|
295381
|
- |
|
pythonpaste
|
paste
|
Paste Script 1.7.5 and earlier does not properly set group memberships during execution with root privileges, which might allow remote attackers to bypass intended file-access restrictions by leverag…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-0878
|
2024-11-21 10:35 |
2012-05-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295382
|
- |
|
mumble
|
mumble
|
Mumble 1.2.3 and earlier uses world-readable permissions for .local/share/data/Mumble/.mumble.sqlite files in home directories, which might allow local users to obtain a cleartext password and config…
|
CWE-310
Cryptographic Issues
|
CVE-2012-0863
|
2024-11-21 10:35 |
2012-04-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295383
|
- |
|
mozilla
|
bugzilla
|
template/en/default/list/list.js.tmpl in Bugzilla 2.x and 3.x before 3.6.9, 3.7.x and 4.0.x before 4.0.6, and 4.1.x and 4.2.x before 4.2.1 does not properly handle multiple logins, which allows remot…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-0466
|
2024-11-21 10:35 |
2012-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295384
|
- |
|
mozilla
|
bugzilla
|
Bugzilla 3.5.x and 3.6.x before 3.6.9, 3.7.x and 4.0.x before 4.0.6, and 4.1.x and 4.2.x before 4.2.1, when the inbound_proxies option is enabled, does not properly validate the X-Forwarded-For HTTP …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-0465
|
2024-11-21 10:35 |
2012-04-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295385
|
- |
|
mozilla
|
firefox thunderbird thunderbird_esr seamonkey
|
Mozilla Firefox 4.x through 11.0, Firefox ESR 10.x before 10.0.4, Thunderbird 5.0 through 11.0, Thunderbird ESR 10.x before 10.0.4, and SeaMonkey before 2.9 allow remote attackers to spoof the addres…
|
NVD-CWE-Other
|
CVE-2012-0479
|
2024-11-21 10:35 |
2012-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295386
|
- |
|
mozilla
|
firefox thunderbird thunderbird_esr seamonkey
|
The texImage2D implementation in the WebGL subsystem in Mozilla Firefox 4.x through 11.0, Firefox ESR 10.x before 10.0.4, Thunderbird 5.0 through 11.0, Thunderbird ESR 10.x before 10.0.4, and SeaMonk…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-0478
|
2024-11-21 10:35 |
2012-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295387
|
- |
|
mozilla
|
firefox thunderbird thunderbird_esr seamonkey
|
Multiple cross-site scripting (XSS) vulnerabilities in Mozilla Firefox 4.x through 11.0, Firefox ESR 10.x before 10.0.4, Thunderbird 5.0 through 11.0, Thunderbird ESR 10.x before 10.0.4, and SeaMonke…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0477
|
2024-11-21 10:35 |
2012-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295388
|
- |
|
mozilla
|
firefox thunderbird seamonkey
|
Mozilla Firefox 4.x through 11.0, Thunderbird 5.0 through 11.0, and SeaMonkey before 2.9 do not properly construct the Origin and Sec-WebSocket-Origin HTTP headers, which might allow remote attackers…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-0475
|
2024-11-21 10:35 |
2012-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295389
|
- |
|
mozilla
|
firefox thunderbird thunderbird_esr seamonkey
|
Cross-site scripting (XSS) vulnerability in the docshell implementation in Mozilla Firefox 4.x through 11.0, Firefox ESR 10.x before 10.0.4, Thunderbird 5.0 through 11.0, Thunderbird ESR 10.x before …
|
CWE-79
Cross-site Scripting
|
CVE-2012-0474
|
2024-11-21 10:35 |
2012-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295390
|
- |
|
mozilla
|
firefox thunderbird thunderbird_esr seamonkey
|
The WebGLBuffer::FindMaxUshortElement function in Mozilla Firefox 4.x through 11.0, Firefox ESR 10.x before 10.0.4, Thunderbird 5.0 through 11.0, Thunderbird ESR 10.x before 10.0.4, and SeaMonkey bef…
|
CWE-189
Numeric Errors
|
CVE-2012-0473
|
2024-11-21 10:35 |
2012-04-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|