|
292271
|
- |
|
mozilla redhat canonical
|
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus
|
Use-after-free vulnerability in the nsSMILAnimationController::DoSample function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 1…
|
CWE-416
Use After Free
|
CVE-2012-4181
|
2024-11-21 10:42 |
2012-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292272
|
- |
|
mozilla redhat canonical suse debian
|
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri…
|
Use-after-free vulnerability in the nsTextEditRules::WillInsert function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, a…
|
CWE-416
Use After Free
|
CVE-2012-4182
|
2024-11-21 10:42 |
2012-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292273
|
- |
|
mozilla redhat canonical suse debian
|
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri…
|
Heap-based buffer overflow in the nsHTMLEditor::IsPrevCharInNodeWhitespace function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x befor…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-4180
|
2024-11-21 10:42 |
2012-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292274
|
- |
|
mozilla redhat canonical suse debian
|
firefox thunderbird_esr thunderbird seamonkey enterprise_linux_server enterprise_linux_workstation ubuntu_linux enterprise_linux_desktop enterprise_linux_eus linux_enterpri…
|
Use-after-free vulnerability in the nsHTMLCSSUtils::CreateCSSPropertyTxn function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before …
|
CWE-416
Use After Free
|
CVE-2012-4179
|
2024-11-21 10:42 |
2012-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292275
|
- |
|
dracut_project fedoraproject redhat
|
dracut fedora enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation
|
dracut.sh in dracut, as used in Red Hat Enterprise Linux 6, Fedora 16 and 17, and possibly other products, creates initramfs images with world-readable permissions, which might allow local users to o…
|
CWE-276
Incorrect Default Permissions
|
CVE-2012-4453
|
2024-11-21 10:42 |
2012-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292276
|
- |
|
apache
|
axis2
|
Apache Axis2 allows remote attackers to forge messages and bypass authentication via an "XML Signature wrapping attack."
|
CWE-287
Improper Authentication
|
CVE-2012-4418
|
2024-11-21 10:42 |
2012-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292277
|
7.5 |
HIGH
Network
|
cakefoundation
|
cakephp
|
The Xml class in CakePHP 2.1.x before 2.1.5 and 2.2.x before 2.2.1 allows remote attackers to read arbitrary files via XML data containing external entity references, aka an XML external entity (XXE)…
|
CWE-611
XXE
|
CVE-2012-4399
|
2024-11-21 10:42 |
2012-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292278
|
- |
|
glpi-project
|
glpi
|
Multiple cross-site scripting (XSS) vulnerabilities in GLPI-PROJECT GLPI before 0.83.3 allow remote attackers to inject arbitrary web script or HTML via unknown vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2012-4003
|
2024-11-21 10:42 |
2012-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292279
|
- |
|
glpi-project
|
glpi
|
Cross-site request forgery (CSRF) vulnerability in GLPI-PROJECT GLPI before 0.83.3 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.
|
CWE-352
Origin Validation Error
|
CVE-2012-4002
|
2024-11-21 10:42 |
2012-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292280
|
- |
|
oracle
|
mysql
|
MySQL 5.0.88, and possibly other versions and platforms, allows local users to bypass certain privilege checks by calling CREATE TABLE on a MyISAM table with modified (1) DATA DIRECTORY or (2) INDEX …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-4452
|
2024-11-21 10:42 |
2012-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|