|
288921
|
5.5 |
MEDIUM
Local
|
inkscape fedoraproject canonical opensuse
|
inkscape fedora ubuntu_linux opensuse
|
The rasterization process in Inkscape before 0.48.4 allows local users to read arbitrary files via an external entity in a SVG file, aka an XML external entity (XXE) injection attack.
|
CWE-611
XXE
|
CVE-2012-5656
|
2024-11-21 10:45 |
2013-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288922
|
- |
|
specview
|
specview
|
Directory traversal vulnerability in the web server in SpecView 2.5 build 853 and earlier allows remote attackers to read arbitrary files via a ... (dot dot dot) in a URI.
|
CWE-22
Path Traversal
|
CVE-2012-5972
|
2024-11-21 10:45 |
2013-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288923
|
- |
|
elite-board
|
elite_bulletin_board
|
Multiple SQL injection vulnerabilities in the (1) update_whosonline_reg and (2) update_whosonline_guest functions in Elite Bulletin Board before 2.1.22 allow remote attackers to execute arbitrary SQL…
|
CWE-89
SQL Injection
|
CVE-2012-5874
|
2024-11-21 10:45 |
2013-01-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288924
|
- |
|
digium
|
asterisk certified_asterisk
|
Asterisk Open Source 1.8.x before 1.8.19.1, 10.x before 10.11.1, and 11.x before 11.1.2; Certified Asterisk 1.8.11 before 1.8.11-cert10; and Asterisk Digiumphones 10.x-digiumphones before 10.11.1-dig…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-5977
|
2024-11-21 10:45 |
2013-01-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288925
|
- |
|
swi-prolog
|
swi-prolog
|
Multiple stack-based buffer overflows in the expand function in os/pl-glob.c in SWI-Prolog before 6.2.5 and 6.3.x before 6.3.7 allow remote attackers to cause a denial of service (application crash) …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-6090
|
2024-11-21 10:45 |
2013-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288926
|
- |
|
swi-prolog
|
swi-prolog
|
Multiple stack-based buffer overflows in the canoniseFileName function in os/pl-os.c in SWI-Prolog before 6.2.5 and 6.3.x before 6.3.7 allow remote attackers to cause a denial of service (application…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-6089
|
2024-11-21 10:45 |
2013-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288927
|
- |
|
digium
|
asterisk certified_asterisk
|
Multiple stack consumption vulnerabilities in Asterisk Open Source 1.8.x before 1.8.19.1, 10.x before 10.11.1, and 11.x before 11.1.2; Certified Asterisk 1.8.11 before 1.8.11-cert10; and Asterisk Dig…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-5976
|
2024-11-21 10:45 |
2013-01-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288928
|
- |
|
gnu
|
grep
|
Multiple integer overflows in GNU Grep before 2.11 might allow context-dependent attackers to execute arbitrary code via vectors involving a long input line that triggers a heap-based buffer overflow.
|
CWE-189
Numeric Errors
|
CVE-2012-5667
|
2024-11-21 10:45 |
2013-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288929
|
- |
|
moinmo
|
moinmoin
|
Cross-site scripting (XSS) vulnerability in the rsslink function in theme/__init__.py in MoinMoin 1.9.5 allows remote attackers to inject arbitrary web script or HTML via the page name in a rss link.
|
CWE-79
Cross-site Scripting
|
CVE-2012-6082
|
2024-11-21 10:45 |
2013-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288930
|
- |
|
moinmo
|
moinmoin
|
Multiple unrestricted file upload vulnerabilities in the (1) twikidraw (action/twikidraw.py) and (2) anywikidraw (action/anywikidraw.py) actions in MoinMoin before 1.9.6 allow remote authenticated us…
|
NVD-CWE-Other
|
CVE-2012-6081
|
2024-11-21 10:45 |
2013-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|