|
294371
|
- |
|
dev\!l\'s
|
dev\!l\'z_clanportal_gamebase_addon
|
SQL injection vulnerability in deV!L'z Clanportal (DZCP) Gamebase addon allows remote attackers to execute arbitrary SQL commands via the gameid parameter in a detail action to index.php.
|
CWE-89
SQL Injection
|
CVE-2012-0905
|
2024-11-21 10:35 |
2012-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294372
|
- |
|
videolan
|
vlc_media_player
|
VLC media player 1.1.11 allows remote attackers to cause a denial of service (crash) via a long string in an amr file.
|
CWE-399
Resource Management Errors
|
CVE-2012-0904
|
2024-11-21 10:35 |
2012-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294373
|
- |
|
vmware
|
zimbra_desktop
|
Multiple cross-site scripting (XSS) vulnerabilities in Zimbra Desktop 7.1.2 b10978 allow remote attackers to inject arbitrary web script or HTML via the (1) Username or (2) MailBox Name.
|
CWE-79
Cross-site Scripting
|
CVE-2012-0903
|
2024-11-21 10:35 |
2012-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294374
|
- |
|
airties
|
air_4450
|
AirTies Air 4450 1.1.2.18 allows remote attackers to cause a denial of service (reboot) via a direct request to cgi-bin/loader.
|
NVD-CWE-noinfo
|
CVE-2012-0902
|
2024-11-21 10:35 |
2012-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294375
|
- |
|
attenzione
|
yousaytoo
|
Cross-site scripting (XSS) vulnerability in yousaytoo.php in YouSayToo auto-publishing plugin 1.0 for WordPress allows remote attackers to inject arbitrary web script or HTML via the submit parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2012-0901
|
2024-11-21 10:35 |
2012-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294376
|
- |
|
beehive_forum
|
beehive_forum
|
Multiple cross-site scripting (XSS) vulnerabilities in Beehive Forum 1.0.1 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) forum/register.php or (2) forum/logon…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0900
|
2024-11-21 10:35 |
2012-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294377
|
- |
|
annuairephp
|
annuaire_php
|
Cross-site scripting (XSS) vulnerability in referencement/sites_inscription.php in Annuaire PHP allows remote attackers to inject arbitrary web script or HTML via the url parameter and possibly the n…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0899
|
2024-11-21 10:35 |
2012-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294378
|
- |
|
camaleo
|
myeasybackup
|
Directory traversal vulnerability in meb_download.php in the myEASYbackup plugin 1.0.8.1 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the dwn_file parameter.
|
CWE-22
Path Traversal
|
CVE-2012-0898
|
2024-11-21 10:35 |
2012-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294379
|
- |
|
irfanview
|
irfanview
|
Stack-based buffer overflow in the JPEG2000 plugin in IrfanView PlugIns before 4.33 allows remote attackers to execute arbitrary code via a JPEG2000 (JP2) file with a crafted Quantization Default (QC…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-0897
|
2024-11-21 10:35 |
2012-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294380
|
- |
|
count_per_day_project tom_braider
|
count_per_day
|
Absolute path traversal vulnerability in download.php in the Count Per Day module before 3.1.1 for WordPress allows remote attackers to read arbitrary files via the f parameter.
|
CWE-22
Path Traversal
|
CVE-2012-0896
|
2024-11-21 10:35 |
2012-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|