|
289391
|
- |
|
apple
|
cups
|
CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator key in /var/run/cups/certs/0 using certain permissions, which allows local use…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-5519
|
2024-11-21 10:44 |
2012-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289392
|
- |
|
asial
|
monaca_debugger
|
The Asial Monaca Debugger application before 1.4.2 for Android allows remote attackers to obtain sensitive (1) account or (2) session ID information in a system log file via a crafted application.
|
CWE-200
Information Exposure
|
CVE-2012-5172
|
2024-11-21 10:44 |
2012-11-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289393
|
- |
|
mantisbt
|
mantisbt
|
core/email_api.php in MantisBT before 1.2.12 does not properly manage the sending of e-mail notifications about restricted bugs, which might allow remote authenticated users to obtain sensitive infor…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-5523
|
2024-11-21 10:44 |
2012-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289394
|
- |
|
mantisbt
|
mantisbt
|
MantisBT before 1.2.12 does not use an expected default value during decisions about whether a user may modify the status of a bug, which allows remote authenticated users to bypass intended access r…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-5522
|
2024-11-21 10:44 |
2012-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289395
|
- |
|
vmware
|
player workstation
|
Untrusted search path vulnerability in VMware Workstation 8.x before 8.0.5 and VMware Player 4.x before 4.0.5 on Windows allows host OS users to gain host OS privileges via a Trojan horse DLL in a "s…
|
NVD-CWE-Other
|
CVE-2012-5459
|
2024-11-21 10:44 |
2012-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289396
|
- |
|
vmware
|
player workstation
|
VMware Workstation 8.x before 8.0.5 and VMware Player 4.x before 4.0.5 on Windows use weak permissions for unspecified process threads, which allows host OS users to gain host OS privileges via a cra…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-5458
|
2024-11-21 10:44 |
2012-11-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289397
|
- |
|
adobe
|
flash_player flash_player_for_android adobe_air adobe_air_sdk
|
Buffer overflow in Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-5287
|
2024-11-21 10:44 |
2012-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289398
|
- |
|
adobe
|
flash_player flash_player_for_android adobe_air adobe_air_sdk
|
Buffer overflow in Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-5286
|
2024-11-21 10:44 |
2012-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289399
|
- |
|
adobe
|
flash_player air air_sdk
|
Buffer overflow in Adobe Flash Player before 10.3.183.29 and 11.x before 11.4.402.287 on Windows and Mac OS X, before 10.3.183.29 and 11.x before 11.2.202.243 on Linux, before 11.1.111.19 on Android …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-5285
|
2024-11-21 10:44 |
2012-11-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289400
|
- |
|
openstack
|
image_registry_and_delivery_service_\(glance\) essex folsom
|
The v2 API in OpenStack Glance Grizzly, Folsom (2012.2), and Essex (2012.1) allows remote authenticated users to delete arbitrary non-protected images via an image deletion request. NOTE: this vulne…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-5482
|
2024-11-21 10:44 |
2012-11-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|