|
291431
|
- |
|
extplorer
|
extplorer
|
Cross-site request forgery (CSRF) vulnerability in eXtplorer 2.1 RC3 and earlier allows remote attackers to hijack the authentication of administrators for requests that add an administrator account …
|
CWE-352
Origin Validation Error
|
CVE-2012-3362
|
2024-11-21 10:40 |
2012-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291432
|
- |
|
artis.imag
|
basilic
|
Config/diff.php in Basilic 1.5.14 allows remote attackers to execute arbitrary commands via shell metacharacters in the file parameter.
|
CWE-20
Improper Input Validation
|
CVE-2012-3399
|
2024-11-21 10:40 |
2012-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291433
|
- |
|
apache
|
hadoop
|
DataNodes in Apache Hadoop 2.0.0 alpha does not check the BlockTokens of clients when Kerberos is enabled and the DataNode has checked out the same BlockPool twice from a NodeName, which might allow …
|
CWE-310
Cryptographic Issues
|
CVE-2012-3376
|
2024-11-21 10:40 |
2012-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291434
|
- |
|
cisco
|
telepresence_recording_server
|
The administrative web interface on Cisco TelePresence Recording Server before 1.8.0 allows remote authenticated users to execute arbitrary commands via unspecified vectors, aka Bug ID CSCth85804.
|
CWE-78
OS Command
|
CVE-2012-3076
|
2024-11-21 10:40 |
2012-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291435
|
- |
|
cisco
|
telepresence_system_software telepresence_system_1300_65 telepresence_system_3000 telepresence_system_3010 telepresence_system_3200 telepresence_system_3210 telepresence_system_t3
|
The administrative web interface on Cisco TelePresence Immersive Endpoint Devices before 1.7.4 allows remote authenticated users to execute arbitrary commands via a malformed request on TCP port 443,…
|
CWE-78
OS Command
|
CVE-2012-3075
|
2024-11-21 10:40 |
2012-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291436
|
- |
|
cisco
|
telepresence_system_software telepresence_system_1300_65 telepresence_system_3000 telepresence_system_3010 telepresence_system_3200 telepresence_system_3210 telepresence_system_t3
|
An unspecified API on Cisco TelePresence Immersive Endpoint Devices before 1.9.1 allows remote attackers to execute arbitrary commands by leveraging certain adjacency and sending a malformed request …
|
CWE-78
OS Command
|
CVE-2012-3074
|
2024-11-21 10:40 |
2012-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291437
|
- |
|
cisco
|
telepresence_multipoint_switch_software telepresence_multipoint_switch telepresence_system_software telepresence_system_1300_65 telepresence_system_3000 telepresence_system_3010 tel…
|
The IP implementation on Cisco TelePresence Multipoint Switch before 1.8.1, Cisco TelePresence Manager before 1.9.0, and Cisco TelePresence Recording Server 1.8 and earlier allows remote attackers to…
|
NVD-CWE-Other
|
CVE-2012-3073
|
2024-11-21 10:40 |
2012-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291438
|
- |
|
astaro sophos
|
security_gateway_software security_gateway unified_threat_management_software unified_threat_management
|
Cross-site scripting (XSS) vulnerability in the Backup/Restore component in WebAdmin in Astaro Security Gateway before 8.305 allows remote attackers to inject arbitrary web script or HTML via the "Co…
|
CWE-79
Cross-site Scripting
|
CVE-2012-3238
|
2024-11-21 10:40 |
2012-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291439
|
- |
|
synel
|
sy-780\/a_time_\&_attendance_terminal
|
The Synel SY-780/A Time & Attendance terminal allows remote attackers to cause a denial of service (device hang) via network traffic to port (1) 1641, (2) 3734, or (3) 3735.
|
CWE-399
Resource Management Errors
|
CVE-2012-2970
|
2024-11-21 10:40 |
2012-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291440
|
- |
|
elitecore
|
cyberoam_unified_threat_management
|
The default configuration of Cyberoam UTM appliances uses the same Certification Authority certificate and same private key across different customers' installations, which makes it easier for man-in…
|
CWE-310
Cryptographic Issues
|
CVE-2012-3372
|
2024-11-21 10:40 |
2012-07-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|