|
292251
|
- |
|
jcore
|
jcore
|
SQL injection vulnerability in admin/index.php in jCore before 1.0pre2 allows remote attackers to execute arbitrary SQL commands via the memberloginid cookie.
|
CWE-89
SQL Injection
|
CVE-2012-4232
|
2024-11-21 10:42 |
2012-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292252
|
- |
|
jcore
|
jcore
|
Cross-site scripting (XSS) vulnerability in admin/index.php in jCore before 1.0pre2 allows remote attackers to inject arbitrary web script or HTML via the path parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2012-4231
|
2024-11-21 10:42 |
2012-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292253
|
- |
|
oracle sun
|
jdk jre
|
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 7 and earlier, and 6 Update 35 and earlier, allows remote attackers to affect confidentiality and …
|
NVD-CWE-noinfo
|
CVE-2012-4416
|
2024-11-21 10:42 |
2012-10-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292254
|
- |
|
mozilla suse canonical redhat
|
firefox seamonkey thunderbird thunderbird_esr linux_enterprise_server linux_enterprise_desktop linux_enterprise_software_development_kit ubuntu_linux enterprise_linux_server
|
Mozilla Firefox before 16.0.1, Firefox ESR 10.x before 10.0.9, Thunderbird before 16.0.1, Thunderbird ESR 10.x before 10.0.9, and SeaMonkey before 2.13.1 omit a security check in the defaultValue fun…
|
CWE-346
Origin Validation Error
|
CVE-2012-4193
|
2024-11-21 10:42 |
2012-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292255
|
- |
|
mozilla
|
seamonkey thunderbird firefox
|
Mozilla Firefox 16.0, Thunderbird 16.0, and SeaMonkey 2.13 allow remote attackers to bypass the Same Origin Policy and read the properties of a Location object via a crafted web site, a related issue…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-4192
|
2024-11-21 10:42 |
2012-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292256
|
- |
|
mozilla canonical
|
firefox seamonkey thunderbird ubuntu_linux
|
The mozilla::net::FailDelayManager::Lookup function in the WebSockets implementation in Mozilla Firefox before 16.0.1, Thunderbird before 16.0.1, and SeaMonkey before 2.13.1 allows remote attackers t…
|
CWE-787
Out-of-bounds Write
|
CVE-2012-4191
|
2024-11-21 10:42 |
2012-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292257
|
- |
|
mozilla cyanogenmod
|
firefox cyanogenmod
|
The FT2FontEntry::CreateFontEntry function in FreeType, as used in the Android build of Mozilla Firefox before 16.0.1 on CyanogenMod 10, allows remote attackers to cause a denial of service (memory c…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-4190
|
2024-11-21 10:42 |
2012-10-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292258
|
- |
|
linux
|
linux_kernel
|
The (1) do_siocgstamp and (2) do_siocgstampns functions in net/socket.c in the Linux kernel before 3.5.4 use an incorrect argument order, which allows local users to obtain sensitive information from…
|
CWE-399
Resource Management Errors
|
CVE-2012-4467
|
2024-11-21 10:42 |
2012-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292259
|
- |
|
lars_hjemli
|
cgit
|
Heap-based buffer overflow in the substr function in parsing.c in cgit 0.9.0.3 and earlier allows remote authenticated users to cause a denial of service (crash) and possibly execute arbitrary code v…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-4465
|
2024-11-21 10:42 |
2012-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292260
|
- |
|
midnight-commander
|
midnight_commander
|
Midnight Commander (mc) 4.8.5 does not properly handle the (1) MC_EXT_SELECTED or (2) MC_EXT_ONLYTAGGED environment variables when multiple files are selected, which allows user-assisted remote attac…
|
CWE-20
Improper Input Validation
|
CVE-2012-4463
|
2024-11-21 10:42 |
2012-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|