|
290661
|
- |
|
canonical redhat gnu
|
ubuntu_linux enterprise_linux glibc enterprise_virtualization
|
The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.14 and other versions does not properly calculate a buffer length, which allows context-dependent attackers to …
|
CWE-189
Numeric Errors
|
CVE-2012-3405
|
2024-11-21 10:40 |
2014-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290662
|
- |
|
canonical redhat gnu
|
ubuntu_linux enterprise_linux enterprise_virtualization glibc
|
The vfprintf function in stdio-common/vfprintf.c in libc in GNU C Library (aka glibc) 2.12 and other versions does not properly calculate a buffer length, which allows context-dependent attackers to …
|
CWE-189
Numeric Errors
|
CVE-2012-3404
|
2024-11-21 10:40 |
2014-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290663
|
- |
|
redhat
|
jboss_enterprise_application_platform
|
EC2 Amazon Machine Image (AMI) in JBoss Enterprise Application Platform (EAP) 5.1.2 uses 755 permissions for /var/cache/jboss-ec2-eap/, which allows local users to read sensitive information such as …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-3427
|
2024-11-21 10:40 |
2014-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290664
|
- |
|
f5
|
big-ip_webaccelerator big-ip_global_traffic_manager big-ip_local_traffic_manager big-ip_protocol_security_module big-ip_wan_optimization_manager big-ip_link_controller big-ip_analyt…
|
Multiple SQL injection vulnerabilities in sam/admin/reports/php/saveSettings.php in the (1) APM WebGUI in F5 BIG-IP LTM, GTM, ASM, Link Controller, PSM, APM, Edge Gateway, and Analytics and (2) AVR W…
|
CWE-89
SQL Injection
|
CVE-2012-3000
|
2024-11-21 10:40 |
2014-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290665
|
- |
|
f5
|
big-ip_configuration_utility
|
XML External Entity (XXE) vulnerability in sam/admin/vpe2/public/php/server.php in F5 BIG-IP 10.0.0 through 10.2.4 and 11.0.0 through 11.2.1 allows remote authenticated users to read arbitrary files …
|
CWE-200
Information Exposure
|
CVE-2012-2997
|
2024-11-21 10:40 |
2014-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290666
|
- |
|
cisco
|
scientific_atlanta_wag310g scientific_atlanta_epc2420 scientific_atlanta_dpw700 scientific_atlanta_dpx100\/120 scientific_atlanta_dpc3008\/epc3008 scientific_atlanta_dpc\/epc2100 sc…
|
Cross-site scripting (XSS) vulnerability in the web-wizard setup page on Cisco Scientific Atlanta D20 and D30 cable modems allows remote attackers to inject arbitrary web script or HTML via unspecifi…
|
CWE-79
Cross-site Scripting
|
CVE-2012-3047
|
2024-11-21 10:40 |
2013-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290667
|
- |
|
ibm
|
maximo_asset_management
|
IBM Maximo Asset Management 6.2 before 6.2.8, 7.1 before 7.1.1.12, and 7.5 before 7.5.0.3 allows remote attackers to gain privileges via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-3323
|
2024-11-21 10:40 |
2013-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290668
|
- |
|
moxa
|
oncell_gateway_firmware oncell_gateway_g3111 oncell_gateway_g3151 oncell_gateway_g3211 oncell_gateway_g3251
|
Moxa OnCell Gateway G3111, G3151, G3211, and G3251 devices with firmware before 1.4 do not use a sufficient source of entropy for SSH and SSL keys, which makes it easier for remote attackers to obtai…
|
CWE-310
Cryptographic Issues
|
CVE-2012-3039
|
2024-11-21 10:40 |
2013-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290669
|
- |
|
wordpress swfupload_project tinymce
|
wordpress swfupload image_manager
|
Cross-site scripting (XSS) vulnerability in swfupload.swf in SWFUpload 2.2.0.1 and earlier, as used in WordPress before 3.3.2, TinyMCE Image Manager 1.1, and other products, allows remote attackers t…
|
CWE-79
Cross-site Scripting
|
CVE-2012-3414
|
2024-11-21 10:40 |
2013-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290670
|
- |
|
canarylabs
|
trendlink
|
The SaveToFile method in a certain ActiveX control in TrendDisplay.dll in Canary Labs TrendLink 9.0.2.27051 and earlier does not properly restrict the creation of files, which allows remote attackers…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-3022
|
2024-11-21 10:40 |
2013-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|