Show filters
224 Total Results
Displaying 171-180 of 224
Sort by:
Attacker Value
Unknown
CVE-2013-4484
Disclosure Date: November 01, 2013 (last updated October 05, 2023)
Varnish before 3.0.5 allows remote attackers to cause a denial of service (child-process crash and temporary caching outage) via a GET request with trailing whitespace characters and no URI.
0
Attacker Value
Unknown
CVE-2010-5276
Disclosure Date: October 07, 2012 (last updated October 05, 2023)
The Memcache module 5.x before 5.x-1.10 and 6.x before 6.x-1.6 for Drupal does not properly handle the $user object in memcache_admin, which might "lead to a role change not being recognized until the user logs in again."
0
Attacker Value
Unknown
CVE-2010-5275
Disclosure Date: October 07, 2012 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in memcache_admin in the Memcache module 5.x before 5.x-1.10 and 6.x before 6.x-1.6 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2010-3294
Disclosure Date: September 24, 2010 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in apc.php in the Alternative PHP Cache (APC) extension before 3.1.4 for PHP allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2010-1152
Disclosure Date: April 12, 2010 (last updated November 08, 2023)
memcached.c in memcached before 1.4.3 allows remote attackers to cause a denial of service (daemon hang or crash) via a long line that triggers excessive memory allocation. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown
CVE-2009-4454
Disclosure Date: December 29, 2009 (last updated October 04, 2023)
vccleaner in VideoCache 1.9.2 allows local users with Squid proxy user privileges to overwrite arbitrary files via a symlink attack on /var/log/videocache/vccleaner.log.
0
Attacker Value
Unknown
CVE-2009-3206
Disclosure Date: September 16, 2009 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in the ImageCache module 5.x before 5.x-2.5 and 6.x before 6.x-2.0-beta10, a module for Drupal, allow remote authenticated users, with "administer imagecache" permissions, to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown
CVE-2009-3207
Disclosure Date: September 16, 2009 (last updated October 04, 2023)
The ImageCache module 5.x before 5.x-2.5 and 6.x before 6.x-2.0-beta10, a module for Drupal, when the private file system is used, does not properly perform access control for derivative images, which allows remote attackers to view arbitrary images via a request that specifies an image's filename.
0
Attacker Value
Unknown
CVE-2009-2415
Disclosure Date: August 10, 2009 (last updated October 04, 2023)
Multiple integer overflows in memcached 1.1.12 and 1.2.2 allow remote attackers to execute arbitrary code via vectors involving length attributes that trigger heap-based buffer overflows.
0
Attacker Value
Unknown
CVE-2009-1255
Disclosure Date: April 30, 2009 (last updated October 04, 2023)
The process_stat function in (1) Memcached before 1.2.8 and (2) MemcacheDB 1.2.0 discloses (a) the contents of /proc/self/maps in response to a stats maps command and (b) memory-allocation statistics in response to a stats malloc command, which allows remote attackers to obtain sensitive information such as the locations of memory regions, and defeat ASLR protection, by sending a command to the daemon's TCP port.
0