| OSVDB ID | Disclosure Date | Title |
|
87508
Description:
Bugzilla contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when an error occurs in the User.get method in /WebService/User.pm. With a specially crafted XMLRPC or JSONRPC request, a remote attacker can gain access to information related to saved searches.
|
2011-10-25
|
Bugzilla /WebService/User.pm User.get Method Arbitrary User Saved Search Remote Information Disclosure
|
|
76539
Description:
Unknown / Incomplete
|
2011-10-24
|
Oracle AutoVue ActiveX (AutoVueX.ocx) Multiple Method Arbitrary File Overwrite
|
|
77377
Description:
(Description Provided by CVE) : Buffer overflow in the Steema TeeChart ActiveX control, as used in Schneider Electric Vijeo Historian 4.30 and earlier, CitectHistorian 4.30 and earlier, and CitectSCADAReports 4.10 and earlier, allows remote attackers to cause a denial of service via unspecified vectors.
|
2011-10-24
|
Schneider Electric Multiple Products Multiple TeeChart ActiveX Unspecified Remote Overflow
|
|
77379
Description:
(Description Provided by CVE) : Directory traversal vulnerability in Schneider Electric Vijeo Historian 4.30 and earlier, CitectHistorian 4.30 and earlier, and CitectSCADAReports 4.10 and earlier allows remote attackers to read arbitrary files via unspecified vectors.
|
2011-10-24
|
Schneider Electric Multiple Products Web Portal Unspecified Traversal Arbitrary File Access
|
|
76623
Description:
(Description Provided by CVE) : Puppet 2.6.x before 2.6.12 and 2.7.x before 2.7.6, and Puppet Enterprise (PE) Users 1.0, 1.1, and 1.2 before 1.2.4, when signing an agent certificate, adds the Puppet master's certdnsnames values to the X.509 Subject Alternative Name field of the certificate, which allows remote attackers to spoof a Puppet master via a man-in-the-middle (MITM) attack against an agent that uses an alternate DNS name for the master, aka "AltNames Vulnerability."
|
2011-10-24
|
Puppet certdnsnames Puppet Master Impersonation Weakness
|
|
83420
Description:
phpLDAPadmin contains a flaw that may allow a remote attacker to cause a denial of service. The issue is due to the common.php script not properly sanitizing user-supplied input to the accept-language header. This may allow an attacker to include a file from the targeted host that goes into a recursion loop causing a loss of availability for the program. Such attacks are limited due to the script only calling files already on the target host.
|
2011-10-24
|
phpLDAPadmin common.php Accept-language Header LFI File Loading Recursion Remote DoS
|
|
76482
Description:
Unknown / Incomplete
|
2011-10-24
|
zFTPServer CWD / STAT Command Parsing Remote DoS
|
|
76631
Description:
(Description Provided by CVE) : Stack-based buffer overflow in the GetDriverSettings function in nipplib.dll in the iPrint client in Novell Open Enterprise Server 2 (aka OES2) SP3 allows remote attackers to execute arbitrary code via a long (1) hostname or (2) port field.
|
2011-10-24
|
Novell iPrint Client nipplib.dll GetDriverSettings() Function Multiple Parameter Remote Overflow
|
|
76484
Description:
Jara contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'view.php' not properly sanitizing user-supplied input to the 'id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-10-24
|
Jara view.php id Parameter SQL Injection
|
|
76649
Description:
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'list' parameter upon submission to the websoftphone/jsp/CBCallBackCont.jsp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite websoftphone/jsp/CBCallBackCont.jsp list Parameter XSS
|
|
76645
Description:
Unknown / Incomplete
|
2011-10-24
|
Zope Unspecified Remote Issue
|
|
76644
Description:
Unknown / Incomplete
|
2011-10-24
|
Wing FTP Server HTTP Protocol Unspecified Remote Information Disclosure
|
|
76578
Description:
PacketFence contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'p' parameter upon submission to the html/admin/login.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
PacketFence html/admin/login.php p Parameter XSS
|
|
76575
Description:
IBM WebSphere ILOG Rule Team Server contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input upon submission to the content/error.jsp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
IBM WebSphere ILOG Rule Team Server content/error.jsp Unspecified XSS
|
|
76579
Description:
PacketFence contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'destination_url' parameter upon submission to the html/admin/guest-management.cgi script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
PacketFence html/admin/guest-management.cgi destination_url Parameter XSS
|
|
76580
Description:
PacketFence contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'destination_url' parameter upon submission to the html/captive-portal/email_activation.cgi script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
PacketFence html/captive-portal/email_activation.cgi destination_url Parameter XSS
|
|
76581
Description:
PacketFence contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'destination_url' parameter upon submission to the html/captive-portal/register.cgi script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
PacketFence html/captive-portal/register.cgi destination_url Parameter XSS
|
|
76582
Description:
PacketFence contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'destination_url' parameter upon submission to the html/captive-portal/redir.cgi script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
PacketFence html/captive-portal/redir.cgi destination_url Parameter XSS
|
|
76583
Description:
PacketFence contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'destination_url' parameter upon submission to the html/captive-portal/mobile-confirmation.cgi script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
PacketFence html/captive-portal/mobile-confirmation.cgi destination_url Parameter XSS
|
|
76584
Description:
PacketFence contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'destination_url' parameter upon submission to the html/captive-portal/guest-selfregistration.cgi script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
PacketFence html/captive-portal/guest-selfregistration.cgi destination_url Parameter XSS
|
|
76650
Description:
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'udatab' parameter upon submission to the /websoftphone/jsp/PhoneBookCont.jsp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite /websoftphone/jsp/PhoneBookCont.jsp udatab Parameter XSS
|
|
76651
Description:
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'openwin' parameter upon submission to the websoftphone/jsp/CustoData.jsp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite websoftphone/jsp/CustoData.jsp openwin Parameter XSS
|
|
76652
Description:
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'sessionid' parameter upon submission to the websoftphone/jsp/RTCNavigator.jsp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite websoftphone/jsp/RTCNavigator.jsp sessionid Parameter XSS
|
|
76653
Description:
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'next' and 'main' parameters upon submission to the /websoftphone/servlet/DispLogon script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite /websoftphone/servlet/DispLogon Multiple Parameter XSS
|
|
76654
Description:
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'action' parameter upon submission to the ClientMgmt/ClientMgmt script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite ClientMgmt/ClientMgmt action Parameter XSS
|
|
76655
Description:
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate unspecified input relating to phonebook input fields before returning it to the user. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite Phonebook Input Field Unspecified XSS
|
|
76656
Description:
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite contains a flaw that allows a remote Cross-site Request Forgery (CSRF / XSRF) attack. The flaw exists because the application does not require multiple steps or explicit confirmation for sensitive transactions for multiple functionalities, such as dialing, locking, call forwarding or the setting of the DND flag. By using a crafted URL (e.g., a crafted GET request inside an "img" tag), an attacker may trick the victim into clicking on the image to take advantage of the trust relationship between the authenticated victim and the application. Such an attack could trick the victim into executing arbitrary commands in the context of their session with the application, without further prompting or verification.
|
2011-10-24
|
Alcatel-Lucent OmniTouch 8400 Instant Communication Suite Multiple Function CSRF
|
|
76824
Description:
(Description Provided by CVE) : Multiple cross-site scripting (XSS) vulnerabilities in KENT-WEB WEB FORUM before 5.1 allow remote attackers to inject arbitrary web script or HTML via (1) an e-mail address field or (2) a cookie, a related issue to CVE-2011-3383, CVE-2011-3983, and CVE-2011-3984.
|
2011-10-24
|
Kent Web Forum Unspecified XSS (2011-4172)
|
|
77042
Description:
(Description Provided by CVE) : Static code injection vulnerability in install_.php in e107 CMS 0.7.24 and probably earlier versions, when the installation script is not removed, allows remote attackers to inject arbitrary PHP code into e107_config.php via a crafted MySQL server name.
|
2011-10-24
|
e107 CMS install_.php MySQL Server Name Parsing Remote PHP Code Execution
|
|
82629
Description:
Theme My Login Plugin for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the wp-content/plugins/theme-my-login/includes/class-theme-my-login.php script does not validate the 'instance' parameter upon submission to the index.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-24
|
Theme My Login Plugin for WordPress index.php instance Parameter XSS
|
|
83421
Description:
BlueZone Desktop contains a flaw that may allow for a denial of service. The issue is triggered when a user opens a malformed ZFT file, resulting in a loss of availability for the program. This can be exploited remotely by tricking a user into opening the crafted file (e.g., via email), or locally by placing it in a location that may seem safe (e.g., a network share).
|
2011-10-24
|
BlueZone Desktop .zft File Handling DoS
|
|
76594
Description:
phpLDAPadmin contains a flaw related to the lib/functions.php script failing to properly sanitize input passed to the cmd.php script via the 'orderby' parameter before use in a 'create_function()' function call. This may allow a remote attacker to execute arbitrary PHP code.
|
2011-10-23
|
phpLDAPadmin cmd.php orderby Parameter Arbitrary PHP Code Execution
|
|
76593
Description:
phpLDAPadmin contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate input passed via the URL upon submission to the cmd.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-23
|
phpLDAPadmin cmd.php URI XSS
|
|
83422
Description:
InverseFlow contains a flaw that allows a remote Cross-site Request Forgery (CSRF / XSRF) attack. The flaw exists because the application does not require multiple steps or explicit confirmation for sensitive transactions in the /support/user.php script. By using a crafted URL (e.g., a crafted GET request inside an "img" tag), an attacker may trick the victim into clicking on the image to take advantage of the trust relationship between the authenticated victim and the application. Such an attack could trick the victim into adding an administrator in the context of their session with the application, without further prompting or verification.
|
2011-10-23
|
InverseFlow /support/user.php Admin Account Creation CSRF
|
|
76776
Description:
VP-ASP contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to certain unspecified input not being properly sanitized before use in SQL queries. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-10-23
|
VP-ASP Unspecified SQL Injection
|
|
83423
Description:
Google Chrome contains a flaw that may allow for a denial of service. The issue is triggered when a user opens a malformed file containing long unicode strings, resulting in a loss of availability for the program. No further details are available.
|
2011-10-23
|
Google Chrome Long Unicode String Handling DoS
|
|
76620
Description:
(Description Provided by CVE) : Cisco Nexus OS (aka NX-OS) 4.2 and 5.0 and Cisco Unified Computing System with software 1.4 and 2.0 do not properly restrict command-line options, which allows local users to gain privileges via unspecified vectors, aka Bug IDs CSCtf40008, CSCtg18363, CSCtr44645, CSCts10195, and CSCts10188.
|
2011-10-22
|
Cisco Nexus Operating System (NX-OS) / Unified Computing System Multiple Command Parsing Local Shell Command Execution
|
|
87039
Description:
Google Chrome contains a flaw that may allow a remote denial of service. The issue is triggered when a stack exhaustion occurs in the renderer, which will result in a loss of availability for the program.
|
2011-10-22
|
Google Chrome Renderer Stack Exhaustion DoS
|
|
76483
Description:
Chennai Theme for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 's' parameter upon submission to the 'index.php' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-10-21
|
Chennai Theme for WordPress index.php s Parameter XSS
|
|
82480
Description:
Perl-Compatible Regular Expression contains a flaw that may allow a denial of service. The issue is triggered when handling a subpattern that was called recursively, and will result in an infinite loop. This will cause a loss of availability for the program.
|
2011-10-21
|
Perl-Compatible Regular Expression (PCRE) Recursive Subpattern Handling Infinite Loop DoS
|