| OSVDB ID | Disclosure Date | Title |
|
62221
Description:
(Description Provided by CVE) : The default configuration of Oracle OpenSolaris snv_77 through snv_131 allows attackers to have an unspecified impact via vectors related to using smbadm to join a Windows Active Directory domain.
|
2010-01-26
|
OpenSolaris Default Configuration smbadm Windows Active Directory Domain Joining Unspecified Issue
|
|
63324
Description:
(Description Provided by CVE) : Microsoft Internet Explorer 6 and 7 does not initialize certain data structures during execution of the createElement method, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via crafted JavaScript code, as demonstrated by setting the (1) outerHTML or (2) value property of an object returned by createElement.
|
2010-01-26
|
Microsoft IE createElement Method Crafted JavaScript NULL Dereference DoS
|
|
64400
Description:
Unknown / Incomplete
|
2010-01-26
|
Mozilla Firefox Personas Manipulation XSS
|
|
64434
Description:
ShareTronix contains a flaw that allows arbitrary HTML injection. This flaw exists because the application does not validate the 'page_title' parameter upon submission to the 'header.php' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2010-01-26
|
ShareTronix header.php page_title Parameter HTML Injection
|
|
89387
Description:
Foswiki contains a flaw that is due to the cookie URL path always containing '/'. This may allow a remote attacker to gain access to potentially sensitive information in a shared host environment.
|
2010-01-26
|
Foswiki Cookie URL Path Shared Environment Weakness
|
|
89386
Description:
Foswiki contains a flaw that is due to the program failing to set the secure flag for the session cookie in an HTTPS session. Without this flag, a web browser may transmit the cookie in cleartext (i.e., unencrypted) potentially allowing it to be intercepted.
|
2010-01-26
|
Foswiki HttpsRedirectPlugin HTTPS Session Cookie Secure Flag Weakness
|
|
61976
Description:
F2L 3000 contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'Login Page' not properly sanitizing user-supplied input to an unspecified parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2010-01-25
|
F2L 3000 Login Page Unspecified Parameter SQL Injection
|
|
62313
Description:
Google Chrome contains a flaw in the 'createWindow' Function in WebCore/bindings/v8/custom/V8DOMWindowCustom.cpp within WebKit when handling the 'window.open()' method. With a specially crafted web page, a context-dependent attacker can bypass the same-origin policy.
|
2010-01-25
|
Google Chrome WebKit WebCore/bindings/v8/custom/V8DOMWindowCustom.cpp window.open Method Same Origin Policy Bypass
|
|
62016
Description:
Unknown / Incomplete
|
2010-01-25
|
e107 class2.php access-admin Cookie Admin Authentication Backdoor
|
|
62309
Description:
(Description Provided by CVE) : Google Chrome before 4.0.249.78 on Windows does not perform the expected encoding, escaping, and quoting for the URL in the --app argument in a desktop shortcut, which allows user-assisted remote attackers to execute arbitrary programs or obtain sensitive information by tricking a user into creating a crafted shortcut.
|
2010-01-25
|
Google Chrome on Windows Shortcut Character Escaping Arbitrary Program Execution
|
|
62310
Description:
(Description Provided by CVE) : The ParamTraits<SkBitmap>::Read function in common/common_param_traits.cc in Google Chrome before 4.0.249.78 does not initialize the memory locations that will hold bitmap data, which might allow remote attackers to obtain potentially sensitive information from process memory by providing insufficient data, related to use of a (1) thumbnail database or (2) HTML canvas.
|
2010-01-25
|
Google Chrome common/common_param_traits.cc ParamTraits<SkBitmap>::Read Function Canvas Drawing Memory Disclosure
|
|
62311
Description:
(Description Provided by CVE) : The ParamTraits<SkBitmap>::Read function in common/common_param_traits.cc in Google Chrome before 4.0.249.78 does not initialize the memory locations that will hold bitmap data, which might allow remote attackers to obtain potentially sensitive information from process memory by providing insufficient data, related to use of a (1) thumbnail database or (2) HTML canvas.
|
2010-01-25
|
Google Chrome common/common_param_traits.cc ParamTraits<SkBitmap>::Read Function Image Decoding Memory Disclosure
|
|
62312
Description:
(Description Provided by CVE) : Google Chrome before 4.0.249.78 sends an https URL in the Referer header of an http request in certain circumstances involving https to http redirection, which allows remote HTTP servers to obtain potentially sensitive information via standard HTTP logging.
|
2010-01-25
|
Google Chrome Corner Case Referer Header Stripping Information Disclosure
|
|
62314
Description:
(Description Provided by CVE) : The ParamTraits<SkBitmap>::Read function in common/common_param_traits.cc in Google Chrome before 4.0.249.78 does not use the correct variables in calculations designed to prevent integer overflows, which allows attackers to leverage renderer access to cause a denial of service or possibly have unspecified other impact via bitmap data, related to deserialization.
|
2010-01-25
|
Google Chrome common/common_param_traits.cc ParamTraits<SkBitmap>::Read Function Bitmap Deserialization DoS
|
|
62463
Description:
(Description Provided by CVE) : Multiple integer overflows in Skia, as used in Google Chrome before 4.0.249.78, allow remote attackers to execute arbitrary code in the Chrome sandbox or cause a denial of service (memory corruption and application crash) via vectors involving CANVAS elements.
|
2010-01-25
|
Google Chrome Skia CANVAS Element Sandbox Multiple Overflows
|
|
61922
Description:
JBPublishdownFP Component for Joomla! contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'index.php' script not properly sanitizing user-supplied input to the 'cid[]' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2010-01-25
|
JBPublishdownFP Component for Joomla! index.php cid[] Parameter SQL Injection
|
|
61941
Description:
Publique! contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'cgi/cgilua.exe/sys/start.htm' script not properly sanitizing user-supplied input to the 'sid' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2010-01-25
|
Publique! cgi/cgilua.exe/sys/start.htm sid Parameter SQL Injection
|
|
62150
Description:
(Description Provided by CVE) : cache.c in ircd-ratbox before 2.2.9 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a HELP command.
|
2010-01-25
|
ircd-ratbox cache.c HELP Command NULL Dereference Remote DoS
|
|
62151
Description:
(Description Provided by CVE) : Integer underflow in the clean_string function in irc_string.c in (1) IRCD-hybrid 7.2.2 and 7.2.3, (2) ircd-ratbox before 2.2.9, and (3) oftc-hybrid before 1.6.8, when flatten_links is disabled, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a LINKS command.
|
2010-01-25
|
IRCD-hybrid irc_string.c clean_string Function LINKS Command Remote Underflow
|
|
62152
Description:
(Description Provided by CVE) : Integer underflow in the clean_string function in irc_string.c in (1) IRCD-hybrid 7.2.2 and 7.2.3, (2) ircd-ratbox before 2.2.9, and (3) oftc-hybrid before 1.6.8, when flatten_links is disabled, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a LINKS command.
|
2010-01-25
|
ircd-ratbox irc_string.c clean_string Function LINKS Command Remote Underflow
|
|
62153
Description:
(Description Provided by CVE) : Integer underflow in the clean_string function in irc_string.c in (1) IRCD-hybrid 7.2.2 and 7.2.3, (2) ircd-ratbox before 2.2.9, and (3) oftc-hybrid before 1.6.8, when flatten_links is disabled, allows remote attackers to execute arbitrary code or cause a denial of service (daemon crash) via a LINKS command.
|
2010-01-25
|
oftc-hybrid irc_string.c clean_string Function LINKS Command Remote Underflow
|
|
62949
Description:
WebKit contains a use-after-free error in WebCore/html/HTMLImageElement.cpp, as an image may remain accessible via form.property syntax after having been removed. With a specially crafted web page, a context-dependent attacker can dereference already freed memory and potentially execute arbitrary code.
|
2010-01-25
|
WebKit Image form.property Syntax Handling Use-after-free Arbitrary Code Execution
|
|
66190
Description:
Unknown / Incomplete
|
2010-01-25
|
SOGo SOPE Unspecified LDAP FD Leak
|
|
74101
Description:
(Description Provided by CVE) : The AgentTicketForward feature in Open Ticket Request System (OTRS) before 2.4.7 does not properly remove inline images from HTML e-mail messages, which allows remote attackers to obtain potentially sensitive image information in opportunistic circumstances by reading a forwarded message in a standard e-mail client.
|
2010-01-25
|
OTRS (Open Ticket Request System) AgentTicketForward Forwarded HTML Message Inline Image Remote Disclosure
|
|
78767
Description:
Unknown / Incomplete
|
2010-01-25
|
I2P Floodfill Peer Communication Unspecified Issue
|
|
62052
Description:
Apache Tomcat contains a flaw that allows a remote attacker to traverse outside of a restricted path. The issue is due to the program not properly sanitizing user input, specifically directory traversal style attacks (e.g., ../../) supplied via file names of files contained in a WAR file. This directory traversal attack would allow the attacker to create or overwrite arbitrary files.
|
2010-01-24
|
Apache Tomcat WAR File Traversal Arbitrary File Overwrite
|
|
62053
Description:
(Description Provided by CVE) : The autodeployment process in Apache Tomcat 5.5.0 through 5.5.28 and 6.0.0 through 6.0.20, when autoDeploy is enabled, deploys appBase files that remain from a failed undeploy, which might allow remote attackers to bypass intended authentication requirements via HTTP requests.
|
2010-01-24
|
Apache Tomcat Autodeployment Process appBase File HTTP Request Authentication Bypass
|
|
62054
Description:
Apache Tomcat contains a flaw that allows a remote attacker to traverse outside of a restricted path of the host's work directory. The issue is due to Apache Tomcat not properly sanitizing the contents of a WAR file before it is deployed, which could be exploited by a directory traversal sequence in the file name(s) to delete and possibly create malicious files in the host's work directory.
|
2010-01-24
|
Apache Tomcat WAR Filename Traversal Work-directory File Deletion
|
|
62056
Description:
Mochigames Component for Joomla! contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'index.php' script not properly sanitizing user-supplied input to the 'id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2010-01-24
|
Mochigames Component for Joomla! index.php id Parameter SQL Injection
|
|
62059
Description:
PunBB contains a flaw that allows a remote cross site scripting (XSS) attack. This flaw exists because the application does not validate the 'pid' parameter upon submission to the 'forum/viewtopic.php' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2010-01-24
|
PunBB forum/viewtopic.php pid Parameter XSS
|
|
62708
Description:
Unknown / Incomplete
|
2010-01-24
|
Python Logging Unspecified Race Condition
|
|
62709
Description:
Unknown / Incomplete
|
2010-01-24
|
Python tarfile.BZ2Proxyread Function DoS
|
|
64387
Description:
Unknown / Incomplete
|
2010-01-24
|
Apple Safari on Windows data.length Handling Local DoS
|
|
92782
Description:
OpenVPN contains a flaw that may allow an attacker to gain access to unauthorized privileges. The issue is due to an unquoted search path, which may allow a local attacker to inject arbitrary code in to the root path. This may allow the attacker to gain escalated privileges.
|
2010-01-24
|
OpenVPN Unquoted Search Path Local Privilege Escalation Weakness
|
|
61999
Description:
COMTREND CT-507IT contains a flaw that allows a remote cross site scripting (XSS) attack. This flaw exists because the application does not validate the 'srvName' parameter upon submission to the 'scvrtsrv.cmd' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2010-01-23
|
COMTREND CT-507IT scvrtsrv.cmd srvName Parameter XSS
|
|
62104
Description:
(Description Provided by CVE) : Roundcube 0.3.1 and earlier does not request that the web browser avoid DNS prefetching of domain names contained in e-mail messages, which makes it easier for remote attackers to determine the network location of the webmail user by logging DNS requests.
|
2010-01-23
|
Roundcube Webmail E-mail Message DNS Prefetching Weakness
|
|
61915
Description:
ContentBlogList Component for Joomla! contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the index.php script not properly sanitizing user-supplied input to the 'sectionid', 'catid', or 'searchword' parameters. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2010-01-23
|
ContentBlogList Component for Joomla! index.php Multiple Parameter SQL Injection
|
|
62033
Description:
(Description Provided by CVE) : Unspecified vulnerability in the WebLogic Server in Oracle WebLogic Server 7.0 SP7, 8.1 SP6, 9.0, 9.1, 9.2 MP3, 10.0 MP2, and 10.3.2 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors.
|
2010-01-23
|
Oracle WebLogic Server Node Manager (beasvc.exe) Access Restriction Bypass
|
|
61947
Description:
(Description Provided by CVE) : sandra.sys 15.18.1.1 and earlier in the Sandra Device Driver in SiSoftware Sandra 16.10.2010.1 and earlier allows local users to gain privileges or cause a denial of service (system crash) via unspecified vectors involving "Model-Specific Registers."
|
2010-01-23
|
Sandra sandra.sys IOCTL Handling Memory Corruption Local Privilege Escalation
|
|
61945
Description:
(Description Provided by CVE) : Support Incident Tracker before 3.51, when using LDAP authentication with anonymous binds, allows remote attackers to bypass authentication via an empty password.
|
2010-01-23
|
Support Incident Tracker (SiT!) Null Password LDAP Authentication Bypass
|