|
293171
|
- |
|
clixint
|
image_hosting_script_dpi
|
Cross-site scripting (XSS) vulnerability in misc.php in Image Hosting Script DPI 1.0, 1.3, and earlier allows remote attackers to inject arbitrary web script or HTML via the showseries parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2012-0975
|
2024-11-21 10:36 |
2012-02-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293172
|
- |
|
wordpress
|
wordpress
|
wp-admin/setup-config.php in the installation component in WordPress 3.3.1 and earlier does not limit the number of MySQL queries sent to external MySQL database servers, which allows remote attacker…
|
NVD-CWE-noinfo
|
CVE-2012-0937
|
2024-11-21 10:36 |
2012-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293173
|
- |
|
opennms.org
|
opennms
|
Cross-site scripting (XSS) vulnerability in web/springframework/security/SecurityAuthenticationEventOnmsEventBuilder.java in OpenNMS 1.8.x before 1.8.17, 1.9.93 and earlier, and 1.10.x before 1.10.1 …
|
CWE-79
Cross-site Scripting
|
CVE-2012-0936
|
2024-11-21 10:36 |
2012-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293174
|
- |
|
aryadad
|
aryadad_cms
|
SQL injection vulnerability in Default.aspx in Aryadad CMS allows remote attackers to execute arbitrary SQL commands via the PageID parameter.
|
CWE-89
SQL Injection
|
CVE-2012-0935
|
2024-11-21 10:36 |
2012-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293175
|
- |
|
zingiri
|
theme_tuner_plugin
|
PHP remote file inclusion vulnerability in ajax/savetag.php in the Theme Tuner plugin for WordPress before 0.8 allows remote attackers to execute arbitrary PHP code via a URL in the tt-abspath parame…
|
CWE-94
Code Injection
|
CVE-2012-0934
|
2024-11-21 10:36 |
2012-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293176
|
7.5 |
HIGH
Network
|
cloudbees jenkins
|
jenkins
|
Hash collision attack vulnerability in Jenkins before 1.447, Jenkins LTS before 1.424.2, and Jenkins Enterprise by CloudBees 1.424.x before 1.424.2.1 and 1.400.x before 1.400.0.11 could allow remote …
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2012-0785
|
2024-11-21 10:35 |
2020-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293177
|
5.5 |
MEDIUM
Local
|
netsurf-browser debian
|
netsurf debian_linux
|
Information-disclosure vulnerability in Netsurf through 2.8 due to a world-readable cookie jar.
|
CWE-200
Information Exposure
|
CVE-2012-0844
|
2024-11-21 10:35 |
2020-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293178
|
9.8 |
CRITICAL
Network
|
xchat-wdk xchat gnome
|
xchat-wdk xchat gtk
|
Heap-based buffer overflow in Xchat-WDK before 1499-4 (2012-01-18) xchat 2.8.6 on Maemo architecture could allow remote attackers to cause a denial of service (xchat client crash) or execute arbitrar…
|
CWE-787
Out-of-bounds Write
|
CVE-2012-0828
|
2024-11-21 10:35 |
2020-02-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293179
|
5.4 |
MEDIUM
Network
|
ibm
|
tivoli_endpoint_manager
|
IBM Tivoli Endpoint Manager 8 does not set the HttpOnly flag on cookies.
|
NVD-CWE-Other
|
CVE-2012-0718
|
2024-11-21 10:35 |
2020-02-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293180
|
5.5 |
MEDIUM
Local
|
linux
|
linux_kernel
|
The int3 handler in the Linux kernel before 3.3 relies on a per-CPU debug stack, which allows local users to cause a denial of service (stack corruption and panic) via a crafted application that trig…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2012-0810
|
2024-11-21 10:35 |
2020-02-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|