Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2011-08-11 CVE-2011-2409 Cross-Site Scripting vulnerability in HP Palm Webos 3.0.0
Cross-site scripting (XSS) vulnerability in the Calendar application in HP Palm webOS 3.x before 3.0.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
hp CWE-79
4.3
2011-08-11 CVE-2011-2408 Cross-Site Scripting vulnerability in HP Palm Webos 3.0.0
Cross-site scripting (XSS) vulnerability in the Contacts application in HP Palm webOS 3.x before 3.0.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
hp CWE-79
4.3
2011-08-11 CVE-2011-2407 Security Bypass and HTML Injection vulnerability in HP OpenView Performance Insight
Unspecified vulnerability in HP OpenView Performance Insight 5.3, 5.31, 5.4, 5.41, 5.41.001, and 5.41.002 allows remote attackers to obtain access via unknown vectors.
network
low complexity
hp
6.4
2011-08-11 CVE-2011-2406 Cross-Site Scripting vulnerability in HP Openview Performance Insight
Cross-site scripting (XSS) vulnerability in HP OpenView Performance Insight 5.3, 5.31, 5.4, 5.41, 5.41.001, and 5.41.002 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
network
hp CWE-79
3.5
2011-08-11 CVE-2011-2405 Improper Input Validation vulnerability in HP products
The HP ProLiant SL Advanced Power Manager (SL-APM) with firmware before 1.20 does not properly validate users, which allows remote attackers to cause a denial of service via unspecified vectors.
network
low complexity
hp CWE-20
7.8
2011-08-11 CVE-2011-2404 Code Injection vulnerability in HP Easy Printer Care Software
A certain ActiveX control in HPTicketMgr.dll in HP Easy Printer Care Software 2.5 and earlier allows remote attackers to download an arbitrary program onto a client machine, and execute this program, via unspecified vectors, a different vulnerability than CVE-2011-4786 and CVE-2011-4787.
network
low complexity
hp CWE-94
7.5
2011-08-11 CVE-2011-2133 Cross-Site Scripting vulnerability in Adobe Robohelp and Robohelp Server
Cross-site scripting (XSS) vulnerability in Adobe RoboHelp 8 and 9 before 9.0.1.262, and RoboHelp Server 8 and 9, allows remote attackers to inject arbitrary web script or HTML via the URI, related to template_stock/whutils.js.
network
adobe CWE-79
4.3
2011-08-11 CVE-2011-2132 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Adobe Flash Media Server
Adobe Flash Media Server (FMS) before 3.5.7, and 4.x before 4.0.3, allows attackers to cause a denial of service (memory corruption) via unspecified vectors.
network
low complexity
adobe CWE-119
5.0
2011-08-11 CVE-2011-2131 Buffer Errors vulnerability in Adobe Creative Suite and Photoshop
Adobe Photoshop 12.0 in Creative Suite 5 (CS5) and 12.1 in Creative Suite 5.1 (CS5.1) allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted GIF file.
network
adobe CWE-119
critical
9.3
2011-08-11 CVE-2011-1357 Cross-Site Scripting vulnerability in IBM Websphere Service Registry and Repository
Cross-site scripting (XSS) vulnerability in agentDetect.jsp in the web UI in IBM WebSphere Service Registry and Repository (WSRR) 6.3 before 6.3.0.5, 7.0 before 7.0.0.5, and 7.5 before 7.5.0.1 allows remote attackers to inject arbitrary web script or HTML via the User-Agent HTTP header.
network
ibm CWE-79
4.3