|
289601
|
9.8 |
CRITICAL
Network
|
ezhometech
|
ezserver
|
A Code Execution vulnerability exists in the memcpy function when processing AMF requests in Ezhometech EzServer 7.0, which could let a remote malicious user execute arbitrary code or cause a Denial …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-4750
|
2024-11-21 10:43 |
2020-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289602
|
6.1 |
MEDIUM
Local
|
safend
|
data_protector_agent
|
An issue exists in Safend Data Protector Agent 3.4.5586.9772 in the securitylayer.log file in the logs.9972 directory, which could let a malicious user decrypt and potentially change the Safend secur…
|
CWE-269
Improper Privilege Management
|
CVE-2012-4767
|
2024-11-21 10:43 |
2020-01-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289603
|
7.8 |
HIGH
Local
|
citrix
|
receiver xenapp_online
|
Citrix XenApp Online Plug-in for Windows 12.1 and earlier, and Citrix Receiver for Windows 3.2 and earlier could allow remote attackers to execute arbitrary code by convincing a target to open a spec…
|
CWE-20
Improper Input Validation
|
CVE-2012-4603
|
2024-11-21 10:43 |
2020-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289604
|
7.8 |
HIGH
Local
|
toshiba
|
configfree_utility
|
Multiple stack-based buffer overflows in CFProfile.exe in Toshiba ConfigFree Utility 8.0.38 allow user-assisted attackers to execute arbitrary code.
|
CWE-787
Out-of-bounds Write
|
CVE-2012-4980
|
2024-11-21 10:43 |
2019-12-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289605
|
7.8 |
HIGH
Local
|
freebsd debian
|
freebsd debian_linux
|
FreeBSD: Input Validation Flaw allows local users to gain elevated privileges
|
CWE-20
Improper Input Validation
|
CVE-2012-4576
|
2024-11-21 10:43 |
2019-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289606
|
6.1 |
MEDIUM
Network
|
piwigo
|
piwigo
|
piwigo has XSS in password.php (incomplete fix for CVE-2012-4525)
|
CWE-79
Cross-site Scripting
|
CVE-2012-4526
|
2024-11-21 10:43 |
2019-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289607
|
6.1 |
MEDIUM
Network
|
piwigo
|
piwigo
|
piwigo has XSS in password.php
|
CWE-79
Cross-site Scripting
|
CVE-2012-4525
|
2024-11-21 10:43 |
2019-12-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289608
|
7.5 |
HIGH
Network
|
sillycycle fedoraproject
|
xlockmore fedora
|
xlockmore before 5.43 'dclock' security bypass vulnerability
|
CWE-20
Improper Input Validation
|
CVE-2012-4524
|
2024-11-21 10:43 |
2019-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289609
|
9.8 |
CRITICAL
Network
|
letodms_project
|
letodms
|
SQL injection vulnerability in LetoDMS_Core/Core/inc.ClassDMS.php in LetoDMS (formerly MyDMS) before 3.3.8 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2012-4570
|
2024-11-21 10:43 |
2017-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289610
|
6.1 |
MEDIUM
Network
|
letodms_project
|
letodms
|
Multiple cross-site scripting (XSS) vulnerabilities in out/out.UsrMgr.php in LetoDMS (formerly MyDMS) before 3.3.9 allow remote attackers to inject arbitrary web script or HTML via unspecified vector…
|
CWE-79
Cross-site Scripting
|
CVE-2012-4569
|
2024-11-21 10:43 |
2017-10-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|