Show filters
132 Total Results
Displaying 121-130 of 132
Sort by:
Attacker Value
Unknown
CVE-2013-3037
Disclosure Date: September 12, 2013 (last updated October 05, 2023)
Unspecified vulnerability in IBM Rational Requirements Composer before 4.0.4 makes it easier for local users to gain privileges via unknown vectors.
0
Attacker Value
Unknown
CVE-2013-3039
Disclosure Date: September 12, 2013 (last updated October 05, 2023)
IBM Rational Requirements Composer before 4.0.4 does not properly perform authentication, which has unspecified impact and remote attack vectors.
0
Attacker Value
Unknown
CVE-2013-3038
Disclosure Date: September 12, 2013 (last updated October 05, 2023)
Unspecified vulnerability in IBM Rational Requirements Composer before 4.0.4 makes it easier for remote attackers to discover credentials via unknown vectors.
0
Attacker Value
Unknown
CVE-2012-4883
Disclosure Date: September 07, 2012 (last updated October 05, 2023)
Multiple untrusted search path vulnerabilities in 3DVIA Composer V6R2012 HF1 Build 6.8.1.1652 allow local users to gain privileges via a Trojan horse (1) dwmapi.dll or (2) ibfs32.dll file in the current working directory, as demonstrated by a directory that contains a .smg file. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown
CVE-2011-5003
Disclosure Date: December 25, 2011 (last updated October 04, 2023)
Stack-based buffer overflow in the Phonetic Indexer (AvidPhoneticIndexer.exe) in Avid Media Composer 5.5.3 and earlier allows remote attackers to execute arbitrary code via a long request to TCP port 4659.
0
Attacker Value
Unknown
CVE-2008-2862
Disclosure Date: June 25, 2008 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in eLineStudio Site Composer (ESC) 2.6 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to ansFAQ.asp and the (2) template_id parameter to preview.asp.
0
Attacker Value
Unknown
CVE-2008-2864
Disclosure Date: June 25, 2008 (last updated October 04, 2023)
eLineStudio Site Composer (ESC) 2.6 and earlier allows remote attackers to obtain sensitive information via a direct request to (1) trigger.asp or (2) common2.asp in cms/include/, which reveals the database path.
0
Attacker Value
Unknown
CVE-2008-2863
Disclosure Date: June 25, 2008 (last updated October 04, 2023)
Multiple absolute path traversal vulnerabilities in eLineStudio Site Composer (ESC) 2.6 allow remote attackers to create or delete arbitrary directories via a full pathname in the inpCurrFolder parameter to (1) folderdel_.asp or (2) foldernew.asp in cms/assetmanager/.
0
Attacker Value
Unknown
CVE-2008-2861
Disclosure Date: June 25, 2008 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in eLineStudio Site Composer (ESC) 2.6 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) topic and (2) button parameters to ansFAQ.asp and the (3) id and (4) txtEmail parameters to login.asp.
0
Attacker Value
Unknown
CVE-2007-2406
Disclosure Date: August 03, 2007 (last updated October 04, 2023)
Quartz Composer on Apple Mac OS X 10.4.10 does not initialize a certain object pointer, which might allow user-assisted remote attackers to execute arbitrary code via a crafted Quartz Composer file.
0