7.5
    High

    CVE-2010-4360

    Last Modified: 27 Nov 2010

    Multiple SQL injection vulnerabilities in index.php in Jurpopage 0.2.0 allow remote attackers to execute arbitrary SQL commands via the (1) note and (2) pg parameters, different vectors than CVE-2010-4359. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Sudden_death
    Published:1 Dec 2010
    7.5
    High

    CVE-2010-4359

    Last Modified: 27 Nov 2010

    SQL injection vulnerability in index.php in Jurpopage 0.2.0 allows remote attackers to execute arbitrary SQL commands via the category parameter.

    Source:Sudden_death
    Published:1 Dec 2010
    7.5
    High

    CVE-2010-4357

    Last Modified: 17 Apr 2015

    SQL injection vulnerability in comments.php in SiteEngine 7.1 allows remote attackers to execute arbitrary SQL commands via the module parameter.

    Source:Beach
    Published:1 Dec 2010
    7.5
    High

    CVE-2010-4356

    Last Modified: 28 Nov 2010

    SQL injection vulnerability in news_default.asp in Site2Nite Big Truck Broker allows remote attackers to execute arbitrary SQL commands via the txtSiteId parameter.

    Source:underground-stockholm.com
    Published:1 Dec 2010
    5.1
    Medium

    CVE-2010-4350

    Last Modified: 8 Jun 2018

    Directory traversal vulnerability in admin/upgrade_unattended.php in MantisBT before 1.2.4 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the db_type parameter, related to an unsafe call by MantisBT to a function in the ADOdb Library for PHP.

    Source:LiquidWorm
    Published:3 Jan 2011
    5
    Medium

    CVE-2010-4349

    Last Modified: 8 Jun 2018

    admin/upgrade_unattended.php in MantisBT before 1.2.4 allows remote attackers to obtain sensitive information via an invalid db_type parameter, which reveals the installation path in an error message, related to an unsafe call by MantisBT to a function in the ADOdb Library for PHP.

    Source:LiquidWorm
    Published:3 Jan 2011
    4.3
    Medium

    CVE-2010-4348

    Last Modified: 8 Jun 2018

    Cross-site scripting (XSS) vulnerability in admin/upgrade_unattended.php in MantisBT before 1.2.4 allows remote attackers to inject arbitrary web script or HTML via the db_type parameter, related to an unsafe call by MantisBT to a function in the ADOdb Library for PHP.

    Source:LiquidWorm
    Published:3 Jan 2011
    6.9
    Medium

    CVE-2010-4347

    Last Modified: 10 Oct 2016

    The ACPI subsystem in the Linux kernel before 2.6.36.2 uses 0222 permissions for the debugfs custom_method file, which allows local users to gain privileges by placing a custom ACPI method in the ACPI interpreter tables, related to the acpi_debugfs_init function in drivers/acpi/debugfs.c.

    Source:Jon Oberheide
    Published:13 Nov 2010
    7.8
    High

    CVE-2010-4345

    Last Modified: 6 Mar 2011

    Exim 4.72 and earlier allows local users to gain privileges by leveraging the ability of the exim user account to specify an alternate configuration file with a directive that contains arbitrary commands, as demonstrated by the spool_directory directive.

    Source:Metasploit
    Published:7 Dec 2010
    9.8
    Critical

    CVE-2010-4344

    Last Modified: 4 Dec 2016

    Heap-based buffer overflow in the string_vformat function in string.c in Exim before 4.70 allows remote attackers to execute arbitrary code via an SMTP session that includes two MAIL commands in conjunction with a large message containing crafted headers, leading to improper rejection logging.

    Source:kingcope
    Published:7 Dec 2010
    7.5
    High

    CVE-2010-4335

    Last Modified: 22 Nov 2017

    The _validatePost function in libs/controller/components/security.php in CakePHP 1.3.x through 1.3.5 and 1.2.8 allows remote attackers to modify the internal Cake cache and execute arbitrary code via a crafted data[_Token][fields] value that is processed by the unserialize function, as demonstrated by modifying the file_map cache to execute arbitrary local files.

    Source:felix
    Published:14 Jan 2011
    7.5
    High

    CVE-2010-4333

    Last Modified: 15 Dec 2010

    Pointter PHP Micro-Blogging Social Network 1.8 allows remote attackers to bypass authentication and obtain administrative privileges via arbitrary values of the auser and apass cookies.

    Source:Mark Stanislav
    Published:22 Dec 2010
    7.5
    High

    CVE-2010-4332

    Last Modified: 15 Dec 2010

    Pointter PHP Content Management System 1.0 allows remote attackers to bypass authentication and obtain administrative privileges via arbitrary values of the auser and apass cookies.

    Source:Mark Stanislav
    Published:22 Dec 2010
    4.3
    Medium

    CVE-2010-4331

    Last Modified: 16 Jan 2011

    Multiple cross-site scripting (XSS) vulnerabilities in Seo Panel 2.2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) default_news or (2) sponsors cookies, which are not properly handled by (a) controllers/index.ctrl.php or (b) controllers/settings.ctrl.php.

    Source:Mark Stanislav
    Published:20 Jan 2011
    6.8
    Medium

    CVE-2010-4330

    Last Modified: 5 Dec 2010

    Directory traversal vulnerability in includes/controller.php in Pulse CMS Basic before 1.2.9 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the p parameter to index.php.

    Source:Mark Stanislav
    Published:7 Dec 2010
    7.5
    High

    CVE-2010-4328

    Last Modified: 18 Feb 2011

    Multiple stack-based buffer overflows in opt/novell/iprint/bin/ipsmd in Novell iPrint for Linux Open Enterprise Server 2 SP2 and SP3 allow remote attackers to execute arbitrary code via unspecified LPR opcodes.

    Source:Francis Provencher
    Published:18 Feb 2011
    7.5
    High

    CVE-2010-4323

    Last Modified: 25 Jan 2018

    Heap-based buffer overflow in novell-tftp.exe in Novell ZENworks Configuration Manager (ZCM) 10.3.1, 10.3.2, and 11.0, and earlier versions, allows remote attackers to execute arbitrary code via a long TFTP request.

    Source:Francis Provencher
    Published:18 Feb 2011
    9.3
    Critical

    CVE-2010-4321

    Last Modified: 22 Nov 2017

    Stack-based buffer overflow in an ActiveX control in ienipp.ocx in Novell iPrint Client 5.52 allows remote attackers to execute arbitrary code via a long argument to (1) the GetDriverSettings2 method, as reachable by (2) the GetDriverSettings method.

    Source:Dr_IDE
    Published:30 Dec 2010
    6
    Medium

    CVE-2010-4313

    Last Modified: 30 Nov 2010

    Unrestricted file upload vulnerability in fileman_file_upload.php in Orbis CMS 1.0.2 allows remote authenticated users to execute arbitrary code by uploading a .php file, and then accessing it via a direct request to the file in uploads/.

    Source:Mark Stanislav
    Published:2 Dec 2010
    5
    Medium

    CVE-2010-4301

    Last Modified: 11 Jan 2011

    epan/dissectors/packet-zbee-zcl.c in the ZigBee ZCL dissector in Wireshark 1.4.0 through 1.4.1 allows remote attackers to cause a denial of service (infinite loop) via a crafted ZCL packet, related to Discover Attributes.

    Source:Fred Fierling
    Published:18 Nov 2010
    7.5
    High

    CVE-2010-4300

    Last Modified: 12 Nov 2016

    Heap-based buffer overflow in the dissect_ldss_transfer function (epan/dissectors/packet-ldss.c) in the LDSS dissector in Wireshark 1.2.0 through 1.2.12 and 1.4.0 through 1.4.1 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via an LDSS packet with a long digest line that triggers memory corruption.

    Source:Nephi Johnson
    Published:18 Nov 2010
    7.5
    High

    CVE-2010-4298

    Last Modified: 24 Nov 2010

    SQL injection vulnerability in the download module in Free Simple Software 1.0 allows remote attackers to execute arbitrary SQL commands via the downloads_id parameter in a download_now action to index.php.

    Source:Mark Stanislav
    Published:26 Nov 2010
    7.2
    High

    CVE-2010-4297

    Last Modified: 9 Dec 2010

    The VMware Tools update functionality in VMware Workstation 6.5.x before 6.5.5 build 328052 and 7.x before 7.1.2 build 301548; VMware Player 2.5.x before 2.5.5 build 328052 and 3.1.x before 3.1.2 build 301548; VMware Server 2.0.2; VMware Fusion 2.x before 2.0.8 build 328035 and 3.1.x before 3.1.2 build 332101; VMware ESXi 3.5, 4.0, and 4.1; and VMware ESX 3.0.3, 3.5, 4.0, and 4.1 allows host OS users to gain privileges on the guest OS via unspecified vectors, related to a "command injection" issue.

    Source:Nahuel Grisolia
    Published:6 Dec 2010
    7.5
    High

    CVE-2010-4283

    Last Modified: 12 Jul 2015

    PHP remote file inclusion vulnerability in extras/pandora_diag.php in Pandora FMS before 3.1.1 allows remote attackers to execute arbitrary PHP code via a URL in the argv[1] parameter.

    Source:Juan Galiana Lara
    Published:2 Dec 2010
    7.5
    High

    CVE-2010-4282

    Last Modified: 12 Jul 2015

    Multiple directory traversal vulnerabilities in Pandora FMS before 3.1.1 allow remote attackers to include and execute arbitrary local files via (1) the page parameter to ajax.php or (2) the id parameter to general/pandora_help.php, and allow remote attackers to include and execute, create, modify, or delete arbitrary local files via (3) the layout parameter to operation/agentes/networkmap.php.

    Source:Juan Galiana Lara
    Published:2 Dec 2010
    7.5
    High

    CVE-2010-4281

    Last Modified: 12 Jul 2015

    Incomplete blacklist vulnerability in the safe_url_extraclean function in ajax.php in Pandora FMS before 3.1.1 allows remote attackers to execute arbitrary PHP code by using a page parameter containing a UNC share pathname, which bypasses the check for the : (colon) character.

    Source:Juan Galiana Lara
    Published:2 Dec 2010
    7.5
    High

    CVE-2010-4280

    Last Modified: 12 Jul 2015

    Multiple SQL injection vulnerabilities in Pandora FMS before 3.1.1 allow remote authenticated users to execute arbitrary SQL commands via (1) the id_group parameter in an operation/agentes/ver_agente action to ajax.php or (2) the group_id parameter in an operation/agentes/estado_agente action to index.php, related to operation/agentes/estado_agente.php.

    Source:Juan Galiana Lara
    Published:2 Dec 2010
    10
    Critical

    CVE-2010-4279

    Last Modified: 27 Oct 2016

    The default configuration of Pandora FMS 3.1 and earlier specifies an empty string for the loginhash_pwd field, which allows remote attackers to bypass authentication by sending a request to index.php with "admin" in the loginhash_user parameter, in conjunction with the md5 hash of "admin" in the loginhash_data parameter.

    Source:Metasploit
    Published:2 Dec 2010
    9
    Critical

    CVE-2010-4278

    Last Modified: 12 Jul 2015

    operation/agentes/networkmap.php in Pandora FMS before 3.1.1 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the layout parameter in an operation/agentes/networkmap action to index.php.

    Source:Juan Galiana Lara
    Published:2 Dec 2010
    4.3
    Medium

    CVE-2010-4276

    Last Modified: 3 Nov 2014

    Cross-site scripting (XSS) vulnerability in the lz_tracking_set_sessid function in templates/jscript/jstrack.tpl in LiveZilla 3.2.0.2 allows remote attackers to inject arbitrary web script or HTML via the livezilla parameter in a track action to server.php.

    Source:Ulisses Castro
    Published:30 Dec 2010
    3.5
    Low

    CVE-2010-4275

    Last Modified: 30 Oct 2014

    Multiple cross-site scripting (XSS) vulnerabilities in Radius Manager 3.8.0 allow remote authenticated administrators to inject arbitrary web script or HTML via the (1) name or (2) descr parameter in an (a) update_usergroup or a (b) store_nas action to admin.php.

    Source:Rodrigo Rubira Branco
    Published:22 Dec 2010
    7.5
    High

    CVE-2010-4273

    Last Modified: 27 Oct 2010

    SQL injection vulnerability in imoveis.php in DescargarVista ACC IMoveis 1.1 allows remote attackers to execute arbitrary SQL commands via the id parameter.

    Source:EraGoN
    Published:16 Nov 2010
    7.5
    High

    CVE-2010-4272

    Last Modified: 20 Dec 2016

    SQL injection vulnerability in the Pulse Infotech Sponsor Wall (com_sponsorwall) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php.

    Source:FL0RiX
    Published:16 Nov 2010
    7.5
    High

    CVE-2010-4269

    Last Modified: 2 Jan 2017

    SQL injection vulnerability in managechat.php in Collabtive 0.65 allows remote attackers to execute arbitrary SQL commands via the chatstart[USERTOID] cookie in a pull action.

    Source:Anatolia Security
    Published:16 Nov 2010
    7.5
    High

    CVE-2010-4268

    Last Modified: 19 Dec 2016

    SQL injection vulnerability in the Pulse Infotech Flip Wall (com_flipwall) component 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php.

    Source:FL0RiX
    Published:16 Nov 2010
    6.8
    Medium

    CVE-2010-4259

    Last Modified: 14 Dec 2010

    Stack-based buffer overflow in FontForge 20100501 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long CHARSET_REGISTRY header in a BDF font file.

    Source:Ulrik Persson
    Published:1 Dec 2010
    6.2
    Medium

    CVE-2010-4258

    Last Modified: 6 Dec 2016

    The do_exit function in kernel/exit.c in the Linux kernel before 2.6.36.2 does not properly handle a KERNEL_DS get_fs value, which allows local users to bypass intended access_ok restrictions, overwrite arbitrary kernel memory locations, and gain privileges by leveraging a (1) BUG, (2) NULL pointer dereference, or (3) page fault, as demonstrated by vectors involving the clear_child_tid feature and the splice system call.

    Source:Dan Rosenberg
    Published:3 Dec 2010
    7.5
    High

    CVE-2010-4254

    Last Modified: 2 Mar 2011

    Mono, when Moonlight before 2.3.0.1 or 2.99.x before 2.99.0.10 is used, does not properly validate arguments to generic methods, which allows remote attackers to bypass generic constraints, and possibly execute arbitrary code, via a crafted method call.

    Source:Chris Howie
    Published:3 Dec 2010
    4.9
    Medium

    CVE-2010-4250

    Last Modified: 6 Sept 2016

    Memory leak in the inotify_init1 function in fs/notify/inotify/inotify_user.c in the Linux kernel before 2.6.37 allows local users to cause a denial of service (memory consumption) via vectors involving failed attempts to create files.

    Source:Vegard Nossum
    Published:24 Nov 2010
    4.9
    Medium

    CVE-2010-4249

    Last Modified: 27 Nov 2010

    The wait_for_unix_gc function in net/unix/garbage.c in the Linux kernel before 2.6.37-rc3-next-20101125 does not properly select times for garbage collection of inflight sockets, which allows local users to cause a denial of service (system hang) via crafted use of the socketpair and sendmsg system calls for SOCK_SEQPACKET sockets.

    Source:Key Night
    Published:24 Nov 2010
    4.3
    Medium

    CVE-2010-4246

    Last Modified: 17 Oct 2014

    Multiple cross-site scripting (XSS) vulnerabilities in graph.php in pfSense 1.2.3 and 2 beta 4 allow remote attackers to inject arbitrary web script or HTML via the (1) ifnum or (2) ifname parameter, a different vulnerability than CVE-2008-1182.

    Source:dave b
    Published:7 Dec 2010
    4.9
    Medium

    CVE-2010-4243

    Last Modified: 26 Nov 2010

    fs/exec.c in the Linux kernel before 2.6.37 does not enable the OOM Killer to assess use of stack memory by arrays representing the (1) arguments and (2) environment, which allows local users to cause a denial of service (memory consumption) via a crafted exec system call, aka an "OOM dodging issue," a related issue to CVE-2010-3858.

    Source:Roland McGrath
    Published:13 Aug 2010
    6.9
    Medium

    CVE-2010-4236

    Last Modified: 9 Nov 2010

    Untrusted search path vulnerability in estaskwrapper in IBM OmniFind Enterprise Edition before 9.1 allows local users to gain privileges via an ES_LIBRARY_PATH environment variable and a modified PATH environment variable, which is used during execution of the estasklight program, a different vulnerability than CVE-2010-3895.

    Source:Fatih Kilic
    Published:12 Nov 2010
    7.8
    High

    CVE-2010-4234

    Last Modified: 13 Nov 2010

    The web server on the Camtron CMNC-200 Full HD IP Camera and TecVoz CMNC-200 Megapixel IP Camera with firmware 1.102A-008 allows remote attackers to cause a denial of service (device reboot) via a large number of requests in a short time interval.

    Source:Trustwave's SpiderLabs
    Published:16 Nov 2010
    10
    Critical

    CVE-2010-4233

    Last Modified: 13 Nov 2010

    The Linux installation on the Camtron CMNC-200 Full HD IP Camera and TecVoz CMNC-200 Megapixel IP Camera with firmware 1.102A-008 has a default password of m for the root account, and a default password of merlin for the mg3500 account, which makes it easier for remote attackers to obtain access via the TELNET interface.

    Source:Trustwave's SpiderLabs
    Published:16 Nov 2010
    10
    Critical

    CVE-2010-4232

    Last Modified: 13 Nov 2010

    The web-based administration interface on the Camtron CMNC-200 Full HD IP Camera and TecVoz CMNC-200 Megapixel IP Camera with firmware 1.102A-008 allows remote attackers to bypass authentication via a // (slash slash) at the beginning of a URI, as demonstrated by the //system.html URI.

    Source:Trustwave's SpiderLabs
    Published:16 Nov 2010
    7.8
    High

    CVE-2010-4231

    Last Modified: 13 Nov 2010

    Directory traversal vulnerability in the web-based administration interface on the Camtron CMNC-200 Full HD IP Camera and TecVoz CMNC-200 Megapixel IP Camera with firmware 1.102A-008 allows remote attackers to read arbitrary files via a .. (dot dot) in the URI.

    Source:Trustwave's SpiderLabs
    Published:16 Nov 2010
    9.3
    Critical

    CVE-2010-4230

    Last Modified: 13 Nov 2010

    Stack-based buffer overflow in a certain ActiveX control for the Camtron CMNC-200 Full HD IP Camera and TecVoz CMNC-200 Megapixel IP Camera with firmware 1.102A-008 allows remote attackers to execute arbitrary code via a long string in the first argument to the connect method.

    Source:Trustwave's SpiderLabs
    Published:16 Nov 2010
    9
    Critical

    CVE-2010-4228

    Last Modified: 21 Mar 2011

    Stack-based buffer overflow in NWFTPD.NLM before 5.10.02 in the FTP server in Novell NetWare allows remote authenticated users to execute arbitrary code or cause a denial of service (abend) via a long DELE command, a different vulnerability than CVE-2010-0625.4.

    Source:Francis Provencher
    Published:22 Mar 2011
    10
    Critical

    CVE-2010-4227

    Last Modified: 24 Feb 2011

    The xdrDecodeString function in XNFS.NLM in Novell Netware 6.5 before SP8 allows remote attackers to cause a denial of service (abend) or execute arbitrary code via a crafted, signed value in a NFS RPC request to port UDP 1234, leading to a stack-based buffer overflow.

    Source:Francis Provencher
    Published:25 Feb 2011