[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

 
 
Paid content will be excluded from the download.

Filter
Matches : 14840 Download | Alert*

The host is installed with UltraVNC 1.1.9.8 and is prone to an information disclosure vulnerability. A flaw is present in the application, which fails to handle multiple memory leaks in VNC client code. Successful exploitation could allow attackers to read stack memory and obtain sensitive information and when combined with another vulnerability, it can be used to leak stack memory and bypass ASLR ...

The host is installed with UltraVNC 1.1.9.8 and is prone to a heap buffer overflow vulnerability. A flaw is present in the application, which fails to an issue in VNC client code. Successful exploitation could allow attackers to cause code execution.

The host is installed with UltraVNC 1.1.9.8 and is prone to a buffer underflow vulnerability. A flaw is present in the application, which fails to an issue in VNC client code. Successful exploitation could allow attackers to cause code execution.

The host is installed with PHP and is prone to information disclosure vulnerability. A flaw is present in the mb_strcut() function, which fails to handle overly large value passed to the length parameter. Successful exploitation could allow remote attackers to obtain sensitive information.

The host is installed with Google Chrome before 11.0.696.14 and is prone to denial of service vulnerability. A flaw is present in SPDY implementation in the application which fail to SPDY responses. Successful exploitation allow remote SPDY servers to cause a denial of service by canceling a stream.

The host is installed with PHP and is prone to SQL injection vulnerability. A flaw is present in the set_magic_quotes_runtime function in PHP 5.3.2 and 5.3.3. When the MySQLi extension is used, there is no proper interaction with the use of mysqli_fetch_assoc function. Successful exploitation could allow an attacker to execute arbitrary SQL queries and gain unauthorized access.

The host is installed with OpenSSL and is prone to OCSP stapling vulnerability. A flaw is present in the application, which fails to correctly parse malformed ClientHello handshake messages. Successful exploitation could allow remote attackers to obtain contents of parsed OCSP (Online Certificate Status Protocol) extensions and cause denial of service by triggering invalid memory accesses.

The host is installed with Adobe Coldfusion and is prone to session fixation vulnerability. A flaw is present in the application 8.0 through 9.0.1 caused by an unspecified error which will persuade a victim to visit a specially-crafted link and log into the application. Successful exploitation allow remote attackers to hijack web sessions via unspecified vectors.

The host is installed with Adobe Coldfusion and is prone to cross-site scripting (XSS) vulnerability. A flaw is present in the application 8.0 through 9.0.1 where it fails to properly validate user-supplied input. Successful exploitation allows remote attackers to inject arbitrary web script or HTML via the cfform tag.

The host is installed with Adobe Coldfusion and is prone to unspecified vulnerability. A flaw is present in the application 8.0 through 9.0.1 caused by an error in the ColdFusion administrator console. Successful exploitation allows attackers to obtain sensitive information via unknown vectors.


Pages:      Start    1070    1071    1072    1073    1074    1075    1076    1077    1078    1079    1080    1081    1082    1083    ..   1483

© SecPod Technologies