Show filters
251 Total Results
Displaying 181-190 of 251
Sort by:
Attacker Value
Unknown
CVE-2013-3692
Disclosure Date: July 13, 2013 (last updated October 05, 2023)
BlackBerry 10 OS before 10.0.10.648 on BlackBerry Z10 smartphones uses weak permissions for a BlackBerry Protect object, which allows physically proximate attackers to bypass intended access restrictions by leveraging a user's BlackBerry Protect password-reset request and a user's installation of a crafted application.
0
Attacker Value
Unknown
CVE-2013-2688
Disclosure Date: July 12, 2013 (last updated October 05, 2023)
Buffer overflow in phrelay in BlackBerry QNX Neutrino RTOS through 6.5.0 SP1 in the QNX Software Development Platform allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted packets to TCP port 4868 that leverage improper handling of the /dev/photon device file.
0
Attacker Value
Unknown
CVE-2013-2687
Disclosure Date: July 12, 2013 (last updated October 05, 2023)
Stack-based buffer overflow in the bpe_decompress function in (1) BlackBerry QNX Neutrino RTOS through 6.5.0 SP1 and (2) QNX Momentics Tool Suite through 6.5.0 SP1 in the QNX Software Development Platform allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted packets to TCP port 4868.
0
Attacker Value
Unknown
CVE-2012-3998
Disclosure Date: July 12, 2012 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in Sticky Notes before 0.2.27052012.5 allow remote attackers to execute arbitrary SQL commands via the (1) paste id in admin/modules/mod_pastes.php or (2) show.php, (3) user id to admin/modules/mod_users.php, (4) project to list.php, or (5) session id to show.php.
0
Attacker Value
Unknown
CVE-2012-3999
Disclosure Date: July 12, 2012 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in admin/login.php in Sticky Notes 0.3.09062012.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the username parameter.
0
Attacker Value
Unknown
CVE-2012-3997
Disclosure Date: July 12, 2012 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Sticky Notes before 0.2.27052012.5 allow remote attackers to inject arbitrary web script or HTML via the (1) paste_user or (2) paste_lang parameter to (a) list.php or (b) show.php.
0
Attacker Value
Unknown
CVE-2012-1026
Disclosure Date: February 08, 2012 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in login2.php in XRay CMS 1.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters.
0
Attacker Value
Unknown
CVE-2011-0291
Disclosure Date: December 08, 2011 (last updated October 04, 2023)
The BlackBerry PlayBook service on the Research In Motion (RIM) BlackBerry PlayBook tablet with software before 1.0.8.6067 allows local users to gain privileges via a crafted configuration file in a backup archive.
0
Attacker Value
Unknown
CVE-2010-4811
Disclosure Date: July 08, 2011 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in ajaxmember.php in 6kbbs 8.0 build 20100901 allow remote attackers to inject arbitrary web script or HTML via the (1) user[msn], (2) user[email], and (3) user[phone] parameters in a modifyDetails action.
0
Attacker Value
Unknown
CVE-2010-4812
Disclosure Date: July 08, 2011 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in 6kbbs 8.0 build 20100901 allow remote attackers to execute arbitrary SQL commands via the (1) tids[] parameter to ajaxadmin.php and the (2) msgids[] parameter to ajaxmember.php.
0