|
295451
|
- |
|
php
|
php
|
PHP before 5.3.9 has improper libxslt security settings, which allows remote attackers to create arbitrary files via a crafted XSLT stylesheet that uses the libxslt output extension.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-0057
|
2024-11-21 10:34 |
2012-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295452
|
- |
|
mozilla
|
firefox seamonkey
|
Mozilla Firefox 4.x through 9.0 and SeaMonkey before 2.7 on Linux and Mac OS X set weak permissions for Firefox Recovery Key.html, which might allow local users to read a Firefox Sync key via standar…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-0450
|
2024-11-21 10:34 |
2012-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295453
|
- |
|
mozilla debian suse opensuse
|
thunderbird seamonkey firefox debian_linux linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit
|
Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 allow remote attackers to cause a denial of service (memory corruption and a…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-0449
|
2024-11-21 10:34 |
2012-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295454
|
- |
|
mozilla
|
firefox thunderbird seamonkey
|
Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and SeaMonkey before 2.7 do not properly initialize data for image/vnd.microsoft.icon images, which allows remote attackers to obtain pot…
|
CWE-200
Information Exposure
|
CVE-2012-0447
|
2024-11-21 10:34 |
2012-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295455
|
- |
|
mozilla
|
firefox thunderbird seamonkey
|
Multiple cross-site scripting (XSS) vulnerabilities in Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and SeaMonkey before 2.7 allow remote attackers to inject arbitrary web script or …
|
CWE-79
Cross-site Scripting
|
CVE-2012-0446
|
2024-11-21 10:34 |
2012-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295456
|
- |
|
mozilla
|
firefox thunderbird seamonkey
|
Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and SeaMonkey before 2.7 allow remote attackers to bypass the HTML5 frame-navigation policy and replace arbitrary sub-frames by creating …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-0445
|
2024-11-21 10:34 |
2012-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295457
|
- |
|
mozilla debian suse opensuse canonical
|
thunderbird seamonkey firefox debian_linux linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit ubuntu_linux
|
Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 do not properly initialize nsChildView data structures, which allows remote …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-0444
|
2024-11-21 10:34 |
2012-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295458
|
- |
|
mozilla
|
firefox thunderbird seamonkey
|
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and SeaMonkey before 2.7 allow remote attackers to cause a denial of servic…
|
NVD-CWE-noinfo
|
CVE-2012-0443
|
2024-11-21 10:34 |
2012-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295459
|
- |
|
mozilla debian suse opensuse
|
thunderbird seamonkey firefox debian_linux linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit
|
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 allow remote a…
|
NVD-CWE-noinfo
|
CVE-2012-0442
|
2024-11-21 10:34 |
2012-02-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295460
|
- |
|
apache debian opensuse suse redhat
|
http_server debian_linux opensuse linux_enterprise_software_development_kit linux_enterprise_server enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation<…
|
protocol.c in the Apache HTTP Server 2.2.x through 2.2.21 does not properly restrict header information during construction of Bad Request (aka 400) error documents, which allows remote attackers to …
|
NVD-CWE-noinfo
|
CVE-2012-0053
|
2024-11-21 10:34 |
2012-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|