CVE Feed

    Dashboard / CVE

    9.3
    Critical

    CVE-2010-3138

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in the Indeo Codec in iac25_32.ax in Microsoft Windows XP SP3 allows local users to gain privileges via a Trojan horse iacenc.dll file in the current working directory, as demonstrated by access through BS.Player or Media Player Classic to a directory that contains a .avi, .mka, .ra, or .ram file, aka "Indeo Codec Insecure Library Loading Vulnerability." NOTE: some of these details are obtained from third party information.

    Published: 27 Aug 2010
    9.3
    Critical

    CVE-2010-3145

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in the BitLocker Drive Encryption API, as used in sdclt.exe in Backup Manager in Microsoft Windows Vista SP1 and SP2, allows local users to gain privileges via a Trojan horse fveapi.dll file in the current working directory, as demonstrated by a directory that contains a Windows Backup Catalog (.wbcat) file, aka "Backup Manager Insecure Library Loading Vulnerability."

    Published: 27 Aug 2010
    9.3
    Critical

    CVE-2010-3155

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in Adobe ExtendScript Toolkit (ESTK) CS5 3.5.0.52 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the same folder as a .jsx file.

    Published: 27 Aug 2010
    2.1
    Low

    CVE-2010-2955

    Last Modified: 11 Apr 2025

    The cfg80211_wext_giwessid function in net/wireless/wext-compat.c in the Linux kernel before 2.6.36-rc3-next-20100831 does not properly initialize certain structure members, which allows local users to leverage an off-by-one error in the ioctl_standard_iw_point function in net/wireless/wext-core.c, and obtain potentially sensitive information from kernel heap memory, via vectors involving an SIOCGIWESSID ioctl call that specifies a large buffer size.

    Published: 27 Aug 2010
    5
    Medium

    CVE-2010-2865

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in Adobe Shockwave Player before 11.5.8.612 allows attackers to cause a denial of service via unknown vectors.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2866

    Last Modified: 11 Apr 2025

    Integer signedness error in the DIRAPI module in Adobe Shockwave Player before 11.5.8.612 allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a count value associated with an "undocumented structure" and the tSAC chunk in a Director movie.

    Published: 26 Aug 2010
    7.8
    High

    CVE-2010-2837

    Last Modified: 11 Apr 2025

    The SIPStationInit implementation in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 6.1SU before 6.1(5)SU1, 7.0SU before 7.0(2a)SU3, 7.1SU before 7.1(3b)SU2, 7.1 before 7.1(5), and 8.0 before 8.0(1) allows remote attackers to cause a denial of service (process failure) via a malformed SIP message, aka Bug ID CSCtd17310.

    Published: 26 Aug 2010
    7.8
    High

    CVE-2010-2840

    Last Modified: 11 Apr 2025

    The Presence Engine (PE) service in Cisco Unified Presence 6.x before 6.0(7) and 7.x before 7.0(8) does not properly handle an erroneous Contact field in the header of a SIP SUBSCRIBE message, which allows remote attackers to cause a denial of service (process failure) via a malformed message, aka Bug ID CSCtd39629.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2867

    Last Modified: 11 Apr 2025

    DIRAPIX.dll in Adobe Shockwave Player before 11.5.8.612 does not properly handle a certain return value associated with the rcsL chunk in a Director movie, which allows remote attackers to cause a denial of service (heap memory corruption) or execute arbitrary code via a crafted movie, related to a "pointer offset vulnerability."

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2868

    Last Modified: 11 Apr 2025

    IML32.dll in Adobe Shockwave Player before 11.5.8.612 does not properly parse .dir files, which allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a malformed file containing an invalid value, as demonstrated by a value at position 0x320D of a certain file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2869

    Last Modified: 11 Apr 2025

    IML32.dll in Adobe Shockwave Player before 11.5.8.612 does not properly parse .dir files, which allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a malformed file containing an invalid value, as demonstrated by a value at position 0x3712 of a certain file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2870

    Last Modified: 11 Apr 2025

    DIRAPIX.dll in Adobe Shockwave Player before 11.5.8.612 does not properly validate a certain chunk size in the mmap chunk in a Director movie, which allows remote attackers to cause a denial of service (heap memory corruption) or execute arbitrary code via a crafted movie.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2871

    Last Modified: 11 Apr 2025

    Integer overflow in the 3D object functionality in Adobe Shockwave Player before 11.5.8.612 allows remote attackers to cause a denial of service (heap memory corruption) or execute arbitrary code via a crafted size value in a 0xFFFFFF45 RIFF record in a Director movie.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2872

    Last Modified: 11 Apr 2025

    Adobe Shockwave Player before 11.5.8.612 does not properly validate an offset value in the pami RIFF chunk in a Director movie, which allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a crafted movie.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2875

    Last Modified: 11 Apr 2025

    Integer signedness error in Adobe Shockwave Player before 11.5.8.612 allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a length value associated with the tSAC chunk in a Director movie.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2876

    Last Modified: 11 Apr 2025

    Adobe Shockwave Player before 11.5.8.612 does not properly validate values associated with buffer-size calculation for a 0xFFFFFFF8 record in a (1) .dir or (2) .dcr Director movie, which allows remote attackers to cause a denial of service (heap memory corruption) or execute arbitrary code via a crafted movie.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2877

    Last Modified: 11 Apr 2025

    Adobe Shockwave Player before 11.5.8.612 does not properly validate a count value in a Director movie, which allows remote attackers to cause a denial of service (heap memory corruption) or execute arbitrary code via a crafted movie, related to IML32X.dll and DIRAPIX.dll.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2879

    Last Modified: 11 Apr 2025

    Multiple integer overflows in the allocator in the TextXtra.x32 module in Adobe Shockwave Player before 11.5.8.612 allow remote attackers to cause a denial of service (heap memory corruption) or execute arbitrary code via a crafted (1) element count or (2) element size value in a file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2880

    Last Modified: 11 Apr 2025

    DIRAPI.dll in Adobe Shockwave Player before 11.5.8.612 does not properly parse .dir files, which allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a malformed file containing an invalid value, as demonstrated by a value at position 0x47 of a certain file.

    Published: 26 Aug 2010
    7.8
    High

    CVE-2010-2839

    Last Modified: 11 Apr 2025

    SIPD in Cisco Unified Presence 6.x before 6.0(7) and 7.x before 7.0(8) allows remote attackers to cause a denial of service (stack memory corruption and process failure) via a malformed SIP message, aka Bug ID CSCtd14474.

    Published: 26 Aug 2010
    10
    Critical

    CVE-2010-2863

    Last Modified: 11 Apr 2025

    Adobe Shockwave Player before 11.5.8.612 allows attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via unspecified vectors.

    Published: 26 Aug 2010
    7.8
    High

    CVE-2010-2838

    Last Modified: 11 Apr 2025

    The SendCombinedStatusInfo implementation in Cisco Unified Communications Manager (aka CUCM, formerly CallManager) 7.0SU before 7.0(2a)SU3, 7.1 before 7.1(5), and 8.0 before 8.0(3) allows remote attackers to cause a denial of service (process failure) via a malformed SIP REGISTER message, aka Bug ID CSCtf66305.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2864

    Last Modified: 11 Apr 2025

    IML32.dll in Adobe Shockwave Player before 11.5.8.612 does not properly parse .dir files, which allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a malformed file containing an invalid value, as demonstrated by a value at position 0x24C6 of a certain file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2873

    Last Modified: 11 Apr 2025

    Adobe Shockwave Player before 11.5.8.612 does not properly validate offset values in the rcsL RIFF chunks of (1) .DIR and (2) .DCR Director movies, which allows remote attackers to cause a denial of service (heap memory corruption) or execute arbitrary code via a crafted movie.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2878

    Last Modified: 11 Apr 2025

    DIRAPIX.dll in Adobe Shockwave Player before 11.5.8.612 does not properly validate a value associated with a buffer seek for a Director movie, which allows remote attackers to cause a denial of service (heap memory corruption) or execute arbitrary code via a crafted movie.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2881

    Last Modified: 11 Apr 2025

    IML32.dll in Adobe Shockwave Player before 11.5.8.612 does not properly parse .dir files, which allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a malformed file containing an invalid value, as demonstrated by a value at position 0x24C0 of a certain file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-2882

    Last Modified: 11 Apr 2025

    DIRAPI.dll in Adobe Shockwave Player before 11.5.8.612 does not properly parse .dir files, which allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary code via a malformed file containing an invalid value, as demonstrated by a value at position 0x3812 of a certain file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-3124

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in bin/winvlc.c in VLC Media Player 1.1.3 and earlier allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse wintab32.dll that is located in the same folder as a .mp3 file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-3125

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in TeamMate Audit Management Software Suite 8.0 patch 2 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse mfc71enu.dll that is located in the same folder as a .tmx file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-3126

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in avast! Free Antivirus version 5.0.594 and earlier allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse mfc90loc.dll that is located in the same folder as an avast license (.avastlic) file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-3127

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in Adobe PhotoShop CS2 through CS5 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll or Wintab32.dll that is located in the same folder as a PSD or other file that is processed by PhotoShop. NOTE: some of these details are obtained from third party information.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-3128

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in TeamViewer 5.0.8703 and earlier allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the same folder as a .tvs or .tvc file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-3129

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in uTorrent 2.0.3 and earlier allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse plugin_dll.dll, userenv.dll, shfolder.dll, dnsapi.dll, dwmapi.dll, iphlpapi.dll, dhcpcsvc.dll, dhcpcsvc6.dll, or rpcrtremote.dll that is located in the same folder as a .torrent or .btsearch file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-3133

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in Wireshark 0.8.4 through 1.0.15 and 1.2.0 through 1.2.10 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse airpcap.dll, and possibly other DLLs, that is located in the same folder as a file that automatically launches Wireshark.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-3134

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in Google Earth 5.1.3535.3218 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse quserex.dll that is located in the same folder as a .kmz file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-3136

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in Skype 4.2.0.169 and earlier allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse wab32.dll that is located in the same folder as a .skype file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-3132

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in Adobe Dreamweaver CS5 11.0 build 4916, build 4909, and probably other versions, allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse (1) mfc90loc.dll or (2) dwmapi.dll that is located in the same folder as a CSS, PHP, ASP, or other file that automatically launches Dreamweaver.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-3135

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in Cisco Packet Tracer 5.2 allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse wintab32.dll that is located in the same folder as a .pkt or .pkz file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-3137

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in Nullsoft Winamp 5.581, and probably other versions, allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse wnaspi32.dll that is located in the same folder as a .669, .aac, .aiff, .amf, .au, .avr, .b4s, .caf or .cda file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-3130

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in TechSmith Snagit all versions 10.x and 11.x allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the same folder as a snag, snagcc, or snagprof file.

    Published: 26 Aug 2010
    9.3
    Critical

    CVE-2010-3131

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 on Windows XP allows local users, and possibly remote attackers, to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located in the same folder as a .htm, .html, .jtx, .mfp, or .eml file.

    Published: 26 Aug 2010
    7.5
    High

    CVE-2010-2360

    Last Modified: 11 Apr 2025

    Multiple buffer overflows in Winny 2.0b7.1 and earlier might allow remote attackers to execute arbitrary code via unspecified vectors, a different vulnerability than CVE-2006-2007.

    Published: 25 Aug 2010
    10
    Critical

    CVE-2010-2361

    Last Modified: 11 Apr 2025

    Winny 2.0b7.1 and earlier does not properly process BBS information, which has unspecified impact and remote attack vectors that might lead to use of the product's host for DDoS attacks.

    Published: 25 Aug 2010
    6.5
    Medium

    CVE-2009-4977

    Last Modified: 11 Apr 2025

    PHP remote file inclusion vulnerability in index.php in MyBackup 1.4.0 allows remote authenticated users to execute arbitrary PHP code via a URL in the main_content parameter.

    Published: 25 Aug 2010
    5
    Medium

    CVE-2009-4978

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in down.php in MyBackup 1.4.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the filename parameter.

    Published: 25 Aug 2010
    4.3
    Medium

    CVE-2009-4980

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Photokorn Gallery 1.81 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) where[] parameter to search.php and (2) qc parameter to admin.php.

    Published: 25 Aug 2010
    6.8
    Medium

    CVE-2009-4981

    Last Modified: 11 Apr 2025

    Multiple cross-site request forgery (CSRF) vulnerabilities in Photokorn Gallery 1.81 allow remote attackers to hijack the authentication of administrators.

    Published: 25 Aug 2010
    6.8
    Medium

    CVE-2009-4982

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in the select function in Irokez CMS 0.7.1, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the PATH_INFO to the default URI.

    Published: 25 Aug 2010
    4.3
    Medium

    CVE-2009-4983

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Silurus Classifieds 1.0 allow remote attackers to inject arbitrary web script or HTML via the ID parameter to (1) category.php and (2) wcategory.php, and the (3) keywords parameter to search.php.

    Published: 25 Aug 2010
    4.3
    Medium

    CVE-2009-4984

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Accessories Me PHP Affiliate Script 1.4 allow remote attackers to inject arbitrary web script or HTML via the (1) Keywords parameter to search.php and (2) SearchIndex parameter to browse.php.

    Published: 25 Aug 2010