|
291461
|
- |
|
bloxx
|
web_filtering
|
Cross-site request forgery (CSRF) vulnerability in Microdasys before 3.5.1-B708, as used in Bloxx Web Filtering before 5.0.14 and other products, allows remote attackers to hijack the authentication …
|
CWE-352
Origin Validation Error
|
CVE-2012-3343
|
2024-11-21 10:40 |
2012-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291462
|
- |
|
siemens
|
wincc
|
Open redirect vulnerability in an unspecified web application in Siemens WinCC 7.0 SP3 before Update 2 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks vi…
|
CWE-20
Improper Input Validation
|
CVE-2012-3003
|
2024-11-21 10:40 |
2012-06-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291463
|
- |
|
globus
|
globus_toolkit
|
The GridFTP in Globus Toolkit (GT) before 5.2.2, when certain autoconf macros are defined, does not properly check the return value from the getpwnam_r function, which might allow remote attackers to…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-3292
|
2024-11-21 10:40 |
2012-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291464
|
- |
|
infradead
|
openconnect
|
Heap-based buffer overflow in OpenConnect 3.18 allows remote servers to cause a denial of service via a crafted greeting banner.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-3291
|
2024-11-21 10:40 |
2012-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291465
|
- |
|
google acer samsung
|
chrome_os ac700_chromebook cr-48_chromebook chromebox_3 series_5_550_chromebook series_5_chromebook
|
Multiple unspecified vulnerabilities in Google Chrome before 20.0.1132.22 on the Acer AC700; Samsung Series 5, 5 550, and Chromebox 3; and Cr-48 Chromebook platforms have unknown impact and attack ve…
|
NVD-CWE-noinfo
|
CVE-2012-3290
|
2024-11-21 10:40 |
2012-06-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291466
|
- |
|
mozilla
|
seamonkey firefox thunderbird thunderbird_esr
|
The glBufferData function in the WebGL implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMon…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-3105
|
2024-11-21 10:40 |
2012-06-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291467
|
- |
|
asterisk sangoma
|
certified_asterisk open_source asterisk
|
chan_skinny.c in the Skinny (aka SCCP) channel driver in Certified Asterisk 1.8.11-cert before 1.8.11-cert2 and Asterisk Open Source 1.8.x before 1.8.12.1 and 10.x before 10.4.1 allows remote authent…
|
CWE-399
Resource Management Errors
|
CVE-2012-2948
|
2024-11-21 10:40 |
2012-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291468
|
- |
|
debian digium
|
debian_linux asterisk certified_asterisk
|
chan_iax2.c in the IAX2 channel driver in Certified Asterisk 1.8.11-cert before 1.8.11-cert2 and Asterisk Open Source 1.8.x before 1.8.12.1 and 10.x before 10.4.1, when a certain mohinterpret setting…
|
CWE-284
Improper Access Control
|
CVE-2012-2947
|
2024-11-21 10:40 |
2012-06-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291469
|
- |
|
jaow
|
jaow
|
SQL injection vulnerability in add_ons.php in Jaow 2.4.5 and earlier allows remote attackers to execute arbitrary SQL commands via the add_ons parameter.
|
CWE-89
SQL Injection
|
CVE-2012-2952
|
2024-11-21 10:40 |
2012-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291470
|
- |
|
zte
|
score_m
|
The ZTE sync_agent program for Android 2.3.4 on the Score M device uses a hardcoded ztex1609523 password to control access to commands, which allows remote attackers to gain privileges via a crafted …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-2949
|
2024-11-21 10:40 |
2012-05-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|