Show filters
8 Total Results
Displaying 1-8 of 8
Sort by:
Attacker Value
Unknown

CVE-2010-3929

Disclosure Date: February 02, 2011 (last updated October 04, 2023)
SQL injection vulnerability in MODx Evolution 1.0.4 and earlier allows remote attackers to execute arbitrary SQL commands via unknown vectors related to AjaxSearch.
0
Attacker Value
Unknown

CVE-2011-0741

Disclosure Date: February 02, 2011 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in ModX Evolution before 1.0.5 allow remote attackers to inject arbitrary web script or HTML via the (1) installer or (2) image editor.
0
Attacker Value
Unknown

CVE-2010-3930

Disclosure Date: February 02, 2011 (last updated October 04, 2023)
Directory traversal vulnerability in MODx Evolution 1.0.4 and earlier allows remote attackers to read arbitrary files via unspecified vectors related to AjaxSearch, a different vulnerability than CVE-2010-1427.
0
Attacker Value
Unknown

CVE-2002-1471

Disclosure Date: April 22, 2003 (last updated February 22, 2025)
The camel component for Ximian Evolution 1.0.x and earlier does not verify certificates when it establishes a new SSL connection after previously verifying a certificate, which could allow remote attackers to monitor or modify sessions via a man-in-the-middle attack.
0
Attacker Value
Unknown

CVE-2003-0129

Disclosure Date: March 24, 2003 (last updated February 22, 2025)
Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attackers to cause a denial of service (memory consumption) via a mail message that is uuencoded multiple times.
0
Attacker Value
Unknown

CVE-2003-0130

Disclosure Date: March 24, 2003 (last updated February 22, 2025)
The handle_image function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier does not properly escape HTML characters, which allows remote attackers to inject arbitrary data and HTML via a MIME Content-ID header in a MIME-encoded image.
0
Attacker Value
Unknown

CVE-2003-0128

Disclosure Date: March 24, 2003 (last updated February 22, 2025)
The try_uudecoding function in mail-format.c for Ximian Evolution Mail User Agent 1.2.2 and earlier allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a malicious uuencoded (UUE) header, possibly triggering a heap-based buffer overflow.
0
Attacker Value
Unknown

CVE-2002-1765

Disclosure Date: December 31, 2002 (last updated February 22, 2025)
Evolution 1.0.3 and 1.0.4 allows remote attackers to cause a denial of service (memory consumption and crash) via an email with a malformed MIME header.
0