Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2010-2793

EPSS 0.23% · P46
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2010-2793

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
Race condition in the SPICE (aka spice-activex) plug-in for Internet Explorer in Red Hat Enterprise Virtualization (RHEV) Manager before 2.2.4 allows local users to create a certain named pipe, and consequently gain privileges, via vectors involving knowledge of the name of this named pipe, in conjunction with use of the ImpersonateNamedPipeClient function.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
Red Hat SPICE实现竞争条件漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
Red Hat SPICE是Red Hat Enterprise Virtualization for Desktops产品的内核组件,专为虚拟环境设计的自适应远程呈现协议。 SPICE在实现上存在竞争条件漏洞,攻击者可利用此漏洞获取认证细节访问权限,对SPICE执行中间人攻击。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2010-2793

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2010-2793

登录查看更多情报信息。

Same Patch Batch · n/a · 2010-12-08 · 14 CVEs total

CVE-2010-4480PhpMyAdmin error.php文件跨站脚本攻击漏洞
CVE-2010-4500MRCGIGUY FreeTicket contact.php文件多个SQL注入漏洞
CVE-2010-3372NorduGrid ARC非信任搜索路径漏洞
CVE-2010-4108HP HP-UX设计错误漏洞
CVE-2010-4109HP Palm webOS Contacts应用程序跨站脚本攻击漏洞
CVE-2010-3699Citrix Xen 'blkback/blktap/netback'泄露内核线程本地拒绝服务漏洞
CVE-2010-3860Red Hat IcedTea信息泄露漏洞
CVE-2010-3920Seiko Epson打印机驱动安装程序权限许可和访问控制漏洞
CVE-2010-4012Apple iPhone_OS竞争条件漏洞
CVE-2010-4502CA Internet Security Suite KmxSbx.sys整数溢出漏洞
CVE-2010-4503Aigaion indexlight.php文件SQL注入漏洞
CVE-2010-4504Intelliants eSyndiCat Directory多个跨站脚本攻击漏洞
CVE-2010-4505Injader login.php文件多个SQL注入漏洞

IV. Related Vulnerabilities

V. Comments for CVE-2010-2793

No comments yet


Leave a comment