Vulnerabilities

DATE CVE VULNERABILITY TITLE RISK
2011-05-03 CVE-2011-1844 Resource Management Errors vulnerability in Microsoft Silverlight
Memory leak in Microsoft Silverlight 4 before 4.0.60310.0 allows remote attackers to cause a denial of service (memory consumption) via an application involving a popup control and a custom DependencyProperty property, related to lack of garbage collection.
network
low complexity
microsoft CWE-399
7.8
2011-05-03 CVE-2011-1724 Unspecified vulnerability in HP Virtual Server Environment 6.0/6.0.1
Unspecified vulnerability in HP Virtual Server Environment before 6.3 allows remote authenticated users to gain privileges via unknown vectors.
network
hp
6.0
2011-05-03 CVE-2011-1577 Improper Restriction of Operations Within the Bounds of A Memory Buffer vulnerability in Linux Kernel
Heap-based buffer overflow in the is_gpt_valid function in fs/partitions/efi.c in the Linux kernel 2.6.38 and earlier allows physically proximate attackers to cause a denial of service (OOPS) or possibly have unspecified other impact via a crafted size of the EFI GUID partition-table header on removable media.
local
low complexity
linux CWE-119
4.9
2011-05-03 CVE-2011-1545 Cross-Site Request Forgery (CSRF) vulnerability in HP Insight Control Performance Management
Cross-site request forgery (CSRF) vulnerability in HP Insight Control Performance Management before 6.3 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
network
hp CWE-352
6.8
2011-05-03 CVE-2011-1544 Unspecified vulnerability in HP Insight Control Performance Management
Unspecified vulnerability in HP Insight Control Performance Management before 6.3 allows remote authenticated users to gain privileges via unknown vectors.
network
hp
6.0
2011-05-03 CVE-2011-1539 Unspecified vulnerability in HP Proliant Support Pack 8.5
Unspecified vulnerability in HP Proliant Support Pack (PSP) before 8.7 allows remote attackers to obtain sensitive information via unknown vectors.
network
low complexity
hp
5.0
2011-05-03 CVE-2011-1538 Improper Input Validation vulnerability in HP Proliant Support Pack 8.5
Open redirect vulnerability in HP Proliant Support Pack (PSP) before 8.7 allows remote authenticated users to redirect other users to arbitrary web sites and conduct phishing attacks via unspecified vectors.
network
hp CWE-20
4.9
2011-05-03 CVE-2011-1537 Cross-Site Scripting vulnerability in HP Proliant Support Pack 8.5
Cross-site scripting (XSS) vulnerability in HP Proliant Support Pack (PSP) before 8.7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
network
hp CWE-79
4.3
2011-05-03 CVE-2011-1523 Cross-Site Scripting vulnerability in Nagios
Cross-site scripting (XSS) vulnerability in statusmap.c in statusmap.cgi in Nagios 3.2.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the layer parameter.
network
nagios CWE-79
4.3
2011-05-03 CVE-2011-1087 Buffer Errors vulnerability in Videolan VLC Media Player 1.0.5
Buffer overflow in VideoLAN VLC media player 1.0.5 allows user-assisted remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted .mp3 file that is played during bookmark creation.
network
high complexity
videolan CWE-119
7.6