|
289531
|
- |
|
sagem
|
f\@st_2604_firmware f\@st_2604
|
Cross-site request forgery (CSRF) vulnerability in password.cgi in Sagem F@ST 2604 253180972B allows remote attackers to hijack the authentication of administrators for requests that change the admin…
|
CWE-352
Origin Validation Error
|
CVE-2012-5320
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289532
|
- |
|
dlink
|
dcs-900 dcs-2000 dcs-5300
|
Cross-site request forgery (CSRF) vulnerability in setup/security.cgi in D-Link DCS-900, DCS-2000, and DCS-5300 allows remote attackers to hijack the authentication of administrators for requests tha…
|
CWE-352
Origin Validation Error
|
CVE-2012-5319
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289533
|
- |
|
kishore_asokan
|
kish_guest_posting_plugin
|
Unrestricted file upload vulnerability in uploadify/scripts/uploadify.php in the Kish Guest Posting plugin 1.2 for WordPress allows remote attackers to execute arbitrary code by uploading a file with…
|
NVD-CWE-Other
|
CVE-2012-5318
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289534
|
- |
|
bigware
|
bigware_shop
|
SQL injection vulnerability in main_bigware_43.php in Bigware Shop before 2.1.5 allows remote attackers to execute arbitrary SQL commands via the lastname parameter in a process action.
|
CWE-89
SQL Injection
|
CVE-2012-5317
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289535
|
- |
|
barracudanetworks
|
spam_\&_virus_firewall_600_firmware spam_\&_virus_firewall_600
|
Multiple cross-site scripting (XSS) vulnerabilities in Barracuda Spam & Virus Firewall 600 Firmware 4.0.1.009 and earlier allow remote authenticated users to inject arbitrary web script or HTML via (…
|
CWE-79
Cross-site Scripting
|
CVE-2012-5316
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289536
|
- |
|
php_ireport_project
|
php_ireport
|
Multiple cross-site scripting (XSS) vulnerabilities in php ireport 1.0 allow remote attackers to inject arbitrary web script or HTML via the message parameter to (1) messages_viewer.php, (2) home.php…
|
CWE-79
Cross-site Scripting
|
CVE-2012-5315
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289537
|
- |
|
heikki_hokkanen
|
viewgit
|
Cross-site scripting (XSS) vulnerability in ViewGit 0.0.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the f parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2012-5314
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289538
|
- |
|
snitz_communications
|
snitz_forums_2000
|
SQL injection vulnerability in forum.asp in Snitz Forums 2000 allows remote attackers to execute arbitrary SQL commands via the TOPIC_ID parameter.
|
CWE-89
SQL Injection
|
CVE-2012-5313
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289539
|
- |
|
tribiq
|
tribiq_cms
|
SQL injection vulnerability in Tribiq CMS allows remote attackers to execute arbitrary SQL commands via the id parameter to index.php.
|
CWE-89
SQL Injection
|
CVE-2012-5312
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289540
|
- |
|
getshopped
|
wp_e-commerce
|
SQL injection vulnerability in the WP e-Commerce plugin before 3.8.7.6 for WordPress allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2012-5310
|
2024-11-21 10:44 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|