|
293661
|
- |
|
havalite
|
cms
|
Multiple cross-site scripting (XSS) vulnerabilities in Havalite 1.0.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) find or (2) replace fields to havalite/find…
|
CWE-79
Cross-site Scripting
|
CVE-2012-5919
|
2024-11-21 10:45 |
2012-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293662
|
- |
|
razorcms
|
razorcms
|
razorCMS 1.2 allows remote authenticated users to access administrator directories and files by creating and deleting a directory.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-5918
|
2024-11-21 10:45 |
2012-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293663
|
- |
|
flashtux
|
weechat
|
Heap-based buffer overflow in WeeChat 0.3.6 through 0.3.9 allows remote attackers to cause a denial of service (crash or hang) and possibly execute arbitrary code via crafted IRC colors that are not …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-5854
|
2024-11-21 10:45 |
2012-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293664
|
- |
|
tom_wilkason
|
snackamp
|
SnackAmp 3.1.3 allows remote attackers to cause a denial of service (application crash) via a long string in an aiff file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-5917
|
2024-11-21 10:45 |
2012-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293665
|
- |
|
neocrome
|
seditio
|
Neocrome Seditio build 161 allows remote attackers to obtain sensitive information via a direct request to (1) docs/new/seditio-createnew-160.sql, (2) docs/upgrade/sedito_convert_to_utf8.optional.sql…
|
CWE-200
Information Exposure
|
CVE-2012-5916
|
2024-11-21 10:45 |
2012-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293666
|
- |
|
neocrome
|
seditio
|
Neocrome Seditio build 161 and earlier allows remote attackers to obtain sensitive information via direct request to (1) view.php, (2) plugins/contact/lang/contact.en.lang.php, (3) system/lang/en/mai…
|
CWE-200
Information Exposure
|
CVE-2012-5915
|
2024-11-21 10:45 |
2012-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293667
|
- |
|
neocrome
|
seditio
|
Multiple cross-site scripting (XSS) vulnerabilities in the sed_import function in system/functions.php in Neocrome Seditio build 160 and 161 allow remote attackers to inject arbitrary web script or H…
|
CWE-79
Cross-site Scripting
|
CVE-2012-5914
|
2024-11-21 10:45 |
2012-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293668
|
- |
|
wordpress_integrator_project
|
wordpress_integrator
|
Cross-site scripting (XSS) vulnerability in wp-integrator.php in the WordPress Integrator module 1.32 for WordPress allows remote attackers to inject arbitrary web script or HTML via the redirect_to …
|
CWE-79
Cross-site Scripting
|
CVE-2012-5913
|
2024-11-21 10:45 |
2012-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293669
|
- |
|
pico
|
picopublisher
|
Multiple SQL injection vulnerabilities in PicoPublisher 2.0 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) page.php or (2) single.php.
|
CWE-89
SQL Injection
|
CVE-2012-5912
|
2024-11-21 10:45 |
2012-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293670
|
- |
|
b2evolution
|
b2evolution
|
Cross-site scripting (XSS) vulnerability in blogs/blog1.php in b2evolution 4.1.3 allows remote attackers to inject arbitrary web script or HTML via the message body.
|
CWE-79
Cross-site Scripting
|
CVE-2012-5911
|
2024-11-21 10:45 |
2012-11-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|