|
288991
|
- |
|
daniel_honrade
|
om_maximenu
|
The OM Maximenu module 6.x-1.43 and earlier for Drupal, when the "Title has PHP" option is enabled, allows remote authenticated users with the "Administer OM Maximenu" permission to execute arbitrary…
|
NVD-CWE-noinfo
|
CVE-2012-6065
|
2024-11-21 10:45 |
2012-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288992
|
- |
|
cmsmadesimple
|
cms_made_simple
|
Directory traversal vulnerability in lib/filemanager/imagemanager/images.php in CMS Made Simple (CMSMS) before 1.11.2.1 allows remote authenticated administrators to delete arbitrary files via a .. (…
|
CWE-22
Path Traversal
|
CVE-2012-6064
|
2024-11-21 10:45 |
2012-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288993
|
- |
|
samsung
|
kies_air
|
Samsung Kies Air 2.1.207051 and 2.1.210161 allows remote attackers to cause a denial of service (crash) via a crafted request to www/apps/KiesAir/jws/ssd.php.
|
NVD-CWE-noinfo
|
CVE-2012-5859
|
2024-11-21 10:45 |
2012-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288994
|
- |
|
samsung
|
kies_air
|
Samsung Kies Air 2.1.207051 and 2.1.210161 relies on the IP address for authentication, which allows remote man-in-the-middle attackers to read arbitrary phone contents by spoofing or controlling the…
|
CWE-287
Improper Authentication
|
CVE-2012-5858
|
2024-11-21 10:45 |
2012-12-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288995
|
- |
|
libssh
|
libssh
|
Double free vulnerability in the sftp_mkdir function in sftp.c in libssh before 0.5.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified …
|
CWE-399
Resource Management Errors
|
CVE-2012-6063
|
2024-11-21 10:45 |
2012-12-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288996
|
- |
|
google
|
cityhash
|
Google CityHash computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consum…
|
CWE-310
Cryptographic Issues
|
CVE-2012-6051
|
2024-11-21 10:45 |
2012-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288997
|
- |
|
mikrotik
|
routeros
|
The winbox service in MikroTik RouterOS 5.15 and earlier allows remote attackers to cause a denial of service (CPU consumption), read the router version, and possibly have other impacts via a request…
|
CWE-16
Configuration
|
CVE-2012-6050
|
2024-11-21 10:45 |
2012-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288998
|
- |
|
opensolution
|
quick.cart
|
Open Solution Quick.Cart 5.0 allows remote attackers to obtain sensitive information via (1) a long string or (2) invalid characters in a cookie, which reveals the installation path in an error messa…
|
CWE-200
Information Exposure
|
CVE-2012-6049
|
2024-11-21 10:45 |
2012-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
288999
|
- |
|
guitar-pro
|
guitar_pro
|
Guitar Pro 6.1.1 r10791 allows remote attackers to cause a denial of service (crash) via a long string in a gpx file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-6048
|
2024-11-21 10:45 |
2012-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289000
|
- |
|
x7_group
|
x7_chat
|
Cross-site request forgery (CSRF) vulnerability in X7 Chat 2.0.5.1 and earlier allows remote attackers to hijack the authentication of administrators for requests that add a user to an arbitrary grou…
|
CWE-352
Origin Validation Error
|
CVE-2012-6047
|
2024-11-21 10:45 |
2012-11-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|