|
291781
|
5.5 |
MEDIUM
Local
|
git-extras_project
|
git-extras
|
The git-changelog utility in git-extras 1.7.0 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/changelog or (2) /tmp/.git-effort.
|
CWE-59
Link Following
|
CVE-2012-6114
|
2024-11-21 10:45 |
2020-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291782
|
7.8 |
HIGH
Local
|
soapbox_project
|
soapbox
|
Soapbox through 0.3.1: Sandbox bypass - runs a second instance of Soapbox within a sandboxed Soapbox.
|
CWE-269
Improper Privilege Management
|
CVE-2012-6302
|
2024-11-21 10:45 |
2020-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291783
|
7.5 |
HIGH
Network
|
freeciv
|
freeciv
|
Freeciv before 2.3.3 allows remote attackers to cause a denial of service via a crafted packet.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2012-6083
|
2024-11-21 10:45 |
2020-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291784
|
9.8 |
CRITICAL
Network
|
ht_editor_project
|
ht_editor
|
HT Editor 2.0.20 has a Remote Stack Buffer Overflow Vulnerability
|
CWE-787
Out-of-bounds Write
|
CVE-2012-5867
|
2024-11-21 10:45 |
2020-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291785
|
9.8 |
CRITICAL
Network
|
babygekko
|
babygekko
|
BabyGekko before 1.2.4 allows PHP file inclusion.
|
CWE-20
Improper Input Validation
|
CVE-2012-5699
|
2024-11-21 10:45 |
2020-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291786
|
8.8 |
HIGH
Network
|
babygekko
|
babygekko
|
BabyGekko before 1.2.4 has SQL injection.
|
CWE-89
SQL Injection
|
CVE-2012-5698
|
2024-11-21 10:45 |
2020-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291787
|
9.8 |
CRITICAL
Network
|
bulbsecurity
|
smartphone_pentest_framework
|
Bulb Security Smartphone Pentest Framework (SPF) 0.1.2 through 0.1.4 allows remote attackers to execute arbitrary commands via shell metacharacters in the hostingPath parameter to (1) SEAttack.pl or …
|
CWE-78
OS Command
|
CVE-2012-5878
|
2024-11-21 10:45 |
2020-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291788
|
8.8 |
HIGH
Adjacent
|
bulbsecurity
|
smartphone_pentest_framework
|
Bulb Security Smartphone Pentest Framework (SPF) before 0.1.3 allows remote attackers to execute arbitrary commands via shell metacharacters in the ipAddressTB parameter to (1) remoteAttack.pl or (2)…
|
CWE-78
OS Command
|
CVE-2012-5693
|
2024-11-21 10:45 |
2020-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291789
|
7.5 |
HIGH
Network
|
openbsd
|
textproc\/isearch
|
The isearch package (textproc/isearch) before 1.47.01nb1 uses the tempnam() function to create insecure temporary files into a publicly-writable area (/tmp).
|
CWE-269 CWE-459
Improper Privilege Management Incomplete Cleanup
|
CVE-2012-5663
|
2024-11-21 10:45 |
2019-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291790
|
7.5 |
HIGH
Network
|
freeciv fedoraproject
|
freeciv fedora
|
A denial of service flaw was found in the way the server component of Freeciv before 2.3.4 processed certain packets. A remote attacker could send a specially-crafted packet that, when processed woul…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2012-5645
|
2024-11-21 10:45 |
2019-12-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|