Show filters
33 Total Results
Displaying 21-30 of 33
Sort by:
Attacker Value
Unknown

CVE-2018-9014

Disclosure Date: March 25, 2018 (last updated November 26, 2024)
dsmall v20180320 allows physical path leakage via a public/index.php/home/predeposit/index.html?pdr_sn= request.
0
Attacker Value
Unknown

CVE-2018-8906

Disclosure Date: March 22, 2018 (last updated November 26, 2024)
dsmall v20180320 has XSS via a crafted street address to public/index.php/home/memberaddress/index.html, which is mishandled at public/index.php/home/memberaddress/edit/address_id/2.html.
0
Attacker Value
Unknown

CVE-2015-1477

Disclosure Date: February 04, 2015 (last updated October 05, 2023)
SQL injection vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter in a viewad task to classifieds/offerring-ads.
0
Attacker Value
Unknown

CVE-2015-1478

Disclosure Date: February 04, 2015 (last updated October 05, 2023)
Cross-site scripting (XSS) vulnerability in the CMSJunkie J-ClassifiedsManager component for Joomla! allows remote attackers to inject arbitrary web script or HTML via the view parameter to /classifieds.
0
Attacker Value
Unknown

CVE-2013-1243

Disclosure Date: July 18, 2013 (last updated October 05, 2023)
The IP stack in Cisco Intrusion Prevention System (IPS) Software in ASA 5500-X IPS-SSP software and hardware modules before 7.1(5)E4, IPS 4500 sensors before 7.1(6)E4, and IPS 4300 sensors before 7.1(5)E4 allows remote attackers to cause a denial of service (MainApp process hang) via malformed IPv4 packets, aka Bug ID CSCtx18596.
0
Attacker Value
Unknown

CVE-2013-1218

Disclosure Date: July 18, 2013 (last updated October 05, 2023)
Cisco Intrusion Prevention System (IPS) Software in ASA 5500-X IPS-SSP software modules before 7.1(7)sp1E4 allows remote attackers to cause a denial of service (Analysis Engine process hang or device reload) via fragmented (1) IPv4 or (2) IPv6 packets, aka Bug ID CSCue51272.
0
Attacker Value
Unknown

CVE-2013-3411

Disclosure Date: July 18, 2013 (last updated October 05, 2023)
The IDSM-2 drivers in Cisco Intrusion Prevention System (IPS) Software on Cisco Catalyst 6500 devices with an IDSM-2 module allow remote attackers to cause a denial of service (device hang) via malformed IPv4 TCP packets, aka Bug ID CSCuh27460.
0
Attacker Value
Unknown

CVE-2010-3684

Disclosure Date: September 29, 2010 (last updated October 04, 2023)
The FTP authentication module in Synology Disk Station 2.x logs passwords to the web application interface in cases of incorrect login attempts, which allows local users to obtain sensitive information by reading a log, a different vulnerability than CVE-2010-2453.
0
Attacker Value
Unknown

CVE-2010-2453

Disclosure Date: September 29, 2010 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Synology Disk Station 2.x before DSM3.0-1337 allow remote attackers to inject arbitrary web script or HTML by connecting to the FTP server and providing a crafted (1) USER or (2) PASS command, which is written by the FTP logging module to a web-interface log window, related to a "web commands injection" issue.
0
Attacker Value
Unknown

CVE-2008-1472

Disclosure Date: March 24, 2008 (last updated October 04, 2023)
Stack-based buffer overflow in the ListCtrl ActiveX Control (ListCtrl.ocx), as used in multiple CA products including BrightStor ARCserve Backup R11.5, Desktop Management Suite r11.1 through r11.2, and Unicenter products r11.1 through r11.2, allows remote attackers to execute arbitrary code or cause a denial of service (crash) via a long argument to the AddColumn method.
0