Show filters
210 Total Results
Displaying 121-130 of 210
Sort by:
Attacker Value
Unknown

CVE-2011-3685

Disclosure Date: September 27, 2011 (last updated October 04, 2023)
Tembria Server Monitor before 6.0.5 Build 2252 uses a substitution cipher to encrypt application credentials, which allows local users to obtain sensitive information by leveraging read access to (1) authentication.dat or (2) XML files in the Exports directory.
0
Attacker Value
Unknown

CVE-2011-2975

Disclosure Date: August 01, 2011 (last updated October 04, 2023)
Double free vulnerability in the msAddImageSymbol function in mapsymbol.c in MapServer before 6.0.1 might allow remote attackers to cause a denial of service (application crash) or have unspecified other impact via crafted mapfile data.
0
Attacker Value
Unknown

CVE-2011-2703

Disclosure Date: August 01, 2011 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in MapServer before 4.10.7, 5.x before 5.6.7, and 6.x before 6.0.1 allow remote attackers to execute arbitrary SQL commands via vectors related to (1) OGC filter encoding or (2) WMS time support.
0
Attacker Value
Unknown

CVE-2011-2704

Disclosure Date: August 01, 2011 (last updated October 04, 2023)
Stack-based buffer overflow in MapServer before 4.10.7 and 5.x before 5.6.7 allows remote attackers to execute arbitrary code via vectors related to OGC filter encoding.
0
Attacker Value
Unknown

CVE-2011-1417

Disclosure Date: March 11, 2011 (last updated October 04, 2023)
Integer overflow in QuickLook, as used in Apple Mac OS X before 10.6.7 and MobileSafari in Apple iOS before 4.2.7 and 4.3.x before 4.3.2, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a Microsoft Office document with a crafted size field in the OfficeArtMetafileHeader, related to OfficeArtBlip, as demonstrated on the iPhone by Charlie Miller and Dion Blazakis during a Pwn2Own competition at CanSecWest 2011.
0
Attacker Value
Unknown

CVE-2010-2540

Disclosure Date: August 02, 2010 (last updated October 04, 2023)
mapserv.c in mapserv in MapServer before 4.10.6 and 5.x before 5.6.4 does not properly restrict the use of CGI command-line arguments that were intended for debugging, which allows remote attackers to have an unspecified impact via crafted arguments.
0
Attacker Value
Unknown

CVE-2010-2539

Disclosure Date: August 02, 2010 (last updated October 04, 2023)
Buffer overflow in the msTmpFile function in maputil.c in mapserv in MapServer before 4.10.6 and 5.x before 5.6.4 allows local users to cause a denial of service via vectors involving names of temporary files.
0
Attacker Value
Unknown

CVE-2010-2425

Disclosure Date: June 24, 2010 (last updated October 04, 2023)
Directory traversal vulnerability in TitanFTPd in South River Technologies Titan FTP Server 8.10.1125, and probably earlier versions, allows remote authenticated users to read or delete arbitrary files via "..//" sequences in a COMB command.
0
Attacker Value
Unknown

CVE-2010-2426

Disclosure Date: June 24, 2010 (last updated October 04, 2023)
Directory traversal vulnerability in TitanFTPd in South River Technologies Titan FTP Server 8.10.1125, and probably earlier versions, allows remote authenticated users to read arbitrary files, determine file size, via "..//" sequences in the xcrc command.
0
Attacker Value
Unknown

CVE-2010-0363

Disclosure Date: January 20, 2010 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Zeus Web Server before 4.3r5, when SSL is enabled for the admin server, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than CVE-2002-1785.
0