| OSVDB ID | Disclosure Date | Title |
|
71153
Description:
Tembria Server Monitor contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'siteid' parameter upon submission to the logbook.asp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-14
|
Tembria Server Monitor logbook.asp siteid Parameter XSS
|
|
71154
Description:
Tembria Server Monitor contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'siteid' parameter upon submission to the monitor-events.asp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-14
|
Tembria Server Monitor monitor-events.asp siteid Parameter XSS
|
|
71155
Description:
Tembria Server Monitor contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'siteid', 'action' and 'sel' parameters upon submission to the monitor-list.asp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-14
|
Tembria Server Monitor monitor-list.asp Multiple Parameter XSS
|
|
71156
Description:
Tembria Server Monitor contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'siteid' and 'type' parameters upon submission to the monitor-views.asp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-14
|
Tembria Server Monitor monitor-views.asp Multiple Parameter XSS
|
|
71157
Description:
Tembria Server Monitor contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'siteid' parameter upon submission to the reports-config-by-device.asp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-14
|
Tembria Server Monitor reports-config-by-device.asp siteid Parameter XSS
|
|
71158
Description:
Tembria Server Monitor contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'siteid' parameter upon submission to the reports-config-by-monitor.asp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-14
|
Tembria Server Monitor reports-config-by-monitor.asp siteid Parameter XSS
|
|
71159
Description:
Tembria Server Monitor contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'siteid' and 'sel' parameters upon submission to the reports-list.asp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-14
|
Tembria Server Monitor reports-list.asp Multiple Parameter XSS
|
|
71160
Description:
Tembria Server Monitor contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'siteid' parameter upon submission to the reports-monitoring-queue.asp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-14
|
Tembria Server Monitor reports-monitoring-queue.asp siteid Parameter XSS
|
|
71161
Description:
Tembria Server Monitor contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'action' parameter upon submission to the site-list.asp script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-14
|
Tembria Server Monitor site-list.asp action Parameter XSS
|
|
71162
Description:
Tembria Server Monitor contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered the program encrypts credentials with a simple substitution cipher, allowing an attacker who is able to obtain the authentication.dat file through previous compromise of the system to easily decrypt credentials.
|
2011-02-14
|
Tembria Server Monitor authentication.dat Encoded Credentials Remote Disclosure
|
|
71902
Description:
Atlassian Confluence contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate input passed via the '{toc}' macro before returning it to the user. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-14
|
Atlassian Confluence {toc} Macro XSS
|
|
72995
Description:
(Description Provided by CVE) : The Radeon GPU drivers in the Linux kernel before 2.6.38-rc5 do not properly validate data related to the AA resolve registers, which allows local users to write to arbitrary memory locations associated with (1) Video RAM (aka VRAM) or (2) the Graphics Translation Table (GTT) via crafted values.
|
2011-02-14
|
Linux Kernel Radeon GPU Drivers AA Resolve Register Data Validation Local Memory Write
|
|
75886
Description:
Rapid Leech contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when a remote attacker sends a direct request to multiple scripts, which discloses the software's installation path resulting in a loss of confidentiality. While such information is relatively low risk, it is often useful in carrying out additional, more focused attacks.
|
2011-02-14
|
Rapid Leech Multiple Script Direct Request Path Disclosure
|
|
78995
Description:
(Description Provided by CVE) : Unrestricted file upload vulnerability in attachement.php in HDWiki 5.0 allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in image directory.
|
2011-02-13
|
HDWiki attachment.php File Upload Remote Code Execution
|
|
72528
Description:
OpenLDAP contains a flaw in the 'back-ldap' component. The issue is due to an error within chain.c when a slave server forwards password failures to a master server. With a specially crafted request containing an invalid password, a remote attacker can bypass authentication settings.
|
2011-02-13
|
OpenLDAP back-ldap chain.c Slave Server Invalid Password External-program Authentication Bypass
|
|
72529
Description:
OpenLDAP contains a flaw in the 'back-ndb' component. The issue is due to an error within bind.cpp when handling authentication for a 'rootdn' Distinguished Name (DN). This flaw may allow a remote attacker to bypass authentication settings and perform arbitrary actions.
|
2011-02-13
|
OpenLDAP back-ndb bind.cpp root Distinguished Name (DN) Arbitrary Password Authentication Bypass
|
|
72530
Description:
OpenLDAP contains a flaw in the handling of certain MODRDN requests that may allow a remote denial of service. The issue is due to an error when handling relative Distinguished Name (DN) modification requests (aka MODRDN operation). With a specially crafted request containing an empty value for the OldDN field, a remote attacker can cause the service to crash.
|
2011-02-13
|
OpenLDAP slapd modrdn.c Malformed Relative Distinguished Name (DN) Modification Request (MODRDN) Remote DoS
|
|
73279
Description:
Unknown / Incomplete
|
2011-02-13
|
NcFTPD Multiple Method Traversal Arbitrary Directory Listing
|
|
73770
Description:
(Description Provided by CVE) : Unspecified vulnerability in the PEF input file loader in Hex-Rays IDA Pro 5.7 and 6.0 has unknown impact and attack vectors.
|
2011-02-13
|
IDA Pro PEF Input File Loader Unspecified Issue
|
|
75805
Description:
(Description Provided by CVE) : Escort Agency CMS (aka escort-agency-cms) allows remote attackers to obtain sensitive information via crafted array parameters in a request to a .php file, which reveals the installation path in an error message, as demonstrated by makethumb.php and certain other files.
|
2011-02-13
|
Escort Agency CMS Multiple Script Direct Request Path Disclosure
|
|
70949
Description:
Dokeos contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'code' parameter upon submission to the main/inc/latex.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-12
|
Dokeos main/inc/latex.php code Parameter XSS
|
|
70876
Description:
Escort Agency CMS contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the program not properly sanitizing user-supplied input from the URL when viewing model information. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-02-12
|
Escort Agency CMS URI SQL Injection
|
|
70868
Description:
ProFTPD contains a flaw that may allow a remote denial of service. The issue is triggered when the 'mod_sftp' module fails to restrict the maximum payload size of SSH packets, which may be exploited via crafted SSH packets sent to the server to cause a denial of service.
|
2011-02-12
|
ProFTPD mod_sftp Component SSH Payload DoS
|
|
71009
Description:
Simple Machines Forum contains a flaw related to the SSI.php failing to check for guest access permission during function calls. This may allow an attacker to call restricted functions and disclose 'Recent Posts' and 'Recent Topics' in forums which have guest access disabled.
|
2011-02-12
|
Simple Machines Forum (SMF) SSI.php Guest Access Restriction Bypass
|
|
75901
Description:
Virtual War contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when a remote attacker sends a direct request to multiple scripts, which discloses the software's installation path resulting in a loss of confidentiality. While such information is relatively low risk, it is often useful in carrying out additional, more focused attacks.
|
2011-02-12
|
Virtual War (VWar) Multiple Script Direct Request Path Disclosure
|
|
85709
Description:
GlobalSCAPE CuteZIP is prone to an overflow condition. The program fails to properly sanitize user-supplied input resulting in a buffer overflow. With a specially crafted ZIP file, a context-dependent attacker can potentially execute arbitrary code or cause a denial of service.
|
2011-02-12
|
GlobalSCAPE CuteZIP ZIP File Handling Overflow
|
|
70925
Description:
Apache Continuum contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-11
|
Apache Continuum Project Pages Unspecified XSS (2011-0533)
|
|
70960
Description:
MySQL Eventum contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate input appended to the URL upon submission to the forgot_password.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-11
|
MySQL Eventum forgot_password.php URI XSS
|
|
70961
Description:
MySQL Eventum contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'keywords', 'customer_id', 'status', 'priority', 'category', 'customer_email', 'reporter', 'release' and 'pageRow' parameters upon submission to the list.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-11
|
MySQL Eventum list.php Multiple Parameter XSS
|
|
70962
Description:
phpMyAdmin contains a flaw related to the 'PMA_Bookmark_get' function in 'libraries/bookmark.lib.php' failing to properly restrict bookmark queries. This makes it easier for a remote authenticated attacker to cause another user to execute bookmarked SQL queries.
|
2011-02-11
|
phpMyAdmin SQL Query Bookmarks Arbitrary SQL Query Execution
|
|
70877
Description:
TaskFreak contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'sContext', 'sort', 'dir' and 'show' POST parameters upon submission to the index.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-11
|
TaskFreak index.php Multiple Parameter XSS
|
|
70878
Description:
TaskFreak contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'dir' and 'show' GET parameters upon submission to the print_list.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-11
|
TaskFreak print_list.php Multiple Parameter XSS
|
|
70932
Description:
TaskFreak contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the HTTP referer header upon submission to the 'rss.php' script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-11
|
TaskFreak rss.php HTTP Referer Header XSS
|
|
70924
Description:
Apache Continuum contains a flaw that allows a remote Cross-site Request Forgery (CSRF / XSRF) attack. The flaw exists because the application does not require multiple steps or explicit confirmation for sensitive transactions for administrative credential modification actions. By using a crafted URL (e.g., a crafted GET request inside an "img" tag), an attacker may trick the victim into clicking on the image to take advantage of the trust relationship between the authenticated victim and the application. Such an attack could trick the victim into executing arbitrary commands in the context of their session with the application, without further prompting or verification.
|
2011-02-11
|
Apache Continuum Multiple Admin Function CSRF
|
|
70896
Description:
Kunena contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the index.php script not properly sanitizing user-supplied input to the 'catids' parameter on the search page. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data. Additionally, if a failed query is performed, the program will disclose stacktrace information, along with the full version of Kunena, PHP and MySQL as well as the path to kunena.search.class.php, which often starts with /home/username, which may disclose a username. While such information is relatively low risk, it is often useful in carrying out additional, more focused attacks.
|
2011-02-11
|
Kunena Component for Joomla! index.php catids Parameter SQL Injection
|
|
75233
Description:
Simple Machines Forum contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'cleanRequest' function in the QueryString.php script not properly sanitizing user-supplied input to the 'start' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-02-11
|
Simple Machines Forum (SMF) QueryString.php cleanRequest Function start Parameter SQL Injection
|
|
75235
Description:
(Description Provided by CVE) : The loadUserSettings function in Load.php in Simple Machines Forum (SMF) before 1.1.13, and 2.x before 2.0 RC5, does not properly handle invalid login attempts, which might make it easier for remote attackers to obtain access or cause a denial of service via a brute-force attack.
|
2011-02-11
|
Simple Machines Forum (SMF) Load.php loadUserSettings Function Invalid Login Attempt Brute-Force Weakness
|
|
75234
Description:
Simple Machines Forum contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the 'constructPageIndex' function in the Subs.php script not properly sanitizing user-supplied input to the 'start' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-02-11
|
Simple Machines Forum (SMF) Subs.php constructPageIndex Function start Parameter SQL Injection
|
|
78892
Description:
HDWiki contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the model/comment.class.php script not properly sanitizing user-supplied input passed via the URL after hdwiki/index.php. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-02-11
|
HDWiki model/comment.class.php URI SQL Injection
|
|
80821
Description:
FreeNAS contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'ifname', 'ifnum', 'fetch_link', and 'error_text' parameters upon submission to the program. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-02-11
|
FreeNAS Multiple Parameter XSS
|