Browse Database

Browsing Vulnerabilities Disclosed in September of 2011

<< Back to Browse
OSVDB IDDisclosure DateTitle
75401 2011-09-09 Django URLField Redirect Response Parsing Local File Enumeration
75400 2011-09-09 Django X-Forwarded-Host HTTP Header Parsing Cache Poisoning Weakness
86070 2011-09-09 MelOn Player p_about.ini Config File Handling Overflow
75252 2011-09-09 Community Events Plugin for WordPress wp-content/plugins/community-events/tracker.php id Parameter SQL Injection
76298 2011-09-09 Phorum admin.php phorum_admin_token XSS
76810 2011-09-09 Django verify_exists Location Header Parsing URLField Redirection Weakness
81480 2011-09-09 OpenStack Compute (Nova) nova-api Component Resource Exhaustion HTTP Request Parsing Remote DoS
86069 2011-09-09 A to Z Category Listing Plugin for WordPress post_retrive_ajax.php R Parameter SQL Injection
75251 2011-09-08 Community Events Plugin for WordPress wp-content/plugins/community-events/tracker.php id Parameter XSS
75676 2011-09-08 libpng libpng/pngrutil.c png_handle_cHRM() Function cHRM Chunk PNG File Handling Remote DoS
75307 2011-09-08 Cyrus IMAP Server map/nntpd.c split_wildmats() Function NNTP Command Parsing Remote Overflow
75286 2011-09-08 Pure-FTPd username Field Traversal Arbitrary Directory Creation
75306 2011-09-08 Pure-FTPd username Field Symlink Arbitrary File Overwrite
75685 2011-09-08 Perl Fast CGI (FCGI) Module Environment Variable Sharing HTTP Headers Remote Authentication Bypass
77679 2011-09-08 SCORM Cloud For WordPress Plugin for WordPress ajax.php active Parameter SQL Injection
85301 2011-09-08 Blue Coat Director HTTP TRACE Request XSS
85714 2011-09-08 SilverStripe code/sitefeatures/PageCommentInterface.php User Comment Submission Cookie Deserialization Handling Remote Code Execution
75236 2011-09-08 AM4SS Admin Addition CSRF
75352 2011-09-08 Megalith Authentication Unspecified Privilege Escalation
75351 2011-09-08 Quassel IRC src/core/ctcpparser.cpp CtcpParser::packedReply() Method CTCP Message Parsing Remote DoS
75622 2011-09-08 Blue Coat Director TLS Renegotiation Handshakes MiTM Plaintext Data Injection
76023 2011-09-08 Google Website Optimizer Component for Joomla! Section Names pggwob Page Tags XSS
86068 2011-09-08 OpenCart index.php product_id Parameter SQL Injection
86067 2011-09-08 Ubuntu Linux FTP Server account Command Overflow DoS
86066 2011-09-08 Backtrack Linux FTP Server account Command Overflow DoS
75223 2011-09-07 Hastymail2 Unspecified Plugin XSS
75222 2011-09-07 Hastymail2 Unspecified Compose Page XSS
75225 2011-09-07 GnuCash Perl.exe Path Subversion Executable File Injection Code Execution
75347 2011-09-07 Wireshark DLL Hijacking Path Subversion Local Privilege Escalation
75226 2011-09-07 Zikula Application Framework index.php themename Parameter XSS
75228 2011-09-07 wpcu3er Plugin for WordPress wp-content/plugins/wpcu3er/php/ajaxReq.php File Upload Arbitrary PHP Code Execution
75346 2011-09-07 Wireshark Packet Trace File Handling Remote DoS
75653 2011-09-07 Qt src/gui/image/qtiffhandler.cpp TIFF Reader Grayscale Image Handling Overflow
75217 2011-09-07 Cumin Log File Broker Authentication Credentials Local Disclosure
75246 2011-09-07 Cisco Nexus Series Switches ACL Deny Statement Security Bypass
75262 2011-09-07 LightNEasy LightNEasy.php Multiple Parameter XSS
75348 2011-09-07 Wireshark CSN.1 Dissector Packet Handling Remote DoS
75451 2011-09-07 MYRE Real Estate Software findagent.php Multiple Parameter XSS
75452 2011-09-07 MYRE Real Estate Software findagent.php page Parameter SQL Injection
75586 2011-09-07 Wireshark OpenSafety Dissector epan/dissectors/packet-opensafety.c unxorFrame Function DoS

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2002 - 2013 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use