Show filters
137 Total Results
Displaying 131-137 of 137
Sort by:
Attacker Value
Unknown
CVE-2010-0988
Disclosure Date: March 26, 2010 (last updated October 04, 2023)
Multiple unspecified vulnerabilities in Pulse CMS before 1.2.3 allow (1) remote attackers to write to arbitrary files and execute arbitrary PHP code via vectors related to improper handling of login failures by includes/login.php; and allow remote authenticated users to write to arbitrary files and execute arbitrary PHP code via vectors involving the (2) filename and (3) block parameters to view.php.
0
Attacker Value
Unknown
CVE-2010-1080
Disclosure Date: March 23, 2010 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in view.php in Pulse CMS 1.2.2 allows remote attackers to inject arbitrary web script or HTML via the f parameter.
0
Attacker Value
Unknown
CVE-2009-1299
Disclosure Date: March 18, 2010 (last updated October 04, 2023)
The pa_make_secure_dir function in core-util.c in PulseAudio 0.9.10 and 0.9.19 allows local users to change the ownership and permissions of arbitrary files via a symlink attack on a /tmp/.esd-##### temporary file.
0
Attacker Value
Unknown
CVE-2009-1894
Disclosure Date: July 17, 2009 (last updated October 04, 2023)
Race condition in PulseAudio 0.9.9, 0.9.10, and 0.9.14 allows local users to gain privileges via vectors involving creation of a hard link, related to the application setting LD_BIND_NOW to 1, and then calling execv on the target of the /proc/self/exe symlink.
0
Attacker Value
Unknown
CVE-2008-0008
Disclosure Date: January 29, 2008 (last updated October 04, 2023)
The pa_drop_root function in PulseAudio 0.9.8, and a certain 0.9.9 build, does not check return values from (1) setresuid, (2) setreuid, (3) setuid, and (4) seteuid calls when attempting to drop privileges, which might allow local users to gain privileges by causing those calls to fail via attacks such as resource exhaustion.
0
Attacker Value
Unknown
CVE-2007-1804
Disclosure Date: April 02, 2007 (last updated October 04, 2023)
PulseAudio 0.9.5 allows remote attackers to cause a denial of service (daemon crash) via (1) a PA_PSTREAM_DESCRIPTOR_LENGTH value of FRAME_SIZE_MAX_ALLOW sent on TCP port 9875, which triggers a p->export assertion failure in do_read; (2) a PA_PSTREAM_DESCRIPTOR_LENGTH value of 0 sent on TCP port 9875, which triggers a length assertion failure in pa_memblock_new; or (3) an empty packet on UDP port 9875, which triggers a t assertion failure in pa_sdp_parse; and allows remote authenticated users to cause a denial of service (daemon crash) via a crafted packet on TCP port 9875 that (4) triggers a maxlength assertion failure in pa_memblockq_new, (5) triggers a size assertion failure in pa_xmalloc, or (6) plays a certain sound file.
0
Attacker Value
Unknown
CVE-2001-1362
Disclosure Date: July 19, 2001 (last updated February 22, 2025)
Vulnerability in the server for nPULSE before 0.53p4.
0