|
292701
|
- |
|
wargio
|
naxsi
|
Directory traversal vulnerability in naxsi-ui/nx_extract.py in the Naxsi module before 0.46-1 for Nginx allows local users to read arbitrary files via unspecified vectors.
|
CWE-22
Path Traversal
|
CVE-2012-3380
|
2024-11-21 10:40 |
2012-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292702
|
- |
|
gnome
|
at-spi2-atk
|
The register_application function in atk-adaptor/bridge.c in GNOME at-spi2-atk 2.5.2 does not seed the random number generator and generates predictable temporary file names, which makes it easier fo…
|
CWE-310
Cryptographic Issues
|
CVE-2012-3378
|
2024-11-21 10:40 |
2012-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292703
|
- |
|
oracle
|
jdk jre
|
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 6 and earlier allows remote attackers to affect confidentiality, integrity, and availability via u…
|
NVD-CWE-noinfo
|
CVE-2012-3136
|
2024-11-21 10:40 |
2012-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292704
|
- |
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server (WAS) 6.1.x before 6.1.0.45, 7.0.x before 7.0.0.25, 8.0.x before 8.0.0.5, and 8.5.x Full Profile before 8.5.0.1, when the PM44303 fix is installed, does not properly …
|
CWE-20
Improper Input Validation
|
CVE-2012-3325
|
2024-11-21 10:40 |
2012-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292705
|
- |
|
hp
|
inode_management_center_pc
|
Multiple unspecified vulnerabilities in HP iNode Management Center before iNode PC 5.1 E0304 allow remote attackers to execute arbitrary code via crafted input, as demonstrated by a stack-based buffe…
|
NVD-CWE-noinfo
|
CVE-2012-3254
|
2024-11-21 10:40 |
2012-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292706
|
- |
|
hp
|
intelligent_management_center
|
Multiple unspecified vulnerabilities in HP Intelligent Management Center (IMC) before 5.0 E0101P05 allow remote attackers to execute arbitrary code via crafted input, as demonstrated by an integer ov…
|
NVD-CWE-noinfo
|
CVE-2012-3253
|
2024-11-21 10:40 |
2012-08-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292707
|
- |
|
ibm
|
infosphere_guardium
|
The datasource definition editor in IBM InfoSphere Guardium 8.2 and earlier, when the save-password setting is enabled, transmits cleartext database credentials, which allows remote attackers to obta…
|
CWE-310
Cryptographic Issues
|
CVE-2012-3312
|
2024-11-21 10:40 |
2012-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292708
|
- |
|
ibm
|
infosphere_guardium
|
Cross-site request forgery (CSRF) vulnerability in the account-creation panel in IBM InfoSphere Guardium 8.2 and earlier, when the CSRF filtering (aka csrf_status) feature is disabled, allows remote …
|
CWE-352
Origin Validation Error
|
CVE-2012-3309
|
2024-11-21 10:40 |
2012-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292709
|
- |
|
ibm
|
websphere_mq
|
IBM WebSphere MQ 7.1, when an SVRCONN channel is used, allows remote attackers to bypass the security-configuration setup step and obtain queue-manager access via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-3295
|
2024-11-21 10:40 |
2012-08-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292710
|
- |
|
apache
|
qpid
|
Apache QPID 0.14, 0.16, and earlier uses a NullAuthenticator mechanism to authenticate catch-up shadow connections to AMQP brokers, which allows remote attackers to bypass authentication.
|
CWE-287
Improper Authentication
|
CVE-2012-3467
|
2024-11-21 10:40 |
2012-08-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|