CVE Feed

    Dashboard / CVE

    5
    Medium

    CVE-2010-2333

    Last Modified: 11 Apr 2025

    LiteSpeed Technologies LiteSpeed Web Server 4.0.x before 4.0.15 allows remote attackers to read the source code of scripts via an HTTP request with a null byte followed by a .txt file extension.

    Published: 18 Jun 2010
    5
    Medium

    CVE-2010-2334

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in themes/default/download.php in Yamamah Photo Gallery 1.00, as distributed before 20100618, allows remote attackers to read arbitrary files via a .. (dot dot) in the download parameter.

    Published: 18 Jun 2010
    7.5
    High

    CVE-2010-2335

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in index.php in Yamamah Photo Gallery 1.00, as distributed before 20100618, allows remote attackers to execute arbitrary SQL commands via the news parameter.

    Published: 18 Jun 2010
    5
    Medium

    CVE-2010-2336

    Last Modified: 11 Apr 2025

    index.php in Yamamah Photo Gallery 1.00 allows remote attackers to obtain the source code of executable files within the web document root via the download parameter.

    Published: 18 Jun 2010
    7.5
    High

    CVE-2010-2324

    Last Modified: 11 Apr 2025

    IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.11 on z/OS allows attackers to perform unspecified "link injection" actions via unknown vectors.

    Published: 18 Jun 2010
    4.3
    Medium

    CVE-2010-2325

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the administrative console in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.11 on z/OS allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related in part to "URL injection."

    Published: 18 Jun 2010
    4.3
    Medium

    CVE-2010-2326

    Last Modified: 11 Apr 2025

    IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.11, when addNode -trace is used during node federation, allows attackers to obtain sensitive information about CIMMetadataCollectorImpl trace actions by reading the addNode.log file.

    Published: 18 Jun 2010
    4.3
    Medium

    CVE-2010-2327

    Last Modified: 11 Apr 2025

    mod_ibm_ssl in IBM HTTP Server 6.0 before 6.0.2.43, 6.1 before 6.1.0.33, and 7.0 before 7.0.0.11, as used in IBM WebSphere Application Server (WAS) on z/OS, does not properly handle a large HTTP request body in uploading over SSL, which might allow remote attackers to cause a denial of service (daemon fail) via an upload.

    Published: 18 Jun 2010
    5
    Medium

    CVE-2010-2323

    Last Modified: 11 Apr 2025

    IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.11 on z/OS might allow attackers to obtain sensitive information by reading the default_create.log file that is associated with profile creation by the BBOWWPFx job and the zPMT.

    Published: 18 Jun 2010
    5
    Medium

    CVE-2010-2328

    Last Modified: 11 Apr 2025

    The HTTP Channel in IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.11 allows remote attackers to cause a denial of service (NullPointerException) via a large amount of chunked data that uses gzip compression.

    Published: 18 Jun 2010
    10
    Critical

    CVE-2010-0284

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in the getEntry method in the PortalModuleInstallManager component in a servlet in nps.jar in the Administration Console (aka Access Management Console) in Novell Access Manager 3.1 before 3.1.2-281 on Windows allows remote attackers to create arbitrary files with any contents, and consequently execute arbitrary code, via a .. (dot dot) in a parameter, aka ZDI-CAN-678.

    Published: 18 Jun 2010
    10
    Critical

    CVE-2010-1763

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in WebKit in Apple iTunes before 9.2 on Windows has unknown impact and attack vectors, a different vulnerability than CVE-2010-1387 and CVE-2010-1769.

    Published: 18 Jun 2010
    10
    Critical

    CVE-2010-1769

    Last Modified: 11 Apr 2025

    WebKit in Apple iTunes before 9.2 on Windows, and Apple iOS before 4 on the iPhone and iPod touch, accesses out-of-bounds memory during the handling of tables, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted HTML document, a different vulnerability than CVE-2010-1387 and CVE-2010-1763.

    Published: 18 Jun 2010
    9.3
    Critical

    CVE-2010-2321

    Last Modified: 11 Apr 2025

    Buffer overflow in Adobe InDesign CS3 10.0 allows user-assisted remote attackers to execute arbitrary code via a crafted .indd file.

    Published: 18 Jun 2010
    7.5
    High

    CVE-2010-2225

    Last Modified: 11 Apr 2025

    Use-after-free vulnerability in the SplObjectStorage unserializer in PHP 5.2.x and 5.3.x through 5.3.2 allows remote attackers to execute arbitrary code or obtain sensitive information via serialized data, related to the PHP unserialize function.

    Published: 18 Jun 2010
    6.8
    Medium

    CVE-2010-0543

    Last Modified: 11 Apr 2025

    ImageIO in Apple Mac OS X 10.5.8, and 10.6 before 10.6.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted movie file with MPEG2 encoding.

    Published: 17 Jun 2010
    3.3
    Low

    CVE-2010-0546

    Last Modified: 11 Apr 2025

    Folder Manager in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, allows local users to delete arbitrary folders via a symlink attack in conjunction with an unmount operation on a crafted volume, related to the Cleanup At Startup folder.

    Published: 17 Jun 2010
    7.5
    High

    CVE-2010-1964

    Last Modified: 11 Apr 2025

    Buffer overflow in ovwebsnmpsrv.exe in HP OpenView Network Node Manager (OV NNM) 7.51 and 7.53 allows remote attackers to execute arbitrary code via unspecified parameters to jovgraph.exe, aka ZDI-CAN-683.

    Published: 17 Jun 2010
    7.5
    High

    CVE-2010-2315

    Last Modified: 11 Apr 2025

    PHP remote file inclusion vulnerability in picturelib.php in SmartISoft phpBazar 2.1.1 allows remote attackers to execute arbitrary PHP code via a URL in the cat parameter.

    Published: 17 Jun 2010
    4.3
    Medium

    CVE-2010-2316

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in default.asp in WmsCms 2.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) search, (2) sbr, (3) p, and (4) sbl parameters, different vectors than CVE-2007-3137.

    Published: 17 Jun 2010
    4.3
    Medium

    CVE-2010-2318

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in cms_data.php in PHPCityPortal 1.3 allows remote attackers to inject arbitrary web script or HTML via the page parameter.

    Published: 17 Jun 2010
    7.5
    High

    CVE-2010-2319

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in index.php in IDevSpot TextAds 2.08 allows remote attackers to execute arbitrary SQL commands via the page parameter.

    Published: 17 Jun 2010
    4.4
    Medium

    CVE-2010-0545

    Last Modified: 11 Apr 2025

    The Finder in DesktopServices in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, does not set the expected file ownerships during an "Apply to enclosed items" action, which allows local users to bypass intended access restrictions via normal filesystem operations.

    Published: 17 Jun 2010
    4.3
    Medium

    CVE-2010-1373

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in Help Viewer in Apple Mac OS X 10.6 before 10.6.4 allows remote attackers to inject arbitrary web script or HTML via a crafted help: URL, related to "URL parameters in HTML content."

    Published: 17 Jun 2010
    4.3
    Medium

    CVE-2010-1374

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in iChat in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, when AIM is used, allows remote attackers to create arbitrary files via directory traversal sequences in an inline image-transfer operation.

    Published: 17 Jun 2010
    7.2
    High

    CVE-2010-1375

    Last Modified: 11 Apr 2025

    NetAuthSysAgent in Network Authorization in Apple Mac OS X 10.5.8 does not have the expected authorization requirements, which allows local users to gain privileges via unspecified vectors.

    Published: 17 Jun 2010
    6.8
    Medium

    CVE-2010-1376

    Last Modified: 11 Apr 2025

    Multiple format string vulnerabilities in Network Authorization in Apple Mac OS X 10.6 before 10.6.4 allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via format string specifiers in a (1) afp, (2) cifs, or (3) smb URL.

    Published: 17 Jun 2010
    9.3
    Critical

    CVE-2010-1377

    Last Modified: 11 Apr 2025

    Open Directory in Apple Mac OS X 10.6 before 10.6.4 creates an unencrypted connection upon certain SSL failures, which allows man-in-the-middle attackers to spoof arbitrary network account servers, and possibly execute arbitrary code, via unspecified vectors.

    Published: 17 Jun 2010
    5
    Medium

    CVE-2010-1379

    Last Modified: 11 Apr 2025

    Printer Setup in Apple Mac OS X 10.6 before 10.6.4 does not properly interpret character encoding, which allows remote attackers to cause a denial of service (printing failure) by deploying a printing device that has a Unicode character in its printing-service name.

    Published: 17 Jun 2010
    7.5
    High

    CVE-2010-1380

    Last Modified: 11 Apr 2025

    Integer overflow in the cgtexttops CUPS filter in Printing in Apple Mac OS X 10.6 before 10.6.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors related to page sizes.

    Published: 17 Jun 2010
    3.5
    Low

    CVE-2010-1381

    Last Modified: 11 Apr 2025

    The default configuration of SMB File Server in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, enables support for wide links, which allows remote authenticated users to access arbitrary files via vectors involving symbolic links. NOTE: this might overlap CVE-2010-0926.

    Published: 17 Jun 2010
    3.5
    Low

    CVE-2010-1382

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in Wiki Server in Apple Mac OS X 10.5.8, and 10.6 before 10.6.4, allows remote authenticated users to inject arbitrary web script or HTML via crafted Wiki content, related to lack of a charset field.

    Published: 17 Jun 2010
    6.8
    Medium

    CVE-2010-2314

    Last Modified: 11 Apr 2025

    PHP remote file inclusion vulnerability in nucleus/plugins/NP_Twitter.php in the NP_Twitter Plugin 0.8 and 0.9 for Nucleus, when register_globals is enabled, allows remote attackers to execute arbitrary PHP code via a URL in the DIR_PLUGINS parameter. NOTE: some of these details are obtained from third party information.

    Published: 17 Jun 2010
    7.5
    High

    CVE-2010-2317

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in WmsCms 2.0 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) search, (2) sbr, (3) pid, (4) sbl, and (5) FilePath parameters to default.asp; and the (6) sbr, (7) pr, and (8) psPrice parameters to printpage.asp.

    Published: 17 Jun 2010
    9.3
    Critical

    CVE-2008-4389

    Last Modified: 11 Apr 2025

    Symantec AppStream 5.2.x and Symantec Workspace Streaming (SWS) 6.1.x before 6.1 SP4 do not properly perform authentication, which allows remote Workspace Streaming servers and man-in-the-middle attackers to download arbitrary executable files onto a client system, and execute these files, via unspecified vectors.

    Published: 17 Jun 2010
    6.8
    Medium

    CVE-2010-2313

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in index.php in Anodyne Productions SIMM Management System (SMS) 2.6.10, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter to index.php. NOTE: some of these details are obtained from third party information.

    Published: 17 Jun 2010
    6.8
    Medium

    CVE-2010-0542

    Last Modified: 11 Apr 2025

    The _WriteProlog function in texttops.c in texttops in the Text Filter subsystem in CUPS before 1.4.4 does not check the return values of certain calloc calls, which allows remote attackers to cause a denial of service (NULL pointer dereference or heap memory corruption) or possibly execute arbitrary code via a crafted file.

    Published: 17 Jun 2010
    2.1
    Low

    CVE-2010-2226

    Last Modified: 11 Apr 2025

    The xfs_swapext function in fs/xfs/xfs_dfrag.c in the Linux kernel before 2.6.35 does not properly check the file descriptors passed to the SWAPEXT ioctl, which allows local users to leverage write access and obtain read access by swapping one file into another file.

    Published: 17 Jun 2010
    6
    Medium

    CVE-2010-1622

    Last Modified: 11 Apr 2025

    SpringSource Spring Framework 2.5.x before 2.5.6.SEC02, 2.5.7 before 2.5.7.SR01, and 3.0.x before 3.0.3 allows remote attackers to execute arbitrary code via an HTTP request containing class.classLoader.URLs[0]=jar: followed by a URL of a crafted .jar file.

    Published: 17 Jun 2010
    9.3
    Critical

    CVE-2010-1932

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in XnView 1.97.4 and possibly earlier allows remote attackers to execute arbitrary code via a MultiBitMap (MBM) file with a Paint Data Section that contains a malformed Encoding field.

    Published: 16 Jun 2010
    4.6
    Medium

    CVE-2010-2071

    Last Modified: 11 Apr 2025

    The btrfs_xattr_set_acl function in fs/btrfs/acl.c in btrfs in the Linux kernel 2.6.34 and earlier does not check file ownership before setting an ACL, which allows local users to bypass file permissions by setting arbitrary ACLs, as demonstrated using setfacl.

    Published: 16 Jun 2010
    3.6
    Low

    CVE-2010-2072

    Last Modified: 11 Apr 2025

    Pyftpd 0.8.4 creates log files with predictable names in a temporary directory, which allows local users to cause a denial of service and obtain sensitive information.

    Published: 16 Jun 2010
    9.3
    Critical

    CVE-2010-2305

    Last Modified: 11 Apr 2025

    Buffer overflow in an ActiveX control in SSHelper.dll for Symantec Sygate Personal Firewall 5.6 build 2808 allows remote attackers to execute arbitrary code via a long third argument to the SetRegString method.

    Published: 16 Jun 2010
    5
    Medium

    CVE-2010-2307

    Last Modified: 11 Apr 2025

    Multiple directory traversal vulnerabilities in the web server for Motorola SURFBoard cable modem SBV6120E running firmware SBV6X2X-1.0.0.5-SCM-02-SHPC allow remote attackers to read arbitrary files via (1) "//" (multiple leading slash), (2) ../ (dot dot) sequences, and encoded dot dot sequences in a URL request.

    Published: 16 Jun 2010
    7.2
    High

    CVE-2010-2308

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the filter driver (savonaccessfilter.sys) in Sophos Anti-Virus before 7.6.20 allows local users to gain privileges via crafted arguments to the NtQueryAttributesFile function.

    Published: 16 Jun 2010
    7.5
    High

    CVE-2010-2309

    Last Modified: 11 Apr 2025

    Buffer overflow in the web server for EvoLogical EvoCam 3.6.6 and 3.6.7 allows remote attackers to execute arbitrary code via a long GET request.

    Published: 16 Jun 2010
    5
    Medium

    CVE-2010-2310

    Last Modified: 11 Apr 2025

    SolarWinds TFTP Server 10.4.0.13 allows remote attackers to cause a denial of service (crash) via a long write request.

    Published: 16 Jun 2010
    9.3
    Critical

    CVE-2010-2311

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in Power Tab Editor 1.7 build 80 allows user-assisted remote attackers to execute arbitrary code via a .ptb file with a long font name.

    Published: 16 Jun 2010
    7.5
    High

    CVE-2010-2312

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in index.php in HauntmAx Haunted House Directory Listing CMS allows remote attackers to execute arbitrary SQL commands via the state parameter in a listings action.

    Published: 16 Jun 2010
    7.5
    High

    CVE-2010-2073

    Last Modified: 11 Apr 2025

    auth_db_config.py in Pyftpd 0.8.4 contains hard-coded usernames and passwords for the (1) test, (2) user, and (3) roxon accounts, which allows remote attackers to read arbitrary files from the FTP server.

    Published: 16 Jun 2010