The Apache Tomcat Windows installer insecurely leaves the default install with a blank administrator password. Versions 5.5.0 through 5.5.28 and 6.0.0 through 6.0.20 are affected.
f8608d7a6d60069ffab1e793f603c654c2740a90aa17b497d091322882ca16d5
Novell eDirectory version 8.8 SP5 iConsole buffer overflow exploit. Written in Python.
95f50c442d3fd3dc5c31b4e796c37252f8f18b011dbce81f67724b44562c1ee0
HP Power Manager Administration universal buffer overflow exploit. Written in Python.
337fad58366611acfcbe84f9d94f843b5856b4b86a3e3ea9b0faf759454d90c4
Mandriva Linux Security Advisory 2009-295 - Apache is affected by SSL injection or man-in-the-middle attacks due to a design flaw in the SSL and/or TLS protocols. A short term solution was released Sat Nov 07 2009 by the ASF team to mitigate these problems. Apache will now reject in-session renegotiation. Additionally the SNI patch was upgraded for 2009.0/MES5 and 2009.1. This update provides a solution to this vulnerability.
935c4b64482fa9b56d8b02e7990e9248bda00add21bc8106a5c513319a5275ed
Linux 2.6.x fs/pipe.c local kernel root exploit.
69aa9abac5149e5b6e072ad4d852d585056410f4a204bc35a2a5f8706218503a
Linux 2.6.31 only fs/pipe.c local kernel root exploit.
d4583e0c8c8143f07220dab7318e6aad1b79a449d032f946c62cc0189d931aed
ToutVirtual VirtualIQ Pro version 3.2 build 7882 suffers from cross site scripting, cross site request forgery, directory traversal, and code execution vulnerabilities.
be15df3bd0178cb4b549275b0607bdc8ef2f56fa239e3f196ae0efb687ac63ef
DeliveryScript suffers from multiple remote file inclusion vulnerabilities.
be8045d0f276da1cb451c95a6f0cf6d06ca1530fb1338893e74120f94d0934a8