|
291351
|
- |
|
microsoft
|
ftp_service
|
Microsoft FTP Service 7.0 and 7.5 for Internet Information Services (IIS) processes unspecified commands before TLS is enabled for a session, which allows remote attackers to obtain sensitive informa…
|
CWE-200
Information Exposure
|
CVE-2012-2532
|
2024-11-21 10:39 |
2012-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291352
|
- |
|
-
|
-
|
Microsoft Internet Information Services (IIS) 7.5 uses weak permissions for the Operational log, which allows local users to discover credentials by reading this file, aka "Password Disclosure Vulner…
|
CWE-200
Information Exposure
|
CVE-2012-2531
|
2024-11-21 10:39 |
2012-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291353
|
- |
|
microsoft
|
windows_server_2008 windows_xp windows_7 windows_server_2003 windows_vista
|
Use-after-free vulnerability in win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Win…
|
CWE-399
Resource Management Errors
|
CVE-2012-2530
|
2024-11-21 10:39 |
2012-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291354
|
- |
|
microsoft
|
.net_framework
|
Untrusted search path vulnerability in Entity Framework in ADO.NET in Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, and 4 allows local users to gain privileges via a Trojan horse DL…
|
NVD-CWE-Other
|
CVE-2012-2519
|
2024-11-21 10:39 |
2012-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291355
|
- |
|
advance_productivity_software
|
dte_axiom
|
Advanced Productivity Software DTE Axiom before 12.3.3 does not validate the registration ID, which allows remote attackers to bypass authentication and read or modify data about users, customers, an…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-2455
|
2024-11-21 10:39 |
2012-11-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291356
|
- |
|
xen
|
xen xen-unstable
|
The PyGrub boot loader in Xen unstable before changeset 25589:60f09d1ab1fe, 4.2.x, and 4.1.x allows local para-virtualized guest users to cause a denial of service (memory consumption) via a large (1…
|
CWE-20
Improper Input Validation
|
CVE-2012-2625
|
2024-11-21 10:39 |
2012-11-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291357
|
- |
|
redhat
|
rhncfg
|
Red Hat Network (RHN) Configuration Client (rhncfg-client) in rhncfg before 5.10.27-8 uses weak permissions (world-readable) for /var/log/rhncfg-actions, which allows local users to obtain sensitive …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-2679
|
2024-11-21 10:39 |
2012-10-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291358
|
- |
|
microsoft
|
sql_server sql_server_reporting_services
|
Cross-site scripting (XSS) vulnerability in the SQL Server Report Manager in Microsoft SQL Server 2000 Reporting Services SP2 and SQL Server 2005 SP4, 2008 SP2 and SP3, 2008 R2 SP1, and 2012 allows r…
|
CWE-79
Cross-site Scripting
|
CVE-2012-2552
|
2024-11-21 10:39 |
2012-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291359
|
- |
|
microsoft
|
windows_server_2008 windows_7
|
The server in Kerberos in Microsoft Windows Server 2008 R2 and R2 SP1, and Windows 7 Gold and SP1, allows remote attackers to cause a denial of service (NULL pointer dereference and reboot) via a cra…
|
NVD-CWE-Other
|
CVE-2012-2551
|
2024-11-21 10:39 |
2012-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291360
|
- |
|
microsoft
|
works
|
Microsoft Works 9 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted Word .doc file, aka "Works Heap Vulnerability."
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-2550
|
2024-11-21 10:39 |
2012-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|