|
292961
|
- |
|
mathopd
|
mathopd
|
Directory traversal vulnerability in Mathopd 1.4.x and 1.5.x before 1.5p7, when configured with the * construct for mass virtual hosting, allows remote attackers to read arbitrary files via a crafted…
|
CWE-22
Path Traversal
|
CVE-2012-1050
|
2024-11-21 10:36 |
2012-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292962
|
- |
|
manageengine
|
admanager_plus
|
Multiple cross-site scripting (XSS) vulnerabilities in ManageEngine ADManager Plus 5.2 Build 5210 allow remote attackers to inject arbitrary web script or HTML via the (1) domainName parameter to jsp…
|
CWE-79
Cross-site Scripting
|
CVE-2012-1049
|
2024-11-21 10:36 |
2012-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292963
|
- |
|
efrontlearning
|
efront_community_\+\+
|
Cross-site scripting (XSS) vulnerability in communityplusplus/www/administrator.php in eFront Community++ edition 3.6.10, and possibly other editions, allows remote attackers to inject arbitrary web …
|
CWE-79
Cross-site Scripting
|
CVE-2012-1048
|
2024-11-21 10:36 |
2012-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292964
|
- |
|
cyberoam
|
cyberoam_central_console
|
Directory traversal vulnerability in the WWWHELP Service (js/html/wwhelp.htm) in Cyberoam Central Console (CCC) 2.00.2 allows remote attackers to include and execute arbitrary local files via a .. (d…
|
CWE-22
Path Traversal
|
CVE-2012-1047
|
2024-11-21 10:36 |
2012-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292965
|
- |
|
ibm
|
cognos_tm1
|
Cross-site scripting (XSS) vulnerability in TM1 Web in IBM Cognos TM1 9.5.2 FP1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than …
|
CWE-79
Cross-site Scripting
|
CVE-2012-1046
|
2024-11-21 10:36 |
2012-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292966
|
- |
|
adacore
|
ada_web_services
|
AdaCore Ada Web Services (AWS) before 2.10.2 computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a …
|
CWE-20
Improper Input Validation
|
CVE-2012-1035
|
2024-11-21 10:36 |
2012-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292967
|
- |
|
isc
|
bind
|
The resolver in ISC BIND 9 through 9.8.1-P1 overwrites cached server names and TTL values in NS records during the processing of a response to an A record query, which allows remote attackers to trig…
|
NVD-CWE-Other
|
CVE-2012-1033
|
2024-11-21 10:36 |
2012-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292968
|
- |
|
episerver
|
episerver_cms
|
Multiple cross-site scripting (XSS) vulnerabilities in the admin interface in EPiServer CMS through 6R2 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2012-1034
|
2024-11-21 10:36 |
2012-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292969
|
- |
|
episerver
|
episerver_cms
|
Unspecified vulnerability in EPiServer CMS 5 and 6 through 6R2, in certain configurations using Forms Authentication, allows remote authenticated users to obtain WebAdmins access by leveraging Edit M…
|
NVD-CWE-noinfo
|
CVE-2012-1031
|
2024-11-21 10:36 |
2012-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292970
|
- |
|
officesip
|
officesip_server
|
OfficeSIP Server 3.1 allows remote attackers to cause a denial of service (daemon crash) via a crafted To header in a SIP INVITE message.
|
CWE-20
Improper Input Validation
|
CVE-2012-1008
|
2024-11-21 10:36 |
2012-02-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|