Vulnerabilities > Critical

DATE CVE VULNERABILITY TITLE RISK
2011-03-25 CVE-2011-1519 Improper Authentication vulnerability in IBM Lotus Domino
The remote console in the Server Controller in IBM Lotus Domino 7.x and 8.x verifies credentials against a file located at a UNC share pathname specified by the client, which allows remote attackers to bypass authentication, and consequently execute arbitrary code, by placing this pathname in the COOKIEFILE field.
network
low complexity
ibm CWE-287
critical
10.0
2011-03-23 CVE-2010-4773 Remote Security vulnerability in Hitachi products
Unspecified vulnerability in Hitachi EUR Form Client before 05-10 -/D 2010.11.15 and 05-10-CA (* 2) 2010.11.15; Hitachi EUR Form Service before 05-10 -/D 2010.11.15; and uCosminexus EUR Form Service before 07-60 -/D 2010.11.15 on Windows, before 05-10 -/D 2010.11.15 and 07-50 -/D 2010.11.15 on Linux, and before 07-50 -/C 2010.11.15 on AIX; allows remote attackers to execute arbitrary code via unknown attack vectors.
network
low complexity
hitachi microsoft linux ibm
critical
10.0
2011-03-22 CVE-2011-1505 Unspecified vulnerability in IBM Lotus Quickr 8.1
Unspecified vulnerability in IBM Lotus Quickr 8.1 before 8.1.0.27 services for Lotus Domino has unknown impact and attack vectors, aka SPR ESEO8DQME2.
network
low complexity
ibm
critical
10.0
2011-03-22 CVE-2011-0331 Resource Management Errors vulnerability in Honeywell Scanserver Activex Control 780.0.20.5
Use-after-free vulnerability in the addOSPLext method in the Honeywell ScanServer ActiveX control 780.0.20.5 allows remote attackers to execute arbitrary code via a crafted HTML document.
network
honeywell CWE-399
critical
9.3
2011-03-22 CVE-2010-4228 Buffer Errors vulnerability in Novell Netware 5.1/6.0/6.5
Stack-based buffer overflow in NWFTPD.NLM before 5.10.02 in the FTP server in Novell NetWare allows remote authenticated users to execute arbitrary code or cause a denial of service (abend) via a long DELE command, a different vulnerability than CVE-2010-0625.4.
network
low complexity
novell CWE-119
critical
9.0
2011-03-16 CVE-2011-0889 Remote Code Execution vulnerability in HP Client Automation
Unspecified vulnerability in HP Client Automation Enterprise (aka HPCA or Radia Notify) 5.11, 7.2, 7.5, 7.8, and 7.9 allows remote attackers to execute arbitrary code via unknown vectors.
network
low complexity
hp
critical
10.0
2011-03-11 CVE-2011-1290 Numeric Errors vulnerability in multiple products
Integer overflow in WebKit, as used on the Research In Motion (RIM) BlackBerry Torch 9800 with firmware 6.0.0.246, in Google Chrome before 10.0.648.133, and in Apple Safari before 5.0.5, allows remote attackers to execute arbitrary code via unknown vectors related to CSS "style handling," nodesets, and a length value, as demonstrated by Vincenzo Iozzo, Willem Pinckaers, and Ralf-Philipp Weinmann during a Pwn2Own competition at CanSecWest 2011.
network
low complexity
apple rim CWE-189
critical
10.0
2011-03-10 CVE-2011-1346 Unspecified vulnerability in Microsoft Internet Explorer 8
Unspecified vulnerability in Microsoft Internet Explorer 8 on Windows 7 allows remote attackers to execute arbitrary code via unknown vectors, as demonstrated by Stephen Fewer as the second of three chained vulnerabilities during a Pwn2Own competition at CanSecWest 2011.
network
microsoft
critical
9.3
2011-03-10 CVE-2011-1345 Unspecified vulnerability in Microsoft Internet Explorer 8
Microsoft Internet Explorer 6, 7, and 8 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, as demonstrated by Stephen Fewer as the first of three chained vulnerabilities during a Pwn2Own competition at CanSecWest 2011, aka "Object Management Memory Corruption Vulnerability."
network
microsoft
critical
9.3
2011-03-09 CVE-2011-0464 Remote Code Execution vulnerability in Novell Vibe Onprem 3.0
Unspecified vulnerability in Novell Vibe OnPrem 3.0 before Hot Patch 1 allows remote attackers to execute arbitrary code via unknown vectors.
network
low complexity
novell
critical
10.0