|
292271
|
- |
|
oracle mariadb
|
mysql mariadb
|
Multiple SQL injection vulnerabilities in the replication code in Oracle MySQL possibly before 5.5.29, and MariaDB 5.1.x through 5.1.62, 5.2.x through 5.2.12, 5.3.x through 5.3.7, and 5.5.x through 5…
|
CWE-89
SQL Injection
|
CVE-2012-4414
|
2024-11-21 10:42 |
2013-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292272
|
- |
|
dlink
|
dcs-932l_firmware dcs-932l
|
The D-Link DCS-932L camera with firmware 1.02 allows remote attackers to discover the password via a UDP broadcast packet, as demonstrated by running the D-Link Setup Wizard and reading the _paramR["…
|
CWE-200
Information Exposure
|
CVE-2012-4046
|
2024-11-21 10:42 |
2012-12-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292273
|
- |
|
linux
|
linux_kernel
|
The ip6_frag_queue function in net/ipv6/reassembly.c in the Linux kernel before 2.6.36 allows remote attackers to bypass intended network restrictions via overlapping IPv6 fragments.
|
NVD-CWE-noinfo
|
CVE-2012-4444
|
2024-11-21 10:42 |
2012-12-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292274
|
- |
|
apache
|
tomcat
|
org/apache/catalina/filters/CsrfPreventionFilter.java in Apache Tomcat 6.x before 6.0.36 and 7.x before 7.0.32 allows remote attackers to bypass the cross-site request forgery (CSRF) protection mecha…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-4431
|
2024-11-21 10:42 |
2012-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292275
|
- |
|
symantec
|
enterprise_security_manager
|
Multiple unquoted Windows search path vulnerabilities in the (1) Manager and (2) Agent components in Symantec Enterprise Security Manager (ESM) before 11.0 allow local users to gain privileges via un…
|
NVD-CWE-Other
|
CVE-2012-4350
|
2024-11-21 10:42 |
2012-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292276
|
- |
|
symantec
|
endpoint_protection
|
The management console in Symantec Endpoint Protection (SEP) 11.0 before RU7-MP3 and 12.1 before RU2, and Symantec Endpoint Protection Small Business Edition 12.x before 12.1 RU2, does not properly v…
|
CWE-20
Improper Input Validation
|
CVE-2012-4348
|
2024-11-21 10:42 |
2012-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292277
|
- |
|
symantec
|
network_access_control
|
Unquoted Windows search path vulnerability in Symantec Network Access Control (SNAC) 12.1 before RU2 allows local users to gain privileges via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2012-4349
|
2024-11-21 10:42 |
2012-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292278
|
- |
|
symantec
|
messaging_gateway
|
Multiple directory traversal vulnerabilities in the management console in Symantec Messaging Gateway (SMG) 9.5.x allow remote authenticated users to read arbitrary files via a .. (dot dot) in the (1)…
|
CWE-22
Path Traversal
|
CVE-2012-4347
|
2024-11-21 10:42 |
2012-12-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292279
|
- |
|
david_alkire
|
drag_\&_drop_gallery
|
SQL injection vulnerability in the Drag & Drop Gallery module 6.x for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2012-4479
|
2024-11-21 10:42 |
2012-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292280
|
- |
|
david_alkire
|
drag_\&_drop_gallery
|
Cross-site request forgery (CSRF) vulnerability in the Drag & Drop Gallery module 6.x for Drupal allows remote attackers to hijack the authentication of administrators.
|
CWE-352
Origin Validation Error
|
CVE-2012-4478
|
2024-11-21 10:42 |
2012-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|