CVE Feed

    Dashboard / CVE

    4.6
    Medium

    CVE-2010-3244

    Last Modified: 11 Apr 2025

    BbtsConnection_Edit.exe in Blackboard Transact Suite (formerly Blackboard Commerce Suite) before 3.6.0.2 relies on field names when determining whether it is appropriate to decrypt a connection.xml field value, which allows local users to discover the database password via a modified connection.xml file that contains an encrypted password in the <Server> field.

    Published: 7 Sept 2010
    2.1
    Low

    CVE-2010-3245

    Last Modified: 11 Apr 2025

    The automated-backup functionality in Blackboard Transact Suite (formerly Blackboard Commerce Suite) stores the (1) database username and (2) database password in cleartext in (a) script and (b) batch (.bat) files, which allows local users to obtain sensitive information by reading a file.

    Published: 7 Sept 2010
    5
    Medium

    CVE-2010-3250

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in Google Chrome before 6.0.472.53 allows remote attackers to enumerate the set of installed extensions via unknown vectors.

    Published: 7 Sept 2010
    4.3
    Medium

    CVE-2010-3251

    Last Modified: 11 Apr 2025

    The WebSockets implementation in Google Chrome before 6.0.472.53 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via unspecified vectors.

    Published: 7 Sept 2010
    10
    Critical

    CVE-2010-3252

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in the Notifications presenter in Google Chrome before 6.0.472.53 allows attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

    Published: 7 Sept 2010
    10
    Critical

    CVE-2010-3253

    Last Modified: 11 Apr 2025

    The implementation of notification permissions in Google Chrome before 6.0.472.53 allows attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.

    Published: 7 Sept 2010
    7.2
    High

    CVE-2010-2739

    Last Modified: 11 Apr 2025

    Buffer overflow in the CreateDIBPalette function in win32k.sys in Microsoft Windows XP SP3, Server 2003 R2 Enterprise SP2, Vista Business SP1, Windows 7, and Server 2008 SP2 allows local users to cause a denial of service (crash) and possibly execute arbitrary code by performing a clipboard operation (GetClipboardData API function) with a crafted bitmap with a palette that contains a large number of colors.

    Published: 7 Sept 2010
    9.3
    Critical

    CVE-2010-2874

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in Adobe Shockwave Player before 11.5.8.612 allows remote attackers to execute arbitrary code via unknown vectors that trigger memory corruption. NOTE: due to conflicting information and use of the same CVE identifier by the vendor, ZDI, and TippingPoint, it is not clear whether this issue is related to use of an uninitialized pointer, an incorrect pointer offset calculation, or both.

    Published: 7 Sept 2010
    5
    Medium

    CVE-2010-3248

    Last Modified: 11 Apr 2025

    Google Chrome before 6.0.472.53 does not properly restrict copying to the clipboard, which has unspecified impact and attack vectors.

    Published: 7 Sept 2010
    9.3
    Critical

    CVE-2010-3249

    Last Modified: 11 Apr 2025

    Google Chrome before 6.0.472.53 does not properly implement SVG filters, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors, related to a "stale pointer" issue.

    Published: 7 Sept 2010
    10
    Critical

    CVE-2010-3254

    Last Modified: 11 Apr 2025

    The WebSockets implementation in Google Chrome before 6.0.472.53 does not properly handle integer values, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

    Published: 7 Sept 2010
    9.3
    Critical

    CVE-2010-3258

    Last Modified: 11 Apr 2025

    The sandbox implementation in Google Chrome before 6.0.472.53 does not properly deserialize parameters, which has unspecified impact and remote attack vectors.

    Published: 7 Sept 2010
    7.2
    High

    CVE-2009-4996

    Last Modified: 11 Apr 2025

    Xfce4-session 4.5.91 in Xfce does not lock the screen when the suspend or hibernate button is pressed, which might make it easier for physically proximate attackers to access an unattended laptop via a resume action, a related issue to CVE-2010-2532. NOTE: there is no general agreement that this is a vulnerability, because separate control over locking can be an equally secure, or more secure, behavior in some threat environments

    Published: 7 Sept 2010
    4.3
    Medium

    CVE-2010-3246

    Last Modified: 11 Apr 2025

    Google Chrome before 6.0.472.53 does not properly handle the _blank value for the target attribute of unspecified elements, which allows remote attackers to bypass the pop-up blocker via unknown vectors.

    Published: 7 Sept 2010
    4.3
    Medium

    CVE-2010-3247

    Last Modified: 11 Apr 2025

    Google Chrome before 6.0.472.53 does not properly restrict the characters in URLs, which allows remote attackers to spoof the appearance of the URL bar via homographic sequences.

    Published: 7 Sept 2010
    4.3
    Medium

    CVE-2010-3256

    Last Modified: 11 Apr 2025

    Google Chrome before 6.0.472.53 does not properly limit the number of stored autocomplete entries, which has unspecified impact and attack vectors.

    Published: 7 Sept 2010
    6.8
    Medium

    CVE-2009-4898

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in TWiki before 4.3.2 allows remote attackers to hijack the authentication of arbitrary users for requests that update pages, as demonstrated by a URL for a save script in the ACTION attribute of a FORM element, in conjunction with a call to the submit method in the onload attribute of a BODY element. NOTE: this issue exists because of an insufficient fix for CVE-2009-1339.

    Published: 7 Sept 2010
    3.5
    Low

    CVE-2010-2802

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in MantisBT before 1.2.2 allows remote authenticated users to inject arbitrary web script or HTML via an HTML document with a .gif filename extension, related to inline attachments.

    Published: 7 Sept 2010
    9.3
    Critical

    CVE-2010-1806

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in Apple Safari 4.x before 4.1.2 and 5.x before 5.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via run-in styling in an element, related to object pointers.

    Published: 7 Sept 2010
    4.3
    Medium

    CVE-2010-2764

    Last Modified: 11 Apr 2025

    Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 do not properly restrict read access to the statusText property of XMLHttpRequest objects, which allows remote attackers to discover the existence of intranet web servers via cross-origin requests.

    Published: 7 Sept 2010
    9.3
    Critical

    CVE-2010-2766

    Last Modified: 11 Apr 2025

    The normalizeDocument function in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 does not properly handle the removal of DOM nodes during normalization, which might allow remote attackers to execute arbitrary code via vectors involving access to a deleted object.

    Published: 7 Sept 2010
    9.3
    Critical

    CVE-2010-2767

    Last Modified: 11 Apr 2025

    The navigator.plugins implementation in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 does not properly handle destruction of the DOM plugin array, which might allow remote attackers to cause a denial of service (application crash) or execute arbitrary code via crafted access to the navigator object, related to a "dangling pointer vulnerability."

    Published: 7 Sept 2010
    4.3
    Medium

    CVE-2010-2768

    Last Modified: 11 Apr 2025

    Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 do not properly restrict use of the type attribute of an OBJECT element to set a document's charset, which allows remote attackers to bypass cross-site scripting (XSS) protection mechanisms via UTF-7 encoding.

    Published: 7 Sept 2010
    6.2
    Medium

    CVE-2010-2956

    Last Modified: 11 Apr 2025

    Sudo 1.7.0 through 1.7.4p3, when a Runas group is configured, does not properly handle use of the -u option in conjunction with the -g option, which allows local users to gain privileges via a command line containing a "-u root" sequence.

    Published: 7 Sept 2010
    4
    Medium

    CVE-2010-3679

    Last Modified: 11 Apr 2025

    Oracle MySQL 5.1 before 5.1.49 allows remote authenticated users to cause a denial of service (mysqld daemon crash) via certain arguments to the BINLOG command, which triggers an access of uninitialized memory, as demonstrated by valgrind.

    Published: 7 Sept 2010
    9.3
    Critical

    CVE-2010-1807

    Last Modified: 11 Apr 2025

    WebKit in Apple Safari 4.x before 4.1.2 and 5.x before 5.0.2; Android before 2.2; and webkitgtk before 1.2.6; does not properly validate floating-point data, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted HTML document, related to non-standard NaN representation.

    Published: 7 Sept 2010
    9.3
    Critical

    CVE-2010-2760

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in the nsTreeSelection function in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 might allow remote attackers to execute arbitrary code via vectors involving a XUL tree selection, related to a "dangling pointer vulnerability." NOTE: this issue exists because of an incomplete fix for CVE-2010-2753.

    Published: 7 Sept 2010
    5.5
    Medium

    CVE-2010-3078

    Last Modified: 11 Apr 2025

    The xfs_ioc_fsgetxattr function in fs/xfs/linux-2.6/xfs_ioctl.c in the Linux kernel before 2.6.36-rc4 does not initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via an ioctl call.

    Published: 7 Sept 2010
    7.2
    High

    CVE-2010-3084

    Last Modified: 11 Apr 2025

    Buffer overflow in the niu_get_ethtool_tcam_all function in drivers/net/niu.c in the Linux kernel before 2.6.36-rc4 allows local users to cause a denial of service or possibly have unspecified other impact via the ETHTOOL_GRXCLSRLALL ethtool command.

    Published: 7 Sept 2010
    9.3
    Critical

    CVE-2010-3168

    Last Modified: 11 Apr 2025

    Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 do not properly restrict the role of property changes in triggering XUL tree removal, which allows remote attackers to cause a denial of service (deleted memory access and application crash) or possibly execute arbitrary code by setting unspecified properties.

    Published: 7 Sept 2010
    6.8
    Medium

    CVE-2010-2762

    Last Modified: 11 Apr 2025

    The XPCSafeJSObjectWrapper class in the SafeJSObjectWrapper (aka SJOW) implementation in Mozilla Firefox 3.6.x before 3.6.9 and Thunderbird 3.1.x before 3.1.3 does not properly restrict objects at the end of scope chains, which allows remote attackers to execute arbitrary JavaScript code with chrome privileges via vectors related to a chrome privileged object and a chain ending in an outer object.

    Published: 7 Sept 2010
    9.3
    Critical

    CVE-2010-2765

    Last Modified: 11 Apr 2025

    Integer overflow in the FRAMESET element implementation in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 might allow remote attackers to execute arbitrary code via a large number of values in the cols (aka columns) attribute, leading to a heap-based buffer overflow.

    Published: 7 Sept 2010
    4.3
    Medium

    CVE-2010-2769

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 allows user-assisted remote attackers to inject arbitrary web script or HTML via a selection that is added to a document in which the designMode property is enabled.

    Published: 7 Sept 2010
    9.3
    Critical

    CVE-2010-3166

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in the nsTextFrameUtils::TransformText function in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 might allow remote attackers to execute arbitrary code via a bidirectional text run.

    Published: 7 Sept 2010
    9.3
    Critical

    CVE-2010-3167

    Last Modified: 11 Apr 2025

    The nsTreeContentView function in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 does not properly handle node removal in XUL trees, which allows remote attackers to execute arbitrary code via vectors involving access to deleted memory, related to a "dangling pointer vulnerability."

    Published: 7 Sept 2010
    9.3
    Critical

    CVE-2010-3169

    Last Modified: 11 Apr 2025

    Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

    Published: 7 Sept 2010
    4.3
    Medium

    CVE-2011-0753

    Last Modified: 11 Apr 2025

    Race condition in the PCNTL extension in PHP before 5.3.4, when a user-defined signal handler exists, might allow context-dependent attackers to cause a denial of service (memory corruption) via a large number of concurrent signals.

    Published: 6 Sept 2010
    7.2
    High

    CVE-2010-2532

    Last Modified: 11 Apr 2025

    lxsession-logout in lxsession in LXDE, as used on SUSE openSUSE 11.3 and other platforms, does not lock the screen when the Suspend or Hibernate button is pressed, which might make it easier for physically proximate attackers to access an unattended laptop via a resume action. NOTE: there is no general agreement that this is a vulnerability, because separate control over locking can be an equally secure, or more secure, behavior in some threat environments.

    Published: 3 Sept 2010
    4.3
    Medium

    CVE-2010-1325

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in the apache2-slms package in SUSE Lifecycle Management Server (SLMS) 1.0 on SUSE Linux Enterprise (SLE) 11 allows remote attackers to hijack the authentication of unspecified victims via vectors related to improper parameter quoting. NOTE: some sources report that this is a vulnerability in a product named "Apache SLMS," but that is incorrect.

    Published: 3 Sept 2010
    5
    Medium

    CVE-2010-1507

    Last Modified: 11 Apr 2025

    WebYaST in yast2-webclient in SUSE Linux Enterprise (SLE) 11 on the WebYaST appliance uses a fixed secret key that is embedded in the appliance's image, which allows remote attackers to spoof session cookies by leveraging knowledge of this key.

    Published: 3 Sept 2010
    5
    Medium

    CVE-2010-3203

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in the PicSell (com_picsell) component 1.0 for Joomla! allows remote attackers to read arbitrary files via a .. (dot dot) in the dflink parameter in a prevsell dwnfree action to index.php.

    Published: 3 Sept 2010
    7.5
    High

    CVE-2010-3205

    Last Modified: 11 Apr 2025

    PHP remote file inclusion vulnerability in index.php in Textpattern CMS 4.2.0 allows remote attackers to execute arbitrary PHP code via a URL in the inc parameter.

    Published: 3 Sept 2010
    4.3
    Medium

    CVE-2010-3208

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in ajax.php in Wiccle Web Builder (WWB) 1.00 and 1.0.1 allows remote attackers to inject arbitrary web script or HTML via the post_text parameter in a site custom_search action to index.php. NOTE: some of these details are obtained from third party information.

    Published: 3 Sept 2010
    7.5
    High

    CVE-2010-3209

    Last Modified: 11 Apr 2025

    Multiple PHP remote file inclusion vulnerabilities in Seagull 0.6.7 allow remote attackers to execute arbitrary PHP code via a URL in the includeFile parameter to (1) Config/Container.php and (2) HTML/QuickForm.php in fog/lib/pear/, the (3) driverpath parameter to fog/lib/pear/DB/NestedSet.php, and the (4) path parameter to fog/lib/pear/DB/NestedSet/Output.php.

    Published: 3 Sept 2010
    7.5
    High

    CVE-2010-3211

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in the JE FAQ Pro (com_jefaqpro) component 1.5.0 for Joomla! allow remote attackers to execute arbitrary SQL commands via category categorylist operations with (1) the catid parameter or (2) the catid parameter in a lists action.

    Published: 3 Sept 2010
    7.5
    High

    CVE-2010-3212

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in index.php in Seagull 0.6.7 and earlier allows remote attackers to execute arbitrary SQL commands via the frmQuestion parameter in a retrieve action, in conjunction with a user/password PATH_INFO.

    Published: 3 Sept 2010
    7.5
    High

    CVE-2010-3204

    Last Modified: 11 Apr 2025

    Multiple PHP remote file inclusion vulnerabilities in Pecio CMS 2.0.5 allow remote attackers to execute arbitrary PHP code via a URL in the template parameter to (1) post.php, (2) article.php, (3) blog.php, or (4) home.php in pec_templates/nova-blue/.

    Published: 3 Sept 2010
    6.8
    Medium

    CVE-2010-3207

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in index.php in GaleriaSHQIP 1.0, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the album_id parameter. NOTE: some of these details are obtained from third party information.

    Published: 3 Sept 2010
    7.5
    High

    CVE-2010-3210

    Last Modified: 11 Apr 2025

    Multiple PHP remote file inclusion vulnerabilities in Multi-lingual E-Commerce System 0.2 allow remote attackers to execute arbitrary PHP code via a URL in the include_path parameter to (1) checkout2-CYM.php, (2) checkout2-EN.php, (3) checkout2-FR.php, (4) cat-FR.php, (5) cat-EN.php, (6) cat-CYM.php, (7) checkout1-CYM.php, (8) checkout1-EN.php, (9) checkout1-FR.php, (10) prod-CYM.php, (11) prod-EN.php, and (12) prod-FR.php in inc/.

    Published: 3 Sept 2010
    7.5
    High

    CVE-2010-3206

    Last Modified: 11 Apr 2025

    Multiple PHP remote file inclusion vulnerabilities in DiY-CMS 1.0 allow remote attackers to execute arbitrary PHP code via a URL in the (1) lang parameter to modules/guestbook/blocks/control.block.php, (2) main_module parameter to index.php, and (3) getFile parameter to includes/general.functions.php.

    Published: 3 Sept 2010