|
288741
|
8.8 |
HIGH
Network
|
impulseadventure
|
jpegsnoop
|
A vulnerability exists in JPEGsnoop 1.5.2 due to an unspecified issue in JPEG file handling, which could let a malicious user execute arbitrary code
|
NVD-CWE-noinfo
|
CVE-2012-6307
|
2024-11-21 10:45 |
2020-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288742
|
9.8 |
CRITICAL
Network
|
hcview_project
|
hcview
|
A vulnerability exists in HCView (aka Hardcoreview) 1.4 due to a write access violation with a GIF file.
|
NVD-CWE-noinfo
|
CVE-2012-6306
|
2024-11-21 10:45 |
2020-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288743
|
8.8 |
HIGH
Network
|
dd-wrt
|
dd-wrt
|
Command Injection vulnerability exists via a CSRF in DD-WRT 24-sp2 from specially crafted configuration values containing shell meta-characters, which could let a remote malicious user cause a Denial…
|
CWE-352
Origin Validation Error
|
CVE-2012-6297
|
2024-11-21 10:45 |
2020-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288744
|
9.8 |
CRITICAL
Network
|
zpanelcp
|
zpanel
|
ZPanel 10.0.1 has insufficient entropy for its password reset process.
|
CWE-798 CWE-640
Use of Hard-coded Credentials Weak Password Recovery Mechanism for Forgotten Password
|
CVE-2012-5686
|
2024-11-21 10:45 |
2020-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288745
|
6.1 |
MEDIUM
Network
|
roundup-tracker
|
roundup
|
Multiple cross-site scripting (XSS) vulnerabilities in Roundup before 1.4.20 allow remote attackers to inject arbitrary web script or HTML via the (1) @ok_message or (2) @error_message parameter to i…
|
CWE-79
Cross-site Scripting
|
CVE-2012-6133
|
2024-11-21 10:45 |
2020-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288746
|
5.4 |
MEDIUM
Network
|
dokeos
|
dokeos
|
Dokeos 2.1.1 has multiple XSS issues involving "extra_" parameters in main/auth/profile.php.
|
CWE-79
Cross-site Scripting
|
CVE-2012-5776
|
2024-11-21 10:45 |
2020-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288747
|
5.5 |
MEDIUM
Local
|
git-extras_project
|
git-extras
|
The git-changelog utility in git-extras 1.7.0 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/changelog or (2) /tmp/.git-effort.
|
CWE-59
Link Following
|
CVE-2012-6114
|
2024-11-21 10:45 |
2020-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288748
|
7.8 |
HIGH
Local
|
soapbox_project
|
soapbox
|
Soapbox through 0.3.1: Sandbox bypass - runs a second instance of Soapbox within a sandboxed Soapbox.
|
CWE-269
Improper Privilege Management
|
CVE-2012-6302
|
2024-11-21 10:45 |
2020-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288749
|
7.5 |
HIGH
Network
|
freeciv
|
freeciv
|
Freeciv before 2.3.3 allows remote attackers to cause a denial of service via a crafted packet.
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2012-6083
|
2024-11-21 10:45 |
2020-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288750
|
9.8 |
CRITICAL
Network
|
ht_editor_project
|
ht_editor
|
HT Editor 2.0.20 has a Remote Stack Buffer Overflow Vulnerability
|
CWE-787
Out-of-bounds Write
|
CVE-2012-5867
|
2024-11-21 10:45 |
2020-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|