Total
9170 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2009-4325 | 1 Ibm | 1 Db2 | 2010-06-28 | 6.4 MEDIUM | N/A |
The Client Interfaces component in IBM DB2 8.2 before FP18, 9.1 before FP8, 9.5 before FP5, and 9.7 before FP1 does not validate an unspecified pointer, which allows attackers to overwrite "external memory" via unknown vectors, related to a missing "check for null pointers." | |||||
CVE-2009-4327 | 1 Ibm | 1 Db2 | 2010-06-28 | 5.0 MEDIUM | N/A |
The Common Code Infrastructure component in IBM DB2 9.5 before FP5 and 9.7 before FP1 does not properly validate the size of a memory pool during a creation attempt, which allows attackers to cause a denial of service (memory consumption) via unspecified vectors. | |||||
CVE-2010-2505 | 1 Saschart | 1 Sascam Webcam Server | 2010-06-28 | 5.0 MEDIUM | N/A |
Soft SaschArt SasCAM Webcam Server 2.6.5, 2.7, and earlier allows remote attackers to cause a denial of service (crash) via a large number of requests with a long line, as demonstrated using a long GET request. | |||||
CVE-2010-2327 | 1 Ibm | 2 Websphere Application Server, Z\/os | 2010-06-20 | 4.3 MEDIUM | N/A |
mod_ibm_ssl in IBM HTTP Server 6.0 before 6.0.2.43, 6.1 before 6.1.0.33, and 7.0 before 7.0.0.11, as used in IBM WebSphere Application Server (WAS) on z/OS, does not properly handle a large HTTP request body in uploading over SSL, which might allow remote attackers to cause a denial of service (daemon fail) via an upload. | |||||
CVE-2010-2075 | 1 Unrealircd | 1 Unrealircd | 2010-06-17 | 7.5 HIGH | N/A |
UnrealIRCd 3.2.8.1, as distributed on certain mirror sites from November 2009 through June 2010, contains an externally introduced modification (Trojan Horse) in the DEBUG3_DOLOG_SYSTEM macro, which allows remote attackers to execute arbitrary commands. | |||||
CVE-2010-1379 | 1 Apple | 2 Mac Os X, Mac Os X Server | 2010-06-17 | 5.0 MEDIUM | N/A |
Printer Setup in Apple Mac OS X 10.6 before 10.6.4 does not properly interpret character encoding, which allows remote attackers to cause a denial of service (printing failure) by deploying a printing device that has a Unicode character in its printing-service name. | |||||
CVE-2002-2433 | 1 Novell | 2 Netware, Netware Ftp Server | 2010-06-07 | 4.0 MEDIUM | N/A |
NWFTPD.nlm before 5.03b in the FTP server in Novell NetWare allows remote authenticated users to cause a denial of service (abend) via a crafted ABOR command. | |||||
CVE-2010-1273 | 1 Emweb | 1 Wt | 2010-06-06 | 9.3 HIGH | N/A |
Emweb Wt before 3.1.1 does not validate the UTF-8 encoding of (1) form values and (2) JSignal arguments, which has unspecified impact and remote attack vectors. | |||||
CVE-2009-4788 | 1 Pligg | 1 Pligg Cms | 2010-06-02 | 4.3 MEDIUM | N/A |
Multiple open redirect vulnerabilities in Pligg 1.0.2 and earlier allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the (1) return parameter to pligg/login.php and the (2) HTTP Referer header to user_settings.php. | |||||
CVE-2010-2115 | 1 Solarwinds | 1 Tftp Server | 2010-05-31 | 5.0 MEDIUM | N/A |
SolarWinds TFTP Server 10.4.0.10 allows remote attackers to cause a denial of service (no new connections) via a crafted read request. | |||||
CVE-2010-1561 | 1 Cisco | 1 Pgw 2200 Softswitch | 2010-05-20 | 7.8 HIGH | N/A |
The SIP implementation on the Cisco PGW 2200 Softswitch with software 9.7(3)S before 9.7(3)S11 and 9.7(3)P before 9.7(3)P11 allows remote attackers to cause a denial of service (device crash) via a long message, aka Bug ID CSCsk44115. | |||||
CVE-2010-1562 | 1 Cisco | 1 Pgw 2200 Softswitch | 2010-05-20 | 7.8 HIGH | N/A |
The SIP implementation on the Cisco PGW 2200 Softswitch with software 9.7(3)S before 9.7(3)S9 and 9.7(3)P before 9.7(3)P9 allows remote attackers to cause a denial of service (device crash) via a malformed Contact header, aka Bug ID CSCsj98521. | |||||
CVE-2010-1563 | 1 Cisco | 1 Pgw 2200 Softswitch | 2010-05-20 | 7.8 HIGH | N/A |
The SIP implementation on the Cisco PGW 2200 Softswitch with software 9.7(3)S before 9.7(3)S9 and 9.7(3)P before 9.7(3)P9 allows remote attackers to cause a denial of service (device crash) via a malformed header, aka Bug ID CSCsk04588. | |||||
CVE-2010-1567 | 1 Cisco | 1 Pgw 2200 Softswitch | 2010-05-20 | 7.8 HIGH | N/A |
The SIP implementation on the Cisco PGW 2200 Softswitch with software before 9.8(1)S5 allows remote attackers to cause a denial of service (device crash) via a malformed header, aka Bug ID CSCsz13590. | |||||
CVE-2010-0601 | 1 Cisco | 1 Pgw 2200 Softswitch | 2010-05-20 | 7.8 HIGH | N/A |
The MGCP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S11 allows remote attackers to cause a denial of service (device crash) via a malformed packet, aka Bug ID CSCsl39126. | |||||
CVE-2010-0602 | 1 Cisco | 1 Pgw 2200 Softswitch | 2010-05-20 | 7.8 HIGH | N/A |
The SIP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S11 allows remote attackers to cause a denial of service (device crash) via a malformed packet, aka Bug ID CSCsk32606. | |||||
CVE-2010-1189 | 1 Mediawiki | 1 Mediawiki | 2010-05-19 | 5.0 MEDIUM | N/A |
MediaWiki before 1.15.2 does not prevent wiki editors from linking to images from other web sites in wiki pages, which allows editors to obtain IP addresses and other information of wiki users by adding a link to an image on an attacker-controlled web site, aka "CSS validation issue." | |||||
CVE-2010-0603 | 1 Cisco | 1 Pgw 2200 Softswitch | 2010-05-19 | 7.8 HIGH | N/A |
The SIP implementation on the Cisco PGW 2200 Softswitch with software before 9.7(3)S10 allows remote attackers to cause a denial of service (device crash) via a malformed session attribute, aka Bug ID CSCsk40030. | |||||
CVE-2010-0101 | 1 Lexmark | 61 25xxn, C510, C52x and 58 more | 2010-05-06 | 7.8 HIGH | N/A |
The embedded HTTP server in multiple Lexmark laser and inkjet printers and MarkNet devices, including X94x, W840, T656, N4000, E462, C935dn, 25xxN, and other models, allows remote attackers to cause a denial of service (operating system halt) via a malformed HTTP Authorization header. | |||||
CVE-2010-1592 | 1 Sisoftware | 1 Sandra | 2010-04-28 | 6.9 MEDIUM | N/A |
sandra.sys 15.18.1.1 and earlier in the Sandra Device Driver in SiSoftware Sandra 16.10.2010.1 and earlier allows local users to gain privileges or cause a denial of service (system crash) via unspecified vectors involving "Model-Specific Registers." |