|
295301
|
- |
|
janetter
|
janetter
|
Multiple cross-site request forgery (CSRF) vulnerabilities in Janetter before 3.3.0.0 (aka 3.3.0) allow remote attackers to hijack the authentication of arbitrary users for requests that (1) tweet, (…
|
CWE-352
Origin Validation Error
|
CVE-2012-1236
|
2024-11-21 10:36 |
2012-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295302
|
- |
|
apache
|
mod_fcgid
|
fcgid_spawn_ctl.c in the mod_fcgid module 2.3.6 for the Apache HTTP Server does not recognize the FcgidMaxProcessesPerClass directive for a virtual host, which makes it easier for remote attackers to…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-1181
|
2024-11-21 10:36 |
2012-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295303
|
- |
|
dotclear
|
dotclear
|
Multiple cross-site scripting (XSS) vulnerabilities in Dotclear before 2.4.2 allow remote attackers to inject arbitrary web script or HTML via the (1) login_data parameter to admin/auth.php; (2) nb p…
|
CWE-79
Cross-site Scripting
|
CVE-2012-1039
|
2024-11-21 10:36 |
2012-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295304
|
- |
|
contao
|
contao_cms
|
Multiple cross-site request forgery (CSRF) vulnerabilities in main.php in Contao (formerly TYPOlight) 2.11.0 and earlier allow remote attackers to hijack the authentication of administrators for requ…
|
CWE-352
Origin Validation Error
|
CVE-2012-1297
|
2024-11-21 10:36 |
2012-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295305
|
- |
|
gomlab
|
gom_media_player
|
Unspecified vulnerability in Gretech GOM Media Player before 2.1.37.5091 allows remote attackers to execute arbitrary code via a crafted AVI file.
|
NVD-CWE-noinfo
|
CVE-2012-1264
|
2024-11-21 10:36 |
2012-03-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295306
|
- |
|
openssl
|
openssl
|
The mime_param_cmp function in crypto/asn1/asn_mime.c in OpenSSL before 0.9.8u and 1.x before 1.0.0h allows remote attackers to cause a denial of service (NULL pointer dereference and application cra…
|
CWE-399
Resource Management Errors
|
CVE-2012-1165
|
2024-11-21 10:36 |
2012-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295307
|
- |
|
pidgin
|
pidgin
|
The msn_oim_report_to_user function in oim.c in the MSN protocol plugin in libpurple in Pidgin before 2.10.2 allows remote servers to cause a denial of service (application crash) via an OIM message …
|
CWE-399
Resource Management Errors
|
CVE-2012-1178
|
2024-11-21 10:36 |
2012-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295308
|
- |
|
tinycouch
|
tiny_password
|
Unspecified vulnerability in the Tiny Password (com.tinycouch.android.freepassword) application 1.64 for Android has unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2012-1409
|
2024-11-21 10:36 |
2012-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295309
|
- |
|
creative_core
|
app_lock
|
Unspecified vulnerability in the App Lock (com.cc.applock) application 1.7.5 and 1.7.6 for Android has unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2012-1408
|
2024-11-21 10:36 |
2012-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295310
|
- |
|
rubyonrails
|
ruby_on_rails rails
|
Cross-site scripting (XSS) vulnerability in actionpack/lib/action_view/helpers/form_options_helper.rb in the select helper in Ruby on Rails 3.0.x before 3.0.12, 3.1.x before 3.1.4, and 3.2.x before 3…
|
CWE-79
Cross-site Scripting
|
CVE-2012-1099
|
2024-11-21 10:36 |
2012-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|