Show filters
250 Total Results
Displaying 191-200 of 250
Sort by:
Attacker Value
Unknown

CVE-2011-0901

Disclosure Date: February 07, 2011 (last updated October 04, 2023)
Multiple stack-based buffer overflows in the tsc_launch_remote function (src/support.c) in Terminal Server Client (tsclient) 0.150, and possibly other versions, allow user-assisted remote attackers to execute arbitrary code via a .RDP file with a long (1) username, (2) password, or (3) domain argument. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
0
Attacker Value
Unknown

CVE-2009-4200

Disclosure Date: December 04, 2009 (last updated October 04, 2023)
SQL injection vulnerability in the Seminar (com_seminar) component 1.28 for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a View_seminar action to index.php.
0
Attacker Value
Unknown

CVE-2008-5372

Disclosure Date: December 08, 2008 (last updated October 04, 2023)
sdm-login in sdm-terminal 0.4.0b allows local users to overwrite arbitrary files via a symlink attack on the /tmp/sdm.autologin.once temporary file.
0
Attacker Value
Unknown

CVE-2008-5143

Disclosure Date: November 18, 2008 (last updated October 04, 2023)
mgt-helper in multi-gnome-terminal 1.6.2 allows local users to overwrite arbitrary files via a symlink attack on a (1) /tmp/*.debug or (2) /tmp/*.env temporary file.
0
Attacker Value
Unknown

CVE-2008-1293

Disclosure Date: April 29, 2008 (last updated October 04, 2023)
ldm in Linux Terminal Server Project (LTSP) 0.99 and 2 passes the -ac option to the X server on each LTSP client, which allows remote attackers to connect to this server via TCP port 6006 (aka display :6).
0
Attacker Value
Unknown

CVE-2007-3770

Disclosure Date: July 15, 2007 (last updated October 04, 2023)
The terminal_helper_execute function in terminal/terminal.c in Xfce Terminal 0.2.6 allows user-assisted remote attackers to execute arbitrary commands via shell metacharacters in a crafted link, as demonstrated using the "Open Link" functionality.
0
Attacker Value
Unknown

CVE-2007-2593

Disclosure Date: May 11, 2007 (last updated October 04, 2023)
The Terminal Server in Microsoft Windows 2003 Server, when using TLS, allows remote attackers to bypass SSL and self-signed certificate requirements, downgrade the server security, and possibly conduct man-in-the-middle attacks via unspecified vectors, as demonstrated using the Remote Desktop Protocol (RDP) 6.0 client. NOTE: a third party claims that the vendor may have fixed this in approximately 2006.
0
Attacker Value
Unknown

CVE-2007-0808

Disclosure Date: February 07, 2007 (last updated October 04, 2023)
PHP remote file inclusion vulnerability in Mina Ajans Script allows remote attackers to execute arbitrary PHP code via a URL in the syf parameter to an unspecified PHP script.
0
Attacker Value
Unknown

CVE-2006-4465

Disclosure Date: August 31, 2006 (last updated November 08, 2023)
Microsoft Terminal Server, when running an application session with the "Start program at logon" and "Override settings from user profile and Client Connection Manager wizard" options, allows local users to execute arbitrary code by forcing an Explorer error. NOTE: a third-party researcher has stated that the options are "a convenience to users" and were not intended to restrict execution of arbitrary code
0
Attacker Value
Unknown

CVE-2006-4309

Disclosure Date: August 23, 2006 (last updated October 04, 2023)
VNC server on the AK-Systems Windows Terminal 1.2.5 ExVLP is not password protected, which allows remote attackers to login and view RDP or Citrix sessions.
0