|
295541
|
- |
|
maradns
|
maradns
|
MaraDNS before 1.3.07.12 and 1.4.x before 1.4.08 computes hash values for DNS data without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a den…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2012-0024
|
2024-11-21 10:34 |
2012-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295542
|
- |
|
wordpress
|
wordpress
|
Cross-site scripting (XSS) vulnerability in wp-comments-post.php in WordPress 3.3.x before 3.3.1, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via th…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0287
|
2024-11-21 10:34 |
2012-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295543
|
- |
|
gnu
|
gnutls
|
The DTLS implementation in GnuTLS 3.0.10 and earlier executes certain error-handling code only if there is a specific relationship between a padding length and the ciphertext size, which makes it eas…
|
CWE-310
Cryptographic Issues
|
CVE-2012-0390
|
2024-11-21 10:34 |
2012-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295544
|
- |
|
openssl
|
openssl
|
The GOST ENGINE in OpenSSL before 1.0.0f does not properly handle invalid parameters for the GOST block cipher, which allows remote attackers to cause a denial of service (daemon crash) via crafted d…
|
CWE-399
Resource Management Errors
|
CVE-2012-0027
|
2024-11-21 10:34 |
2012-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295545
|
4.3 |
MEDIUM
Network
|
ibm
|
rational_asset_manager
|
IBM Rational Asset Manager 7.5 could allow a remote attacker to bypass security restrictions. An attacker could exploit this vulnerability using the UID parameter to modify another user's preferences.
|
NVD-CWE-Other
|
CVE-2011-4820
|
2024-11-21 10:33 |
2022-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295546
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
Linux kernel through 3.1 allows local users to obtain sensitive keystroke information via access to /dev/pts/ and /dev/tty*.
|
CWE-200
Information Exposure
|
CVE-2011-4916
|
2024-11-21 10:33 |
2022-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295547
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
In the Linux kernel through 3.1 there is an information disclosure issue via /proc/stat.
|
NVD-CWE-noinfo
|
CVE-2011-4917
|
2024-11-21 10:33 |
2022-04-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295548
|
5.5 |
MEDIUM
Local
|
linux canonical debian
|
linux_kernel ubuntu_linux debian_linux
|
fs/proc/base.c in the Linux kernel through 3.1 allows local users to obtain sensitive keystroke information via access to /proc/interrupts.
|
CWE-200
Information Exposure
|
CVE-2011-4915
|
2024-11-21 10:33 |
2020-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295549
|
9.8 |
CRITICAL
Network
|
tiny
|
tinybrowser
|
TinyBrowser plugin for Joomla! before 1.5.13 allows arbitrary file upload via upload.php.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2011-4908
|
2024-11-21 10:33 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295550
|
9.8 |
CRITICAL
Network
|
tiny
|
tinybrowser
|
Tiny browser in TinyMCE 3.0 editor in Joomla! before 1.5.13 allows file upload and arbitrary PHP code execution.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2011-4906
|
2024-11-21 10:33 |
2020-02-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|