Show filters
251 Total Results
Displaying 181-190 of 251
Sort by:
Attacker Value
Unknown

CVE-2013-3692

Disclosure Date: July 13, 2013 (last updated October 05, 2023)
BlackBerry 10 OS before 10.0.10.648 on BlackBerry Z10 smartphones uses weak permissions for a BlackBerry Protect object, which allows physically proximate attackers to bypass intended access restrictions by leveraging a user's BlackBerry Protect password-reset request and a user's installation of a crafted application.
0
Attacker Value
Unknown

CVE-2013-2688

Disclosure Date: July 12, 2013 (last updated October 05, 2023)
Buffer overflow in phrelay in BlackBerry QNX Neutrino RTOS through 6.5.0 SP1 in the QNX Software Development Platform allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted packets to TCP port 4868 that leverage improper handling of the /dev/photon device file.
0
Attacker Value
Unknown

CVE-2013-2687

Disclosure Date: July 12, 2013 (last updated October 05, 2023)
Stack-based buffer overflow in the bpe_decompress function in (1) BlackBerry QNX Neutrino RTOS through 6.5.0 SP1 and (2) QNX Momentics Tool Suite through 6.5.0 SP1 in the QNX Software Development Platform allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted packets to TCP port 4868.
0
Attacker Value
Unknown

CVE-2012-3998

Disclosure Date: July 12, 2012 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in Sticky Notes before 0.2.27052012.5 allow remote attackers to execute arbitrary SQL commands via the (1) paste id in admin/modules/mod_pastes.php or (2) show.php, (3) user id to admin/modules/mod_users.php, (4) project to list.php, or (5) session id to show.php.
0
Attacker Value
Unknown

CVE-2012-3999

Disclosure Date: July 12, 2012 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in admin/login.php in Sticky Notes 0.3.09062012.4 and earlier allows remote attackers to inject arbitrary web script or HTML via the username parameter.
0
Attacker Value
Unknown

CVE-2012-3997

Disclosure Date: July 12, 2012 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Sticky Notes before 0.2.27052012.5 allow remote attackers to inject arbitrary web script or HTML via the (1) paste_user or (2) paste_lang parameter to (a) list.php or (b) show.php.
0
Attacker Value
Unknown

CVE-2012-1026

Disclosure Date: February 08, 2012 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in login2.php in XRay CMS 1.1.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters.
0
Attacker Value
Unknown

CVE-2011-0291

Disclosure Date: December 08, 2011 (last updated October 04, 2023)
The BlackBerry PlayBook service on the Research In Motion (RIM) BlackBerry PlayBook tablet with software before 1.0.8.6067 allows local users to gain privileges via a crafted configuration file in a backup archive.
0
Attacker Value
Unknown

CVE-2010-4811

Disclosure Date: July 08, 2011 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in ajaxmember.php in 6kbbs 8.0 build 20100901 allow remote attackers to inject arbitrary web script or HTML via the (1) user[msn], (2) user[email], and (3) user[phone] parameters in a modifyDetails action.
0
Attacker Value
Unknown

CVE-2010-4812

Disclosure Date: July 08, 2011 (last updated October 04, 2023)
Multiple SQL injection vulnerabilities in 6kbbs 8.0 build 20100901 allow remote attackers to execute arbitrary SQL commands via the (1) tids[] parameter to ajaxadmin.php and the (2) msgids[] parameter to ajaxmember.php.
0