|
291741
|
- |
|
owncloud
|
owncloud
|
Cross-site request forgery (CSRF) vulnerability in ownCloud before 3.0.3 allows remote attackers to hijack the authentication of arbitrary users for requests that insert cross-site scripting (XSS) se…
|
CWE-352
Origin Validation Error
|
CVE-2012-2397
|
2024-11-21 10:39 |
2012-04-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291742
|
- |
|
videolan
|
vlc_media_player
|
VideoLAN VLC media player 2.0.1 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) via a crafted MP4 file.
|
NVD-CWE-Other
|
CVE-2012-2396
|
2024-11-21 10:39 |
2012-04-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291743
|
7.5 |
HIGH
Network
|
ibm
|
websphere_mq
|
IBM WebSphere MQ 7.1 is vulnerable to a denial of service, caused by an error when handling user ids. A remote attacker could exploit this vulnerability to bypass the security configuration setup on …
|
NVD-CWE-noinfo
|
CVE-2012-2201
|
2024-11-21 10:38 |
2022-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291744
|
6.1 |
MEDIUM
Network
|
ibm
|
rational_change
|
IBM Rational Change 5.3 is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability using the SUPP_TEMPLATE_FLAG pa…
|
CWE-79
Cross-site Scripting
|
CVE-2012-2160
|
2024-11-21 10:38 |
2022-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291745
|
6.1 |
MEDIUM
Network
|
prestashop
|
prestashop
|
PrestaShop before 1.5.2 allows XSS via the "<object data='data:text/html" substring in the message field.
|
CWE-79
Cross-site Scripting
|
CVE-2012-20001
|
2024-11-21 10:38 |
2021-12-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291746
|
4.8 |
MEDIUM
Network
|
wolfcms
|
wolf_cms
|
A cross-site scripting (XSS) vulnerability in Wolf CMS 0.75 and earlier allows remote attackers to inject arbitrary web script or HTML via the setting[admin_email] parameter to admin/setting.
|
CWE-79
Cross-site Scripting
|
CVE-2012-1932
|
2024-11-21 10:38 |
2020-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291747
|
5.4 |
MEDIUM
Network
|
telligent
|
community
|
XSS in Telligent Community 5.6.583.20496 via a flash file and related to the allowScriptAccess parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2012-1903
|
2024-11-21 10:38 |
2020-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291748
|
5.5 |
MEDIUM
Local
|
ibm
|
infosphere_guardium
|
InfoSphere Guardium aix_ktap module: DoS
|
NVD-CWE-noinfo
|
CVE-2012-2204
|
2024-11-21 10:38 |
2020-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291749
|
5.7 |
MEDIUM
Adjacent
|
hp
|
systems_insight_manager
|
HP Systems Insight Manager before 7.0 allows a remote user on adjacent network to access information
|
CWE-200
Information Exposure
|
CVE-2012-1994
|
2024-11-21 10:38 |
2020-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291750
|
9.8 |
CRITICAL
Network
|
ispconfig
|
ispconfig
|
ISPConfig 3.0.4.3: the "Add new Webdav user" can chmod and chown entire server from client interface.
|
CWE-732
Incorrect Permission Assignment for Critical Resource
|
CVE-2012-2087
|
2024-11-21 10:38 |
2020-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|