|
292581
|
- |
|
apache
|
qpid
|
The default configuration for Apache Qpid 0.20 and earlier, when the federation_tag attribute is enabled, accepts AMQP connections without checking the source user ID, which allows remote attackers t…
|
CWE-287
Improper Authentication
|
CVE-2012-4446
|
2024-11-21 10:42 |
2013-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292582
|
- |
|
eucalyptus
|
eucalyptus
|
The internal message protocol for Walrus in Eucalyptus 3.2.0 and earlier does not require signatures for unspecified request headers, which allows attackers to (1) delete or (2) upload snapshots.
|
CWE-287
Improper Authentication
|
CVE-2012-4066
|
2024-11-21 10:42 |
2013-03-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292583
|
- |
|
stone-ware
|
webnetwork
|
Multiple cross-site scripting (XSS) vulnerabilities in Stoneware webNetwork 6.1 before SP1 allow remote attackers to inject arbitrary web script or HTML via the blogName parameter to (1) community/bl…
|
CWE-79
Cross-site Scripting
|
CVE-2012-4352
|
2024-11-21 10:42 |
2013-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292584
|
- |
|
symantec
|
encryption_desktop pgp_desktop
|
Integer overflow in pgpwded.sys in Symantec PGP Desktop 10.x and Encryption Desktop 10.3.0 before MP1 allows local users to gain privileges via a crafted application.
|
CWE-189
Numeric Errors
|
CVE-2012-4351
|
2024-11-21 10:42 |
2013-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292585
|
- |
|
linux
|
linux_kernel
|
The __request_module function in kernel/kmod.c in the Linux kernel before 3.4 does not set a certain killable attribute, which allows local users to cause a denial of service (memory consumption) via…
|
CWE-20
Improper Input Validation
|
CVE-2012-4398
|
2024-11-21 10:42 |
2013-02-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292586
|
- |
|
oracle
|
javafx
|
Unspecified vulnerability in the JavaFX component in Oracle Java SE JavaFX 2.2.4 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a diff…
|
NVD-CWE-noinfo
|
CVE-2012-4305
|
2024-11-21 10:42 |
2013-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292587
|
- |
|
oracle
|
javafx
|
Unspecified vulnerability in the JavaFX component in Oracle Java SE JavaFX 2.2.4 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors, a diff…
|
NVD-CWE-noinfo
|
CVE-2012-4301
|
2024-11-21 10:42 |
2013-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292588
|
- |
|
linux
|
linux_kernel
|
The KVM subsystem in the Linux kernel before 3.6.9, when running on hosts that use qemu userspace without XSAVE, allows local users to cause a denial of service (kernel OOPS) by using the KVM_SET_SRE…
|
NVD-CWE-noinfo
|
CVE-2012-4461
|
2024-11-21 10:42 |
2013-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292589
|
- |
|
oracle mariadb
|
mysql mariadb
|
Multiple SQL injection vulnerabilities in the replication code in Oracle MySQL possibly before 5.5.29, and MariaDB 5.1.x through 5.1.62, 5.2.x through 5.2.12, 5.3.x through 5.3.7, and 5.5.x through 5…
|
CWE-89
SQL Injection
|
CVE-2012-4414
|
2024-11-21 10:42 |
2013-01-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292590
|
- |
|
dlink
|
dcs-932l_firmware dcs-932l
|
The D-Link DCS-932L camera with firmware 1.02 allows remote attackers to discover the password via a UDP broadcast packet, as demonstrated by running the D-Link Setup Wizard and reading the _paramR["…
|
CWE-200
Information Exposure
|
CVE-2012-4046
|
2024-11-21 10:42 |
2012-12-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|