Show filters
8 Total Results
Displaying 1-8 of 8
Sort by:
Attacker Value
Unknown
CVE-2010-3929
Disclosure Date: February 02, 2011 (last updated October 04, 2023)
SQL injection vulnerability in MODx Evolution 1.0.4 and earlier allows remote attackers to execute arbitrary SQL commands via unknown vectors related to AjaxSearch.
0
Attacker Value
Unknown
CVE-2011-0741
Disclosure Date: February 02, 2011 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in ModX Evolution before 1.0.5 allow remote attackers to inject arbitrary web script or HTML via the (1) installer or (2) image editor.
0
Attacker Value
Unknown
CVE-2010-3930
Disclosure Date: February 02, 2011 (last updated October 04, 2023)
Directory traversal vulnerability in MODx Evolution 1.0.4 and earlier allows remote attackers to read arbitrary files via unspecified vectors related to AjaxSearch, a different vulnerability than CVE-2010-1427.
0
Attacker Value
Unknown
CVE-2002-1471
Disclosure Date: April 22, 2003 (last updated February 22, 2025)
The camel component for Ximian Evolution 1.0.x and earlier does not verify certificates when it establishes a new SSL connection after previously verifying a certificate, which could allow remote attackers to monitor or modify sessions via a man-in-the-middle attack.
0
Attacker Value
Unknown
CVE-2003-0129
Disclosure Date: March 24, 2003 (last updated February 22, 2025)
Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attackers to cause a denial of service (memory consumption) via a mail message that is uuencoded multiple times.
0
Attacker Value
Unknown
CVE-2003-0130
Disclosure Date: March 24, 2003 (last updated February 22, 2025)
The handle_image function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier does not properly escape HTML characters, which allows remote attackers to inject arbitrary data and HTML via a MIME Content-ID header in a MIME-encoded image.
0
Attacker Value
Unknown
CVE-2003-0128
Disclosure Date: March 24, 2003 (last updated February 22, 2025)
The try_uudecoding function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a malicious uuencoded (UUE) header, possibly triggering a heap-based buffer overflow.
0
Attacker Value
Unknown
CVE-2002-1765
Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Evolution 1.0.3 and 1.0.4 allows remote attackers to cause a denial of service (memory consumption and crash) via an email with a malformed MIME header.
0