|
294021
|
- |
|
oscommerce
|
oscommerce
|
Cross-site scripting (XSS) vulnerability in osCommerce 2.2MS1J before R9 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2012-0311
|
2024-11-21 10:34 |
2012-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294022
|
- |
|
mailenable
|
mailenable
|
Cross-site scripting (XSS) vulnerability in ForgottenPassword.aspx in MailEnable Professional, Enterprise, and Premium 4.26 and earlier, 5.x before 5.53, and 6.x before 6.03 allows remote attackers t…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0389
|
2024-11-21 10:34 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294023
|
- |
|
batavi
|
batavi
|
SQL injection vulnerability in ajax.php in Batavi before 1.2.1 allows remote attackers to execute arbitrary SQL commands via the boxToReload parameter.
|
CWE-89
SQL Injection
|
CVE-2012-0069
|
2024-11-21 10:34 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294024
|
- |
|
simplesamlphp
|
simplesamlphp
|
Cross-site scripting (XSS) vulnerability in modules/core/www/no_cookie.php in SimpleSAMLphp 1.8.1 and possibly other versions before 1.8.2 allows remote attackers to inject arbitrary web script or HT…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0040
|
2024-11-21 10:34 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294025
|
- |
|
stone-ware
|
webnetwork
|
Cross-site request forgery (CSRF) vulnerability in Stoneware webNetwork before 6.0.8.0 allows remote attackers to hijack the authentication of unspecified victims for requests that modify user accoun…
|
CWE-352
Origin Validation Error
|
CVE-2012-0286
|
2024-11-21 10:34 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294026
|
- |
|
stone-ware
|
webnetwork
|
Multiple cross-site scripting (XSS) vulnerabilities in Stoneware webNetwork before 6.0.8.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2012-0285
|
2024-11-21 10:34 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294027
|
- |
|
glucose
|
glucose_2
|
Cross-site scripting (XSS) vulnerability in glucose 2 before stage 6.2 allows remote attackers to inject arbitrary web script or HTML via an RSS feed.
|
CWE-79
Cross-site Scripting
|
CVE-2012-0313
|
2024-11-21 10:34 |
2012-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294028
|
- |
|
ibm
|
lotus_symphony
|
Multiple integer overflows in vclmi.dll in the visual class library module in IBM Lotus Symphony before 3.0.1 might allow remote attackers to execute arbitrary code via an embedded (1) JPEG or (2) PN…
|
CWE-189
Numeric Errors
|
CVE-2012-0192
|
2024-11-21 10:34 |
2012-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294029
|
- |
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server (WAS) 6.0 through 6.0.2.43, 6.1 before 6.1.0.43, 7.0 before 7.0.0.23, and 8.0 before 8.0.0.3 computes hash values for form parameters without restricting the ability …
|
CWE-20
Improper Input Validation
|
CVE-2012-0193
|
2024-11-21 10:34 |
2012-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294030
|
- |
|
openssl
|
openssl
|
OpenSSL 0.9.8s and 1.0.0f does not properly support DTLS applications, which allows remote attackers to cause a denial of service (crash) via unspecified vectors related to an out-of-bounds read. NO…
|
CWE-399
Resource Management Errors
|
CVE-2012-0050
|
2024-11-21 10:34 |
2012-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|