|
290031
|
- |
|
theforeman
|
foreman
|
Foreman before 1.1 uses a salt of "foreman" to hash root passwords, which makes it easier for attackers to guess the password via a brute force attack.
|
CWE-310
Cryptographic Issues
|
CVE-2013-0173
|
2024-11-21 10:46 |
2014-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290032
|
- |
|
theforeman
|
foreman
|
Foreman before 1.1 allows remote attackers to execute arbitrary code via a crafted YAML object to the (1) fact or (2) report import API.
|
CWE-94
Code Injection
|
CVE-2013-0171
|
2024-11-21 10:46 |
2014-05-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290033
|
- |
|
f-secure
|
anti-virus psb_workstation_security safe_anywhere
|
F-Secure Anti-Virus, Safe Anywhere, and PSB Workstation Security before 11500 for Mac OS X allows local users to disable the Mac OS X firewall via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2012-6646
|
2024-11-21 10:46 |
2014-04-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290034
|
- |
|
danielb
|
finder
|
Cross-site scripting (XSS) vulnerability in the autocomplete functionality in the Finder module 6.x-1.x before 6.x-1.26, 7.x-1.x, and 7.x-2.x before 7.x-2.0-alpha8 for Drupal allows remote attackers …
|
CWE-79
Cross-site Scripting
|
CVE-2012-6645
|
2024-11-21 10:46 |
2014-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290035
|
- |
|
clip-bucket
|
clipbucket
|
Multiple cross-site scripting (XSS) vulnerabilities in ClipBucket 2.6 allow remote attackers to inject arbitrary web script or HTML via the (1) cat parameter to channels.php, (2) collections.php, (3)…
|
CWE-79
Cross-site Scripting
|
CVE-2012-6644
|
2024-11-21 10:46 |
2014-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290036
|
- |
|
clip-bucket
|
clipbucket
|
Multiple SQL injection vulnerabilities in the update_counter function in includes/functions.php in ClipBucket 2.6 allow remote attackers to execute arbitrary SQL commands via the time parameter to (1…
|
CWE-89
SQL Injection
|
CVE-2012-6643
|
2024-11-21 10:46 |
2014-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290037
|
- |
|
clip-bucket
|
clipbucket
|
Cross-site scripting (XSS) vulnerability in ClipBucket 2.6 allows remote attackers to inject arbitrary web script or HTML via the type parameter to view_channel.php. NOTE: the provenance of this inf…
|
CWE-79
Cross-site Scripting
|
CVE-2012-6642
|
2024-11-21 10:46 |
2014-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290038
|
- |
|
prestashop
|
prestashop
|
Cross-site scripting (XSS) vulnerability in redirect.php in the Socolissimo module (modules/socolissimo/) in PrestaShop before 1.4.7.2 allows remote attackers to inject arbitrary web script or HTML v…
|
CWE-79
Cross-site Scripting
|
CVE-2012-6641
|
2024-11-21 10:46 |
2014-04-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290039
|
- |
|
horde
|
groupware imp
|
Cross-site scripting (XSS) vulnerability in Horde Internet Mail Program (IMP) before 5.0.22, as used in Horde Groupware Webmail Edition before 4.0.9, allows remote attackers to inject arbitrary web s…
|
CWE-79
Cross-site Scripting
|
CVE-2012-6640
|
2024-11-21 10:46 |
2014-04-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290040
|
- |
|
samsung
|
kies
|
Buffer overflow in the PrepareSync method in the SyncService.dll ActiveX control in Samsung Kies before 2.5.1.12123_2_7 allows remote attackers to execute arbitrary code via a long string to the pass…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-6429
|
2024-11-21 10:46 |
2014-04-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|