|
292931
|
- |
|
michael_dehaan
|
cobbler
|
Incomplete blacklist vulnerability in action_power.py in Cobbler 2.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) username or (2) password fields to the…
|
NVD-CWE-Other
|
CVE-2012-2395
|
2024-11-21 10:39 |
2012-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292932
|
- |
|
dolphin-browser
|
dolphin_browser_hd dolphin_for_pad
|
The Dolphin Browser HD application before 7.6 and Dolphin for Pad application before 1.0.1 for Android do not properly implement the WebView class, which allows remote attackers to obtain sensitive i…
|
CWE-200
Information Exposure
|
CVE-2012-2635
|
2024-11-21 10:39 |
2012-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292933
|
- |
|
newsgator
|
feeddemon
|
Cross-site scripting (XSS) vulnerability in FeedDemon before 4.0, when the feed preview option is enabled, allows remote attackers to inject arbitrary web script or HTML via a feed.
|
CWE-79
Cross-site Scripting
|
CVE-2012-2634
|
2024-11-21 10:39 |
2012-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292934
|
- |
|
wordpress
|
wassup_plugin
|
Cross-site scripting (XSS) vulnerability in wassup.php in the WassUp plugin before 1.8.3.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the User-Agent HTTP header.
|
CWE-79
Cross-site Scripting
|
CVE-2012-2633
|
2024-11-21 10:39 |
2012-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292935
|
- |
|
seil
|
b1_firmware x2 b1 x1 x86_firmware
|
SEIL routers with firmware SEIL/x86 1.00 through 2.35, SEIL/X1 2.30 through 3.75, SEIL/X2 2.30 through 3.75, and SEIL/B1 2.30 through 3.75, when the http-proxy and application-gateway features are en…
|
NVD-CWE-Other
|
CVE-2012-2632
|
2024-11-21 10:39 |
2012-06-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292936
|
- |
|
atmarkweb
|
\@web_shoppingcart_t \@web_shoppingcart
|
Cross-site scripting (XSS) vulnerability in WEBLOGIC @WEB ShoppingCart before 1.5.2.0, and @WEB ShoppingCart T 1.5.0.1 and earlier, allows remote attackers to inject arbitrary web script or HTML via …
|
CWE-79
Cross-site Scripting
|
CVE-2012-2631
|
2024-11-21 10:39 |
2012-06-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292937
|
- |
|
bradfordnetworks
|
network_sentry_appliance_software network_sentry_appliance
|
The agent in Bradford Network Sentry before 5.3.3 does not require authentication for messages, which allows remote attackers to trigger the display of arbitrary text on a workstation via a crafted p…
|
CWE-287
Improper Authentication
|
CVE-2012-2606
|
2024-11-21 10:39 |
2012-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292938
|
- |
|
bradfordnetworks
|
network_sentry_appliance_software network_sentry_appliance
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative interface in Bradford Network Sentry before 5.3.3 allow remote attackers to hijack the authentication of administrator…
|
CWE-352
Origin Validation Error
|
CVE-2012-2605
|
2024-11-21 10:39 |
2012-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292939
|
- |
|
bradfordnetworks
|
network_sentry_appliance_software network_sentry_appliance
|
Multiple cross-site scripting (XSS) vulnerabilities in GuestAccess.jsp in the Guest/Contractor access component in the administrative interface in Bradford Network Sentry before 5.3.3 allow remote au…
|
CWE-79
Cross-site Scripting
|
CVE-2012-2604
|
2024-11-21 10:39 |
2012-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292940
|
- |
|
linux
|
linux_kernel
|
Memory leak in mm/hugetlb.c in the Linux kernel before 3.4.2 allows local users to cause a denial of service (memory consumption or system crash) via invalid MAP_HUGETLB mmap operations.
|
CWE-399
Resource Management Errors
|
CVE-2012-2390
|
2024-11-21 10:39 |
2012-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|