6.8
    Medium

    CVE-2010-4638

    Last Modified: 19 Dec 2016

    SQL injection vulnerability in the submitSurvey function in controller.php in JQuarks4s (com_jquarks4s) component 1.0.0 for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the q parameter in a submitSurvey action to index.php.

    Source:Salvatore Fresta
    Published:30 Dec 2010
    7.5
    High

    CVE-2010-4636

    Last Modified: 2 Nov 2010

    SQL injection vulnerability in detail.asp in Site2Nite Business e-Listings allows remote attackers to execute arbitrary SQL commands via the ID parameter.

    Source:L0rd CrusAd3r
    Published:30 Dec 2010
    7.5
    High

    CVE-2010-4635

    Last Modified: 2 Nov 2010

    SQL injection vulnerability in detail.asp in Site2Nite Vacation Rental (VRBO) Listings allows remote attackers to execute arbitrary SQL commands via the ID parameter.

    Source:L0rd CrusAd3r
    Published:30 Dec 2010
    7.5
    High

    CVE-2010-4633

    Last Modified: 3 Nov 2010

    SQL injection vulnerability in cart.php in digiSHOP 2.0.2 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vulnerability than CVE-2005-4614.1.

    Source:Silic0n
    Published:30 Dec 2010
    7.5
    High

    CVE-2010-4632

    Last Modified: 27 Oct 2016

    Multiple SQL injection vulnerabilities in ASPilot Pilot Cart 7.3 allow remote attackers to execute arbitrary SQL commands via the (1) article parameter to kb.asp, (2) specific parameter to cart.asp, (3) countrycode parameter to contact.asp, and the (4) srch parameter to search.asp. NOTE: the article parameter to pilot.asp is already covered by CVE-2008-2688.

    Source:Ariko-Security
    Published:30 Dec 2010
    4.3
    Medium

    CVE-2010-4631

    Last Modified: 27 Oct 2016

    Multiple cross-site scripting (XSS) vulnerabilities in ASPilot Pilot Cart 7.3 allow remote attackers to inject arbitrary web script or HTML via the (1) countrycode parameter to contact.asp, USERNAME parameter to (2) gateway.asp and (3) cart.asp, and the specific parameter to (4) quote.asp and (5) buyitnow.

    Source:Ariko-Security
    Published:30 Dec 2010
    7.5
    High

    CVE-2010-4619

    Last Modified: 18 Dec 2010

    SQL injection vulnerability in profil.php in Mafya Oyun Scrpti (aka Mafia Game Script) allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:DeadLy DeMon
    Published:29 Dec 2010
    6.8
    Medium

    CVE-2010-4617

    Last Modified: 19 Dec 2016

    Directory traversal vulnerability in the JotLoader (com_jotloader) component 2.2.1 for Joomla! allows remote attackers to read arbitrary files via directory traversal sequences in the section parameter to index.php.

    Source:v3n0m
    Published:29 Dec 2010
    7.5
    High

    CVE-2010-4615

    Last Modified: 19 Dec 2010

    Multiple SQL injection vulnerabilities in Oto Galeri Sistemi 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) arac parameter to carsdetail.asp and the (2) marka parameter to twohandscars.asp.

    Source:DeadLy DeMon
    Published:29 Dec 2010
    7.5
    High

    CVE-2010-4614

    Last Modified: 18 Dec 2010

    SQL injection vulnerability in item.php in Ero Auktion 2010 allows remote attackers to execute arbitrary SQL commands via the id parameter, a different vector than CVE-2010-0723.

    Source:DeadLy DeMon
    Published:29 Dec 2010
    7.5
    High

    CVE-2010-4613

    Last Modified: 21 Dec 2010

    Multiple directory traversal vulnerabilities in Hycus CMS 1.0.3 allow remote attackers to include and execute arbitrary local files via a .. (dot dot) in the site parameter to (1) index.php and (2) admin.php.

    Source:High-Tech Bridge SA
    Published:29 Dec 2010
    6.8
    Medium

    CVE-2010-4612

    Last Modified: 21 Dec 2010

    Multiple SQL injection vulnerabilities in index.php in Hycus CMS 1.0.3, when magic_quotes_gpc is disabled, allow remote attackers to execute arbitrary SQL commands via the (1) user_name and (2) usr_email parameters to user/1/hregister.html, (3) usr_email parameter to user/1/hlogin.html, (4) useremail parameter to user/1/forgotpass.html, and the (5) q parameter to search/1.html. NOTE: some of these details are obtained from third party information.

    Source:High-Tech Bridge SA
    Published:29 Dec 2010
    5
    Medium

    CVE-2010-4611

    Last Modified: 24 Dec 2010

    Html-edit CMS 3.1.8 allows remote attackers to obtain sensitive information via a direct request to (1) pages.php and (2) menu.php in includes/core_files and (3) extensions/login/frontend/pages/antihacker.php, which reveals the installation path in an error message.

    Source:High-Tech Bridge SA
    Published:29 Dec 2010
    4.3
    Medium

    CVE-2010-4610

    Last Modified: 24 Dec 2010

    Cross-site scripting (XSS) vulnerability in index.php in Html-edit CMS 3.1.8 allows remote attackers to inject arbitrary web script or HTML via the error parameter.

    Source:High-Tech Bridge SA
    Published:29 Dec 2010
    7.5
    High

    CVE-2010-4609

    Last Modified: 24 Dec 2010

    SQL injection vulnerability in index.php in Html-edit CMS 3.1.8 allows remote attackers to execute arbitrary SQL commands via the nuser parameter in a registrate action.

    Source:High-Tech Bridge SA
    Published:29 Dec 2010
    5
    Medium

    CVE-2010-4608

    Last Modified: 21 Dec 2010

    Habari 0.6.5 allows remote attackers to obtain sensitive information via a direct request to (1) header.php and (2) comments_items.php in system/admin/, which reveals the installation path in an error message.

    Source:High-Tech Bridge SA
    Published:29 Dec 2010
    2.6
    Low

    CVE-2010-4607

    Last Modified: 21 Dec 2010

    Multiple cross-site scripting (XSS) vulnerabilities in Habari 0.6.5, when register_globals is enabled, allow remote attackers to inject arbitrary web script or HTML via the (1) additem_form parameter to system/admin/dash_additem.php and the (2) status_data[] parameter to system/admin/dash_status.php. NOTE: some of these details are obtained from third party information.

    Source:High-Tech Bridge SA
    Published:29 Dec 2010
    7.2
    High

    CVE-2010-4604

    Last Modified: 15 Dec 2010

    Stack-based buffer overflow in the GeneratePassword function in dsmtca (aka the Trusted Communications Agent or TCA) in the backup-archive client in IBM Tivoli Storage Manager (TSM) 5.3.x before 5.3.6.10, 5.4.x before 5.4.3.4, 5.5.x before 5.5.2.10, and 6.1.x before 6.1.3.1 on Unix and Linux allows local users to gain privileges by specifying a long LANG environment variable, and then sending a request over a pipe.

    Source:Kryptos Logic
    Published:29 Dec 2010
    5
    Medium

    CVE-2010-4598

    Last Modified: 31 Dec 2010

    Directory traversal vulnerability in Ecava IntegraXor 3.6.4000.0 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the file_name parameter in an open request.

    Source:Luigi Auriemma
    Published:23 Dec 2010
    10
    Critical

    CVE-2010-4597

    Last Modified: 20 Dec 2010

    Stack-based buffer overflow in the save method in the IntegraXor.Project ActiveX control in igcomm.dll in Ecava IntegraXor Human-Machine Interface (HMI) before 3.5.3900.10 allows remote attackers to execute arbitrary code via a long string in the second argument.

    Source:Jeremy Brown
    Published:23 Dec 2010
    9.3
    Critical

    CVE-2010-4588

    Last Modified: 27 Oct 2016

    The WBEMSingleView.ocx ActiveX control 1.50.1131.0 in Microsoft WMI Administrative Tools 1.1 and earlier allows remote attackers to execute arbitrary code via a crafted argument to the ReleaseContext method, a different vector than CVE-2010-3973, possibly an untrusted pointer dereference.

    Source:WooYun
    Published:23 Dec 2010
    9.3
    Critical

    CVE-2010-4566

    Last Modified: 6 Mar 2011

    The web authentication form in the NT4 authentication component in Citrix Access Gateway Enterprise Edition 9.2-49.8 and earlier, and the NTLM authentication component in Access Gateway Standard and Advanced Editions before Access Gateway 5.0, allows attackers to execute arbitrary commands via shell metacharacters in the password field.

    Source:Metasploit
    Published:14 Jan 2011
    10
    Critical

    CVE-2010-4557

    Last Modified: 15 Dec 2010

    Buffer overflow in the lm_tcp service in Invensys Wonderware InBatch 8.1 and 9.0, as used in Invensys Foxboro I/A Series Batch 8.1 and possibly other products, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted request to port 9001.

    Source:Luigi Auriemma
    Published:17 Dec 2010
    7.5
    High

    CVE-2010-4543

    Last Modified: 5 Nov 2014

    Heap-based buffer overflow in the read_channel_data function in file-psp.c in the Paint Shop Pro (PSP) plugin in GIMP 2.6.11 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a PSP_COMP_RLE (aka RLE compression) image file that begins a long run count at the end of the image. NOTE: some of these details are obtained from third party information.

    Source:non customers
    Published:31 Dec 2010
    9.3
    Critical

    CVE-2010-4538

    Last Modified: 12 Nov 2016

    Buffer overflow in the sect_enttec_dmx_da function in epan/dissectors/packet-enttec.c in Wireshark 1.4.2 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted ENTTEC DMX packet with Run Length Encoding (RLE) compression.

    Source:non-customers crew
    Published:31 Dec 2010
    4.3
    Medium

    CVE-2010-4518

    Last Modified: 27 Oct 2014

    Cross-site scripting (XSS) vulnerability in wp-safe-search/wp-safe-search-jx.php in the Safe Search plugin 0.7 for WordPress allows remote attackers to inject arbitrary web script or HTML via the v1 parameter.

    Source:John Leitch
    Published:9 Dec 2010
    6.8
    Medium

    CVE-2010-4517

    Last Modified: 19 Dec 2016

    SQL injection vulnerability in the JExtensions JE Auto (com_jeauto) component 1.0 for Joomla!, when magic_quotes_gpc is disabled, allows remote attackers to execute arbitrary SQL commands via the char parameter in an item action to index.php.

    Source:Salvatore Fresta
    Published:9 Dec 2010
    4.3
    Medium

    CVE-2010-4514

    Last Modified: 23 Oct 2014

    Cross-site scripting (XSS) vulnerability in Install/InstallWizard.aspx in DotNetNuke 5.05.01 and 5.06.00 allows remote attackers to inject arbitrary web script or HTML via the __VIEWSTATE parameter. NOTE: some of these details are obtained from third party information.

    Source:Richard Brain
    Published:9 Dec 2010
    4.3
    Medium

    CVE-2010-4513

    Last Modified: 26 Oct 2014

    Multiple cross-site scripting (XSS) vulnerabilities in Zimplit CMS 3.0, and possibly earlier, allow remote attackers to inject arbitrary web script or HTML via the (1) file parameter in a load action to zimplit.php and (2) client parameter to English_manual_version_2.php.

    Source:High-Tech Bridge SA
    Published:9 Dec 2010
    9.3
    Critical

    CVE-2010-4507

    Last Modified: 12 Dec 2010

    Multiple cross-site request forgery (CSRF) vulnerabilities on the iSpot 2.0.0.0 R1679, and the ClearSpot 2.0.0.0 R1512 and R1786, with firmware 1.9.9.4 allow remote attackers to hijack the authentication of administrators for requests that (1) execute arbitrary commands via the cmd parameter in an act_cmd_result action to webmain.cgi, (2) enable remote management via an enable_remote_access act_network_set action to webmain.cgi, (3) enable the TELNET service via an ENABLE_TELNET act_set_wimax_etc_config action to webmain.cgi, (4) enable TELNET sessions via a certain act_network_set action to webmain.cgi, or (5) read arbitrary files via the FILE_PATH parameter in an act_file_download action to upgrademain.cgi.

    Source:Trustwave's SpiderLabs
    Published:30 Dec 2010
    7.5
    High

    CVE-2010-4503

    Last Modified: 26 Oct 2014

    SQL injection vulnerability in indexlight.php in Aigaion 1.3.4 allows remote attackers to execute arbitrary SQL commands via the ID parameter in an export action.

    Source:KnocKout
    Published:8 Dec 2010
    7.2
    High

    CVE-2010-4502

    Last Modified: 28 Nov 2010

    Integer overflow in KmxSbx.sys 6.2.0.22 in CA Internet Security Suite Plus 2010 allows local users to cause a denial of service (pool corruption) and execute arbitrary code via crafted arguments to the 0x88000080 IOCTL, which triggers a buffer overflow.

    Source:Nikita Tarakanov
    Published:8 Dec 2010
    4.3
    Medium

    CVE-2010-4480

    Last Modified: 19 Dec 2016

    error.php in PhpMyAdmin 3.3.8.1, and other versions before 3.4.0-beta1, allows remote attackers to conduct cross-site scripting (XSS) attacks via a crafted BBcode tag containing "@" characters, as demonstrated using "[a@url@page]".

    Source:emgent white_sheep & scox
    Published:8 Dec 2010
    5
    Medium

    CVE-2010-4476

    Last Modified: 20 Nov 2014

    The Double.parseDouble method in Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier, 5.0 Update 27 and earlier, and 1.4.2_29 and earlier, as used in OpenJDK, Apache, JBossweb, and other products, allows remote attackers to cause a denial of service via a crafted string that triggers an infinite loop of estimations during conversion to a double-precision binary floating-point number, as demonstrated using 2.2250738585072012e-308.

    Source:Konstantin Preisser
    Published:1 Feb 2011
    10
    Critical

    CVE-2010-4452

    Last Modified: 17 Mar 2011

    Unspecified vulnerability in the Deployment component in Java Runtime Environment (JRE) in Oracle Java SE and Java for Business 6 Update 23 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and availability via unknown vectors.

    Source:Metasploit
    Published:15 Feb 2011
    5.8
    Medium

    CVE-2010-4437

    Last Modified: 11 Mar 2011

    Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 9.0, 9.1, 9.2.4, 10.0.2, 10.3.2, and 10.3.3 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Servlet Container.

    Source:Roberto Suggi Liverani
    Published:19 Jan 2011
    10
    Critical

    CVE-2010-4435

    Last Modified: 9 Feb 2011

    Unspecified vulnerability in Oracle Solaris 8, 9, and 10 allows remote attackers to affect confidentiality, integrity, and availability, related to CDE Calendar Manager Service Daemon and RPC. NOTE: the previous information was obtained from the January 2011 CPU. Oracle has not commented on claims from other software vendors that this affects other operating systems, such as HP-UX, or claims from a reliable third party that this is a buffer overflow in rpc.cmsd via long XDR-encoded ASCII strings in RPC call 10.

    Source:Rodrigo Rubira Branco
    Published:19 Jan 2011
    7.5
    High

    CVE-2010-4417

    Last Modified: 3 Dec 2017

    Unspecified vulnerability in the Services for Beehive component in Oracle Fusion Middleware 2.0.1.0, 2.0.1.1, 2.0.1.2, 2.0.1.2.1, and 2.0.1.3 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors. NOTE: the previous information was obtained from the January 2011 CPU. Oracle has not commented on claims from a reliable third party coordinator that voice-servlet/prompt-qa/Index.jspf does not properly handle null (%00) bytes in the evaluation parameter that is used in a filename, which allows attackers to create a file with an executable extension and execute arbitrary JSP code.

    Source:Metasploit
    Published:19 Jan 2011
    4.3
    Medium

    CVE-2010-4412

    Last Modified: 27 Oct 2014

    Multiple cross-site scripting (XSS) vulnerabilities in pfSense 2 beta 4 allow remote attackers to inject arbitrary web script or HTML via (1) the id parameter in an olsrd.xml action to pkg_edit.php, (2) the xml parameter to pkg.php, or the if parameter to (3) status_graph.php or (4) interfaces.php, a different vulnerability than CVE-2008-1182 and CVE-2010-4246.

    Source:dave b
    Published:7 Dec 2010
    5
    Medium

    CVE-2010-4409

    Last Modified: 10 Dec 2010

    Integer overflow in the NumberFormatter::getSymbol (aka numfmt_get_symbol) function in PHP 5.3.3 and earlier allows context-dependent attackers to cause a denial of service (application crash) via an invalid argument.

    Source:Maksymilian Arciemowicz
    Published:19 Nov 2010
    6.8
    Medium

    CVE-2010-4406

    Last Modified: 2 Dec 2010

    Directory traversal vulnerability in gallery.php in Brunetton LittlePhpGallery 1.0.2, when magic_quotes_gpc is disabled, allows remote attackers to list, include, and execute arbitrary local files via a ..// (dot dot slash slash) in the repertoire parameter.

    Source:kire bozorge khavarmian
    Published:4 Dec 2010
    5
    Medium

    CVE-2010-4401

    Last Modified: 30 Nov 2010

    languages.inc.php in DynPG CMS 4.2.0 allows remote attackers to obtain sensitive information via a direct request, which reveals the installation path in an error message.

    Source:High-Tech Bridge SA
    Published:4 Dec 2010
    7.5
    High

    CVE-2010-4400

    Last Modified: 30 Nov 2010

    SQL injection vulnerability in _rights.php in DynPG CMS 4.2.0 allows remote attackers to execute arbitrary SQL commands via the giveRights_UserId parameter.

    Source:High-Tech Bridge SA
    Published:4 Dec 2010
    4.3
    Medium

    CVE-2010-4399

    Last Modified: 30 Nov 2010

    Directory traversal vulnerability in languages.inc.php in DynPG CMS 4.1.1 and 4.2.0, when magic_quotes_gpc is disabled, allows remote attackers to read arbitrary files via a .. (dot dot) in the CHG_DYNPG_SET_LANGUAGE parameter to index.php. NOTE: some of these details are obtained from third party information.

    Source:High-Tech Bridge SA
    Published:4 Dec 2010
    7.8
    High

    CVE-2010-4398

    Last Modified: 24 Nov 2010

    Stack-based buffer overflow in the RtlQueryRegistryValues function in win32k.sys in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 allows local users to gain privileges, and bypass the User Account Control (UAC) feature, via a crafted REG_BINARY value for a SystemDefaultEUDCFont registry key, aka "Driver Improper Interaction with Windows Kernel Vulnerability."

    Source:noobpwnftw
    Published:3 Dec 2010
    9.3
    Critical

    CVE-2010-4371

    Last Modified: 6 Nov 2010

    Buffer overflow in the in_mod plugin in Winamp before 5.6 allows remote attackers to have an unspecified impact via vectors related to the comment box.

    Source:Luigi Auriemma
    Published:2 Dec 2010
    7.5
    High

    CVE-2010-4367

    Last Modified: 22 Oct 2014

    awstats.cgi in AWStats before 7.0 accepts a configdir parameter in the URL, which allows remote attackers to execute arbitrary commands via a crafted configuration file located on a (1) WebDAV server or (2) NFS server.

    Source:StenoPlasma
    Published:2 Dec 2010
    4.3
    Medium

    CVE-2010-4366

    Last Modified: 15 Nov 2010

    Multiple cross-site scripting (XSS) vulnerabilities in forum_new_topic.php in Chameleon Social Networking allow remote attackers to inject arbitrary web script or HTML via the (1) thread_title and (2) thread_description parameters in a message.

    Source:Dr-mosta
    Published:1 Dec 2010
    7.5
    High

    CVE-2010-4365

    Last Modified: 19 Dec 2016

    SQL injection vulnerability in JE Ajax Event Calendar (com_jeajaxeventcalendar) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the event_id parameter in an alleventlist_more action to index.php.

    Source:ALTBTA
    Published:1 Dec 2010
    7.5
    High

    CVE-2010-4362

    Last Modified: 29 Nov 2010

    Multiple SQL injection vulnerabilities in MicroNetsoft RV Dealer Website allow remote attackers to execute arbitrary SQL commands via the (1) selStock parameter to search.asp and the (2) orderBy parameter to showAlllistings.asp.

    Source:underground-stockholm.com
    Published:1 Dec 2010