|
289661
|
- |
|
ibm
|
cognos_business_intelligence
|
IBM Cognos Business Intelligence (BI) 8.4.1 before IF1, 10.1 before IF2, 10.1.1 before IF2, and 10.2 before IF1 allows remote authenticated users to conduct XPath injection attacks, and read arbitrar…
|
CWE-200
Information Exposure
|
CVE-2012-4837
|
2024-11-21 10:43 |
2013-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289662
|
- |
|
ibm
|
cognos_business_intelligence
|
Cross-site scripting (XSS) vulnerability in IBM Cognos Business Intelligence (BI) 8.4.1 before IF1, 10.1 before IF2, 10.1.1 before IF2, and 10.2 before IF1 allows remote authenticated users to inject…
|
CWE-79
Cross-site Scripting
|
CVE-2012-4836
|
2024-11-21 10:43 |
2013-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289663
|
- |
|
ibm
|
cognos_business_intelligence
|
Cross-site scripting (XSS) vulnerability in IBM Cognos Business Intelligence (BI) 8.4.1 before IF1, 10.1 before IF2, 10.1.1 before IF2, and 10.2 before IF1 allows remote attackers to inject arbitrary…
|
CWE-79
Cross-site Scripting
|
CVE-2012-4835
|
2024-11-21 10:43 |
2013-03-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289664
|
- |
|
linux
|
linux_kernel
|
block/scsi_ioctl.c in the Linux kernel through 3.8 does not properly consider the SCSI device class during authorization of SCSI commands, which allows local users to bypass intended access restricti…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-4542
|
2024-11-21 10:43 |
2013-03-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289665
|
- |
|
ibm
|
lotus_domino
|
Cross-site scripting (XSS) vulnerability in the web server in IBM Lotus Domino 8.5.x through 8.5.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2012-4844
|
2024-11-21 10:43 |
2013-02-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289666
|
- |
|
ibm
|
lotus_domino
|
Open redirect vulnerability in the web server in IBM Lotus Domino 8.5.x through 8.5.3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vec…
|
CWE-399
Resource Management Errors
|
CVE-2012-4842
|
2024-11-21 10:43 |
2013-02-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289667
|
- |
|
apache
|
http_server
|
Multiple cross-site scripting (XSS) vulnerabilities in the balancer_handler function in the manager interface in mod_proxy_balancer.c in the mod_proxy_balancer module in the Apache HTTP Server 2.2.x …
|
CWE-79
Cross-site Scripting
|
CVE-2012-4558
|
2024-11-21 10:43 |
2013-02-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289668
|
- |
|
3s-software
|
codesys_gateway-server
|
Stack-based buffer overflow in 3S CODESYS Gateway-Server before 2.3.9.27 allows remote attackers to execute arbitrary code via a crafted packet.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-4708
|
2024-11-21 10:43 |
2013-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289669
|
- |
|
3s-software
|
codesys_gateway-server
|
3S CODESYS Gateway-Server before 2.3.9.27 allows remote attackers to execute arbitrary code via vectors that trigger an out-of-bounds memory access.
|
CWE-94
Code Injection
|
CVE-2012-4707
|
2024-11-21 10:43 |
2013-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
289670
|
- |
|
3s-software
|
codesys_gateway-server
|
Integer signedness error in 3S CODESYS Gateway-Server before 2.3.9.27 allows remote attackers to cause a denial of service via a crafted packet that triggers a heap-based buffer overflow.
|
CWE-189
Numeric Errors
|
CVE-2012-4706
|
2024-11-21 10:43 |
2013-02-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|