite update.

    Published: 22 Dec 2010
    7.1
    High

    CVE-2010-1804

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the network bridge functionality on the Apple Time Capsule, AirPort Extreme Base Station, and AirPort Express Base Station with firmware before 7.5.2 allows remote attackers to cause a denial of service (networking outage) via a crafted DHCP reply.

    Published: 22 Dec 2010
    10
    Critical

    CVE-2010-4581

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in Opera before 11.00 has unknown impact and attack vectors, related to "a high severity issue."

    Published: 22 Dec 2010
    5
    Medium

    CVE-2010-4582

    Last Modified: 11 Apr 2025

    Opera before 11.00 does not properly handle security policies during updates to extensions, which might allow remote attackers to bypass intended access restrictions via unspecified vectors.

    Published: 22 Dec 2010
    2.6
    Low

    CVE-2010-4584

    Last Modified: 11 Apr 2025

    Opera before 11.00, when Opera Turbo is used, does not properly present information about problematic X.509 certificates on https web sites, which might make it easier for remote attackers to spoof trusted content via a crafted web site.

    Published: 22 Dec 2010
    10
    Critical

    CVE-2010-1676

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in Tor before 0.2.1.28 and 0.2.2.x before 0.2.2.20-alpha allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via unspecified vectors.

    Published: 22 Dec 2010
    5
    Medium

    CVE-2010-4576

    Last Modified: 11 Apr 2025

    browser/worker_host/message_port_dispatcher.cc in Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343 does not properly handle certain postMessage calls, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via crafted JavaScript code that creates a web worker.

    Published: 22 Dec 2010
    4.3
    Medium

    CVE-2010-4575

    Last Modified: 11 Apr 2025

    The ThemeInstalledInfoBarDelegate::Observe function in browser/extensions/theme_installed_infobar_delegate.cc in Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343 does not properly handle incorrect tab interaction by an extension, which allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted extension.

    Published: 22 Dec 2010
    7.5
    High

    CVE-2010-0114

    Last Modified: 11 Apr 2025

    fw_charts.php in the reporting module in the Manager (aka SEPM) component in Symantec Endpoint Protection (SEP) 11.x before 11 RU6 MP2 allows remote attackers to bypass intended restrictions on report generation, overwrite arbitrary PHP scripts, and execute arbitrary code via a crafted request.

    Published: 22 Dec 2010
    10
    Critical

    CVE-2010-4116

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in HP StorageWorks Storage Mirroring 5.x before 5.2.2.1771.2 allows remote attackers to execute arbitrary code via unknown vectors.

    Published: 22 Dec 2010
    7.5
    High

    CVE-2010-4574

    Last Modified: 11 Apr 2025

    The Pickle::Pickle function in base/pickle.cc in Google Chrome before 8.0.552.224 and Chrome OS before 8.0.552.343 on 64-bit Linux platforms does not properly perform pointer arithmetic, which allows remote attackers to bypass message deserialization validation, and cause a denial of service or possibly have unspecified other impact, via invalid pickle data.

    Published: 22 Dec 2010
    4.3
    Medium

    CVE-2011-1470

    Last Modified: 11 Apr 2025

    The Zip extension in PHP before 5.3.6 allows context-dependent attackers to cause a denial of service (application crash) via a ziparchive stream that is not properly handled by the stream_get_contents function.

    Published: 20 Dec 2010
    5
    Medium

    CVE-2011-1466

    Last Modified: 11 Apr 2025

    Integer overflow in the SdnToJulian function in the Calendar extension in PHP before 5.3.6 allows context-dependent attackers to cause a denial of service (application crash) via a large integer in the first argument to the cal_from_jd function.

    Published: 19 Dec 2010
    6.8
    Medium

    CVE-2010-2602

    Last Modified: 11 Apr 2025

    Multiple buffer overflows in the PDF distiller component in the BlackBerry Attachment Service in BlackBerry Enterprise Server 5.0.0 through 5.0.2, 4.1.6, and 4.1.7 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted PDF document.

    Published: 17 Dec 2010
    2.1
    Low

    CVE-2010-2603

    Last Modified: 11 Apr 2025

    RIM BlackBerry Desktop Software 4.7 through 6.0 for PC, and 1.0 for Mac, uses a weak password to encrypt a database backup file, which makes it easier for local users to decrypt the file via a brute force attack.

    Published: 17 Dec 2010
    9
    Critical

    CVE-2010-4115

    Last Modified: 11 Apr 2025

    HP StorageWorks Modular Smart Array P2000 G3 firmware TS100R011, TS100R025, TS100P002, TS200R005, TS201R014, and TS201R015 installs an undocumented admin account with a default "!admin" password, which allows remote attackers to gain privileges.

    Published: 17 Dec 2010
    5
    Medium

    CVE-2010-4336

    Last Modified: 11 Apr 2025

    The cu_rrd_create_file function (src/utils_rrdcreate.c) in collectd 4.x before 4.9.4 and before 4.10.2 allow remote attackers to cause a denial of service (assertion failure) via a packet with a timestamp whose value is 10 or less, as demonstrated by creating RRD files using the (1) RRDtool and (2) RRDCacheD plugins.

    Published: 17 Dec 2010
    5
    Medium

    CVE-2010-4481

    Last Modified: 11 Apr 2025

    phpMyAdmin before 3.4.0-beta1 allows remote attackers to bypass authentication and obtain sensitive information via a direct request to phpinfo.php, which calls the phpinfo function.

    Published: 17 Dec 2010
    9
    Critical

    CVE-2010-4495

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the ActiveMatrix Runtime component in TIBCO ActiveMatrix Service Grid 3.0.0, 3.0.1, and 3.1.0; ActiveMatrix Service Bus 3.0.0 and 3.0.1; ActiveMatrix BusinessWorks Service Engine 5.9.0; ActiveMatrix BPM 1.0.1 and 1.0.2; Silver BPM Service 1.0.1; and Silver CAP Service 1.0.0 allows remote authenticated users to execute arbitrary code via vectors related to JMX connections.

    Published: 17 Dec 2010
    9.3
    Critical

    CVE-2010-4556

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in the SapThemeRepository ActiveX control (sapwdpcd.dll) in SAP NetWeaver Business Client allows remote attackers to execute arbitrary code via the (1) Load and (2) LoadTheme methods.

    Published: 17 Dec 2010
    10
    Critical

    CVE-2010-4557

    Last Modified: 11 Apr 2025

    Buffer overflow in the lm_tcp service in Invensys Wonderware InBatch 8.1 and 9.0, as used in Invensys Foxboro I/A Series Batch 8.1 and possibly other products, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted request to port 9001.

    Published: 17 Dec 2010
    7.5
    High

    CVE-2010-4558

    Last Modified: 11 Apr 2025

    phpMyFAQ 2.6.11 and 2.6.12, as distributed between December 4th and December 15th 2010, contains an externally introduced modification (Trojan Horse) in the getTopTen method in inc/Faq.php, which allows remote attackers to execute arbitrary PHP code.

    Published: 17 Dec 2010
    4
    Medium

    CVE-2009-5033

    Last Modified: 11 Apr 2025

    IBM Lotus Notes Traveler before 8.5.0.2 does not properly handle a "* *" argument sequence for a certain tell command, which allows remote authenticated users to obtain access to other users' data via a sync operation, related to storage of the data of multiple users within the same thread.

    Published: 16 Dec 2010
    4
    Medium

    CVE-2009-5034

    Last Modified: 11 Apr 2025

    IBM Lotus Notes Traveler before 8.5.0.2 allows remote authenticated users to cause a denial of service (memory consumption and daemon crash) by syncing a large volume of data, related to the launch of a new process to handle the data while the previous process is still operating on the data.

    Published: 16 Dec 2010
    4.3
    Medium

    CVE-2009-5035

    Last Modified: 11 Apr 2025

    The Nokia client in IBM Lotus Notes Traveler before 8.5.0.2 does not properly handle multiple outgoing e-mail messages between sync operations, which might allow remote attackers to read communications intended for other recipients by examining appended messages.

    Published: 16 Dec 2010
    4
    Medium

    CVE-2009-5036

    Last Modified: 11 Apr 2025

    traveler.exe in IBM Lotus Notes Traveler before 8.0.1.3 CF1 allows remote authenticated users to cause a denial of service (daemon crash) via a malformed invitation document in a sync operation.

    Published: 16 Dec 2010
    5.8
    Medium

    CVE-2009-5032

    Last Modified: 11 Apr 2025

    The encrypted e-mail feature in IBM Lotus Notes Traveler before 8.5.0.2 sends unencrypted messages when the feature is used without uploading a Notes ID file, which makes it easier for remote attackers to obtain sensitive information by sniffing the network.

    Published: 16 Dec 2010
    4
    Medium

    CVE-2010-4551

    Last Modified: 11 Apr 2025

    IBM Lotus Notes Traveler before 8.5.1.2 allows remote authenticated users to cause a denial of service (NULL pointer dereference and daemon crash) by omitting the Internet ID field in the person document, and then using an Apple device to (1) accept or (2) decline an invitation.

    Published: 16 Dec 2010
    5
    Medium

    CVE-2010-4550

    Last Modified: 11 Apr 2025

    IBM Lotus Notes Traveler before 8.5.1.3 allows remote attackers to cause a denial of service (sync failure) via a malformed document.

    Published: 16 Dec 2010
    4.3
    Medium

    CVE-2010-4544

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the servlet in IBM Lotus Notes Traveler before 8.5.1.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 16 Dec 2010
    4
    Medium

    CVE-2010-4545

    Last Modified: 11 Apr 2025

    IBM Lotus Notes Traveler before 8.5.1.2 allows remote authenticated users to cause a denial of service (resource consumption and sync outage) by syncing a large volume of data.

    Published: 16 Dec 2010
    4
    Medium

    CVE-2010-4546

    Last Modified: 11 Apr 2025

    IBM Lotus Notes Traveler before 8.5.1.2 does not reject an attachment download request for an e-mail message with a Prevent Copy attribute, which allows remote authenticated users to bypass intended access restrictions via this request.

    Published: 16 Dec 2010
    3.5
    Low

    CVE-2010-4547

    Last Modified: 11 Apr 2025

    IBM Lotus Notes Traveler before 8.5.1.3, when a multidomain environment is used, does not properly apply policy documents to mobile users from a different Domino domain than the Traveler server, which allows remote authenticated users to bypass intended access restrictions by using credentials from a different domain.

    Published: 16 Dec 2010
    2.1
    Low

    CVE-2010-4548

    Last Modified: 11 Apr 2025

    IBM Lotus Notes Traveler before 8.5.1.2 allows remote authenticated users to cause a denial of service (daemon crash) by accepting a meeting invitation with an iNotes client and then accepting this meeting invitation with an iPhone client.

    Published: 16 Dec 2010
    4
    Medium

    CVE-2010-4549

    Last Modified: 11 Apr 2025

    IBM Lotus Notes Traveler before 8.5.1.3 on the Nokia s60 device successfully performs a Replace Data operation for a prohibited application, which allows remote authenticated users to bypass intended access restrictions via this operation.

    Published: 16 Dec 2010
    5
    Medium

    CVE-2010-4552

    Last Modified: 11 Apr 2025

    Memory leak in IBM Lotus Notes Traveler before 8.5.1.1 allows remote attackers to cause a denial of service (memory consumption and daemon outage) by sending many embedded objects in e-mail messages for iPhone clients.

    Published: 16 Dec 2010
    5
    Medium

    CVE-2010-4553

    Last Modified: 11 Apr 2025

    An unspecified Domino API in IBM Lotus Notes Traveler before 8.5.1.1 does not properly handle MIME types, which allows remote attackers to cause a denial of service (daemon crash) via unspecified vectors.

    Published: 16 Dec 2010
    9.3
    Critical

    CVE-2010-2569

    Last Modified: 11 Apr 2025

    pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3, 2003 SP3, and 2007 SP2 does not properly handle an unspecified size field in certain older file formats, which allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted Publisher file, aka "Size Value Heap Corruption in pubconv.dll Vulnerability."

    Published: 16 Dec 2010
    9.3
    Critical

    CVE-2010-2570

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3, 2003 SP3, 2007 SP2, and 2010 allows remote attackers to execute arbitrary code via a crafted Publisher file that uses an old file format, aka "Heap Overrun in pubconv.dll Vulnerability."

    Published: 16 Dec 2010
    9.3
    Critical

    CVE-2010-2571

    Last Modified: 11 Apr 2025

    Array index error in pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3 and 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher 97 file, aka "Memory Corruption Due To Invalid Index Into Array in Pubconv.dll Vulnerability."

    Published: 16 Dec 2010
    5.4
    Medium

    CVE-2010-2742

    Last Modified: 11 Apr 2025

    The Netlogon RPC Service in Microsoft Windows Server 2003 SP2 and Server 2008 Gold, SP2, and R2, when the domain controller role is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and reboot) via a crafted RPC packet, aka "Netlogon RPC Null dereference DOS Vulnerability."

    Published: 16 Dec 2010
    7.2
    High

    CVE-2010-3338

    Last Modified: 11 Apr 2025

    The Windows Task Scheduler in Microsoft Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly determine the security context of scheduled tasks, which allows local users to gain privileges via a crafted application, aka "Task Scheduler Vulnerability." NOTE: this might overlap CVE-2010-3888.

    Published: 16 Dec 2010
    9.3
    Critical

    CVE-2010-3346

    Last Modified: 11 Apr 2025

    Microsoft Internet Explorer 6, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "HTML Element Memory Corruption Vulnerability."

    Published: 16 Dec 2010
    7.2
    High

    CVE-2010-3942

    Last Modified: 11 Apr 2025

    win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 does not properly allocate memory for copies from user mode, which allows local users to gain privileges via a crafted application, aka "Win32k WriteAV Vulnerability."

    Published: 16 Dec 2010
    7.2
    High

    CVE-2010-3944

    Last Modified: 11 Apr 2025

    win32k.sys in the kernel-mode drivers in Microsoft Windows Server 2008 R2 and Windows 7 does not properly validate user-mode input, which allows local users to gain privileges via a crafted application, aka "Win32k Memory Corruption Vulnerability."

    Published: 16 Dec 2010
    9.3
    Critical

    CVE-2010-3946

    Last Modified: 11 Apr 2025

    Integer overflow in the PICT image converter in the graphics filters in Microsoft Office XP SP3, Office 2003 SP3, and Office Converter Pack allows remote attackers to execute arbitrary code via a crafted PICT image in an Office document, aka "PICT Image Converter Integer Overflow Vulnerability."

    Published: 16 Dec 2010
    9.3
    Critical

    CVE-2010-3949

    Last Modified: 11 Apr 2025

    Buffer overflow in the TIFF image converter in the graphics filters in Microsoft Office XP SP3 and Office Converter Pack allows remote attackers to execute arbitrary code via a crafted TIFF image in an Office document, aka "TIFF Image Converter Buffer Overflow Vulnerability."

    Published: 16 Dec 2010
    9.3
    Critical

    CVE-2010-3955

    Last Modified: 11 Apr 2025

    pubconv.dll (aka the Publisher Converter DLL) in Microsoft Publisher 2002 SP3 does not properly perform array indexing, which allows remote attackers to execute arbitrary code via a crafted Publisher file that uses an old file format, aka "Array Indexing Memory Corruption Vulnerability."

    Published: 16 Dec 2010
    7.3
    High

    CVE-2010-3957

    Last Modified: 11 Apr 2025

    Double free vulnerability in the OpenType Font (OTF) driver in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows local users to gain privileges via a crafted OpenType font, aka "OpenType Font Double Free Vulnerability."

    Published: 16 Dec 2010
    4.9
    Medium

    CVE-2010-3960

    Last Modified: 11 Apr 2025

    Hyper-V in Microsoft Windows Server 2008 Gold, SP2, and R2 allows guest OS users to cause a denial of service (host OS hang) by sending a crafted encapsulated packet over the VMBus, aka "Hyper-V VMBus Vulnerability."

    Published: 16 Dec 2010