|
293901
|
5.0 |
MEDIUM
Local
|
nvidia
|
display_driver
|
A heap buffer overflow was discovered in the device control ioctl in the Linux driver for Nvidia graphics cards, which may allow an attacker to overflow 49 bytes. This issue was fixed in version 295.…
|
CWE-787
Out-of-bounds Write
|
CVE-2012-0952
|
2024-11-21 10:36 |
2020-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293902
|
5.5 |
MEDIUM
Local
|
systemd_project
|
systemd
|
systemd 37-1 does not properly handle non-existent services, which causes a denial of service (failure of login procedure).
|
NVD-CWE-Other
|
CVE-2012-1101
|
2024-11-21 10:36 |
2020-03-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293903
|
5.5 |
MEDIUM
Local
|
gnome debian
|
networkmanager debian_linux
|
NetworkManager 0.9 and earlier allows local users to use other users' certificates or private keys when making a connection via the file path when adding a new connection.
|
CWE-295
Improper Certificate Validation
|
CVE-2012-1096
|
2024-11-21 10:36 |
2020-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293904
|
7.5 |
HIGH
Network
|
redhat
|
jboss_application_server
|
JBoss AS 7 prior to 7.1.1 and mod_cluster do not handle default hostname in the same way, which can cause the excluded-contexts list to be mismatched and the root context to be exposed.
|
CWE-200
Information Exposure
|
CVE-2012-1094
|
2024-11-21 10:36 |
2020-03-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293905
|
7.8 |
HIGH
Local
|
debian
|
debian_linux x11-common
|
The init script in the Debian x11-common package before 1:7.6+12 is vulnerable to a symlink attack that can lead to a privilege escalation during package installation.
|
CWE-59
Link Following
|
CVE-2012-1093
|
2024-11-21 10:36 |
2020-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293906
|
7.8 |
HIGH
Local
|
nvidia
|
display_driver
|
A Memory Corruption Vulnerability exists in NVIDIA Graphics Drivers 29549 due to an unknown function in the file proc/driver/nvidia/registry.
|
CWE-787
Out-of-bounds Write
|
CVE-2012-0951
|
2024-11-21 10:36 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293907
|
9.8 |
CRITICAL
Network
|
phxeventmanager_project
|
phxeventmanager
|
SQL injection vulnerability in search.php in phxEventManager 2.0 beta 5 allows remote attackers to execute arbitrary SQL commands via the search_terms parameter.
|
CWE-89
SQL Injection
|
CVE-2012-1124
|
2024-11-21 10:36 |
2020-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293908
|
7.4 |
HIGH
Network
|
cisco
|
ironport_web_security_appliance
|
Cisco IronPort Web Security Appliance up to and including 7.5 does not validate the basic constraints of the certificate authority which could lead to MITM attacks
|
CWE-20
Improper Input Validation
|
CVE-2012-1326
|
2024-11-21 10:36 |
2020-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293909
|
5.9 |
MEDIUM
Network
|
cisco
|
ironport_web_security_appliance
|
Cisco IronPort Web Security Appliance does not check for certificate revocation which could lead to MITM attacks
|
CWE-295
Improper Certificate Validation
|
CVE-2012-1316
|
2024-11-21 10:36 |
2020-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293910
|
4.9 |
MEDIUM
Network
|
whoopsie-daisy_project
|
whoopsie-daisy
|
whoopsie-daisy before 0.1.26: Root user can remove arbitrary files
|
CWE-428
Unquoted Search Path or Element
|
CVE-2012-0945
|
2024-11-21 10:36 |
2020-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|