|
295071
|
8.1 |
HIGH
Network
|
tucaneando
|
tucan
|
Insecure plugin update mechanism in tucan through 0.3.10 could allow remote attackers to perform man-in-the-middle attacks and execute arbitrary code ith the permissions of the user running tucan.
|
NVD-CWE-noinfo
|
CVE-2012-0063
|
2024-11-21 10:34 |
2020-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295072
|
7.8 |
HIGH
Local
|
linux canonical
|
linux_kernel ubuntu_linux
|
OverlayFS in the Linux kernel before 3.0.0-16.28, as used in Ubuntu 10.0.4 LTS and 11.10, is missing inode security checks which could allow attackers to bypass security restrictions and perform unau…
|
CWE-862
Missing Authorization
|
CVE-2012-0055
|
2024-11-21 10:34 |
2020-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295073
|
5.3 |
MEDIUM
Network
|
mirc
|
mirc
|
mIRC prior to 7.22 has a message leak because chopping of outbound messages is mishandled.
|
CWE-200
Information Exposure
|
CVE-2011-5282
|
2024-11-21 10:34 |
2020-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295074
|
7.5 |
HIGH
Network
|
spamdyke
|
spamdyke
|
spamdyke prior to 4.2.1: STARTTLS reveals plaintext
|
CWE-74
Injection
|
CVE-2012-0070
|
2024-11-21 10:34 |
2020-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295075
|
6.4 |
MEDIUM
Adjacent
|
cisco
|
ironport_web_security_appliance
|
Cisco IronPort Web Security Appliance AsyncOS software prior to 7.5 has a SSL Certificate Caching vulnerability which could allow man-in-the-middle attacks
|
CWE-20
Improper Input Validation
|
CVE-2012-0334
|
2024-11-21 10:34 |
2020-01-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295076
|
9.8 |
CRITICAL
Network
|
imperva
|
securesphere_web_application_firewall
|
Imperva SecureSphere Web Application Firewall (WAF) before 12-august-2010 allows SQL injection filter bypass.
|
CWE-89
SQL Injection
|
CVE-2011-5266
|
2024-11-21 10:34 |
2020-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295077
|
9.8 |
CRITICAL
Network
|
distributed_ruby_project
|
distributed_ruby
|
Distributed Ruby (aka DRuby) 1.8 mishandles instance_eval.
|
NVD-CWE-noinfo
|
CVE-2011-5331
|
2024-11-21 10:34 |
2019-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295078
|
9.8 |
CRITICAL
Network
|
distributed_ruby_project
|
distributed_ruby
|
Distributed Ruby (aka DRuby) 1.8 mishandles the sending of syscalls.
|
NVD-CWE-noinfo
|
CVE-2011-5330
|
2024-11-21 10:34 |
2019-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295079
|
5.5 |
MEDIUM
Local
|
clusterlabs
|
pacemaker
|
Pacemaker before 1.1.6 configure script creates temporary files insecurely
|
CWE-59
Link Following
|
CVE-2011-5271
|
2024-11-21 10:34 |
2019-11-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295080
|
7.4 |
HIGH
Network
|
tahoe-lafs debian
|
tahoe-lafs debian_linux
|
Tahoe-LAFS 1.9.0 fails to ensure integrity which allows remote attackers to corrupt mutable files or directories upon retrieval.
|
CWE-20
Improper Input Validation
|
CVE-2012-0051
|
2024-11-21 10:34 |
2019-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|