Show filters
132 Total Results
Displaying 121-130 of 132
Sort by:
Attacker Value
Unknown

CVE-2013-3037

Disclosure Date: September 12, 2013 (last updated October 05, 2023)
Unspecified vulnerability in IBM Rational Requirements Composer before 4.0.4 makes it easier for local users to gain privileges via unknown vectors.
0
Attacker Value
Unknown

CVE-2013-3039

Disclosure Date: September 12, 2013 (last updated October 05, 2023)
IBM Rational Requirements Composer before 4.0.4 does not properly perform authentication, which has unspecified impact and remote attack vectors.
0
Attacker Value
Unknown

CVE-2013-3038

Disclosure Date: September 12, 2013 (last updated October 05, 2023)
Unspecified vulnerability in IBM Rational Requirements Composer before 4.0.4 makes it easier for remote attackers to discover credentials via unknown vectors.
0
Attacker Value
Unknown

CVE-2012-4883

Disclosure Date: September 07, 2012 (last updated October 05, 2023)
Multiple untrusted search path vulnerabilities in 3DVIA Composer V6R2012 HF1 Build 6.8.1.1652 allow local users to gain privileges via a Trojan horse (1) dwmapi.dll or (2) ibfs32.dll file in the current working directory, as demonstrated by a directory that contains a .smg file. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown

CVE-2011-5003

Disclosure Date: December 25, 2011 (last updated October 04, 2023)
Stack-based buffer overflow in the Phonetic Indexer (AvidPhoneticIndexer.exe) in Avid Media Composer 5.5.3 and earlier allows remote attackers to execute arbitrary code via a long request to TCP port 4659.
0
Attacker Value
Unknown

CVE-2008-2862

Disclosure Date: June 25, 2008 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in eLineStudio Site Composer (ESC) 2.6 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to ansFAQ.asp and the (2) template_id parameter to preview.asp.
0
Attacker Value
Unknown

CVE-2008-2864

Disclosure Date: June 25, 2008 (last updated October 04, 2023)
eLineStudio Site Composer (ESC) 2.6 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) trigger.asp or (2) common2.asp in cms/include/, which reveals the database path.
0
Attacker Value
Unknown

CVE-2008-2863

Disclosure Date: June 25, 2008 (last updated October 04, 2023)
Multiple absolute path traversal vulnerabilities in eLineStudio Site Composer (ESC) 2.6 allow remote attackers to create or delete arbitrary directories via a full pathname in the inpCurrFolder parameter to (1) folderdel_.asp or (2) foldernew.asp in cms/assetmanager/.
0
Attacker Value
Unknown

CVE-2008-2861

Disclosure Date: June 25, 2008 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in eLineStudio Site Composer (ESC) 2.6 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) topic and (2) button parameters to ansFAQ.asp and the (3) id and (4) txtEmail parameters to login.asp.
0
Attacker Value
Unknown

CVE-2007-2406

Disclosure Date: August 03, 2007 (last updated October 04, 2023)
Quartz Composer on Apple Mac OS X 10.4.10 does not initialize a certain object pointer, which might allow user-assisted remote attackers to execute arbitrary code via a crafted Quartz Composer file.
0