|
293641
|
- |
|
apache
|
commons_compress
|
Algorithmic complexity vulnerability in the sorting algorithms in bzip2 compressing stream (BZip2CompressorOutputStream) in Apache Commons Compress before 1.4.1 allows remote attackers to cause a den…
|
CWE-310
Cryptographic Issues
|
CVE-2012-2098
|
2024-11-21 10:38 |
2012-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293642
|
- |
|
puppetlabs puppet
|
puppet puppet_enterprise
|
telnet.rb in Puppet 2.7.x before 2.7.13 and Puppet Enterprise (PE) 1.2.x, 2.0.x, and 2.5.x before 2.5.1 allows local users to overwrite arbitrary files via a symlink attack on the NET::Telnet connect…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-1989
|
2024-11-21 10:38 |
2012-06-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293643
|
- |
|
ibm
|
aix vios
|
The default configuration of sendmail in IBM AIX 6.1 and 7.1, and VIOS 2.2.1.4-FP-25 SP-02, allows local users to gain privileges by entering a command in a .forward file in a home directory.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-2200
|
2024-11-21 10:38 |
2012-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293644
|
- |
|
oracle mariadb
|
mysql mariadb
|
sql/password.c in Oracle MySQL 5.1.x before 5.1.63, 5.5.x before 5.5.24, and 5.6.x before 5.6.6, and MariaDB 5.1.x before 5.1.62, 5.2.x before 5.2.12, 5.3.x before 5.3.6, and 5.5.x before 5.5.23, whe…
|
CWE-287
Improper Authentication
|
CVE-2012-2122
|
2024-11-21 10:38 |
2012-06-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293645
|
- |
|
apache
|
roller
|
Multiple cross-site scripting (XSS) vulnerabilities in Apache Roller before 5.0.1 allow remote authenticated users to inject arbitrary web script or HTML by leveraging the blogger role.
|
CWE-79
Cross-site Scripting
|
CVE-2012-2381
|
2024-11-21 10:38 |
2012-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293646
|
- |
|
apache
|
roller
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the admin/editor console in Apache Roller before 5.0.1 allow remote attackers to hijack the authentication of admins or editors by levera…
|
CWE-352
Origin Validation Error
|
CVE-2012-2380
|
2024-11-21 10:38 |
2012-06-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293647
|
- |
|
ibm
|
aix
|
libodm.a in IBM AIX 5.3, 6.1, and 7.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-2179
|
2024-11-21 10:38 |
2012-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293648
|
- |
|
ibm
|
ds_storage_manager_host_software ds4100 ds4200 ds4300 ds4400 ds4500 ds4700 ds4800 system_storage_dcs3700_storage_subsystem system_storage_ds3200 system_storage_ds3300
|
Cross-site scripting (XSS) vulnerability in SoftwareRegistration.do in the Storage Manager Profiler in IBM System Storage DS Storage Manager before 10.83.xx.18 on DS Series devices allows remote atta…
|
CWE-79
Cross-site Scripting
|
CVE-2012-2172
|
2024-11-21 10:38 |
2012-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293649
|
- |
|
ibm
|
ds_storage_manager_host_software ds4100 ds4200 ds4300 ds4400 ds4500 ds4700 ds4800 system_storage_dcs3700_storage_subsystem system_storage_ds3200 system_storage_ds3300
|
SQL injection vulnerability in ModuleServlet.do in the Storage Manager Profiler in IBM System Storage DS Storage Manager before 10.83.xx.18 on DS Series devices allows remote authenticated users to e…
|
CWE-89
SQL Injection
|
CVE-2012-2171
|
2024-11-21 10:38 |
2012-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293650
|
- |
|
linux
|
linux_kernel
|
fs/proc/root.c in the procfs implementation in the Linux kernel before 3.2 does not properly interact with CLONE_NEWPID clone system calls, which allows remote attackers to cause a denial of service …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-2127
|
2024-11-21 10:38 |
2012-06-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|