Show filters
182 Total Results
Displaying 161-170 of 182
Sort by:
Attacker Value
Unknown

CVE-2012-4455

Disclosure Date: October 10, 2012 (last updated October 05, 2023)
openCryptoki 2.4.1 allows local users to create or set world-writable permissions on arbitrary files via a symlink attack on the (1) LCK..opencryptoki or (2) LCK..opencryptoki_stdll file in /var/lock/.
0
Attacker Value
Unknown

CVE-2012-4454

Disclosure Date: October 10, 2012 (last updated October 05, 2023)
openCryptoki before 2.4.1, when using spinlocks, allows local users to create or set world-writable permissions on arbitrary files via a symlink attack on the (1) .pkapi_xpk or (2) .pkcs11spinloc file in /tmp.
0
Attacker Value
Unknown

CVE-2012-2271

Disclosure Date: May 21, 2012 (last updated October 04, 2023)
Buffer overflow in the InitLicenKeys function in a certain ActiveX control in SkinCrafter3_vs2005.dll in SkinCrafter 3.0 allows remote attackers to execute arbitrary code via a long string in the first argument (aka the reg_name argument).
0
Attacker Value
Unknown

CVE-2010-5032

Disclosure Date: November 02, 2011 (last updated October 04, 2023)
SQL injection vulnerability in the BF Quiz (com_bfquiztrial) component before 1.3.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a bfquiztrial action to index.php.
0
Attacker Value
Unknown

CVE-2011-3721

Disclosure Date: September 23, 2011 (last updated October 04, 2023)
concrete 5.4.0.5, 5.4.1, and 5.4.1.1 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an error message, as demonstrated by tools/spellchecker_service.php and certain other files.
0
Attacker Value
Unknown

CVE-2010-2255

Disclosure Date: June 09, 2010 (last updated October 04, 2023)
SQL injection vulnerability in the BF Survey Pro (com_bfsurvey_pro) component before 1.3.1, BF Survey Pro Free (com_bfsurvey_profree) component 1.2.6, and BF Survey Basic component before 1.2 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter to index.php. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2010-2259

Disclosure Date: June 09, 2010 (last updated October 04, 2023)
Directory traversal vulnerability in the BF Survey (com_bfsurvey) component for Joomla! allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the controller parameter to index.php.
0
Attacker Value
Unknown

CVE-2010-1606

Disclosure Date: April 29, 2010 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in NCT Jobs Portal Script allow remote attackers to inject arbitrary web script or HTML via the (1) search, (2) Keywords, (3) Tags, or (4) Desired City field.
0
Attacker Value
Unknown

CVE-2010-1604

Disclosure Date: April 29, 2010 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in admin_login.php in NCT Jobs Portal Script allow remote attackers to execute arbitrary SQL commands via the (1) user parameter (aka login field) and (2) passwd parameter (aka password field). NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2010-1605

Disclosure Date: April 29, 2010 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in isearch.php in NCT Jobs Portal Script allow remote attackers to execute arbitrary SQL commands via the (1) anyword and (2) cityname parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0