|
290841
|
8.1 |
HIGH
Network
|
gatewaygeomatics
|
mapserver
|
Gateway Geomatics MapServer for Windows before 3.0.6 contains a Local File Include Vulnerability which allows remote attackers to execute local PHP code and obtain sensitive information.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2012-2950
|
2024-11-21 10:40 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290842
|
8.8 |
HIGH
Network
|
wisc
|
htcondor
|
The (1) my_popenv_impl and (2) my_spawnv functions in src/condor_utils/my_popen.cpp and the (3) systemCommand function in condor_vm-gahp/vmgahp_common.cpp in Condor 7.6.x before 7.6.10 and 7.8.x befo…
|
NVD-CWE-noinfo
|
CVE-2012-3490
|
2024-11-21 10:40 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290843
|
8.8 |
HIGH
Network
|
fedoraproject
|
sssd
|
A flaw was found in SSSD version 1.9.0. The SSSD's access-provider logic causes the result of the HBAC rule processing to be ignored in the event that the access-provider is also handling the setup o…
|
CWE-287
Improper Authentication
|
CVE-2012-3462
|
2024-11-21 10:40 |
2019-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290844
|
7.8 |
HIGH
Local
|
ecryptfs debian
|
ecryptfs-utils debian_linux
|
ecryptfs-utils: suid helper does not restrict mounting filesystems with nosuid,nodev which creates a possible privilege escalation
|
CWE-20
Improper Input Validation
|
CVE-2012-3409
|
2024-11-21 10:40 |
2019-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290845
|
7.8 |
HIGH
Local
|
plow_project
|
plow
|
plow has local buffer overflow vulnerability
|
CWE-120
Classic Buffer Overflow
|
CVE-2012-3407
|
2024-11-21 10:40 |
2019-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290846
|
9.8 |
CRITICAL
Network
|
redhat
|
enterprise_mrg
|
cumin: At installation postgresql database user created without password
|
CWE-20
Improper Input Validation
|
CVE-2012-3460
|
2024-11-21 10:40 |
2019-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290847
|
7.5 |
HIGH
Network
|
freebsd
|
name_server_daemon
|
FreeBSD NSD before 3.2.13 allows remote attackers to crash a NSD child server process (SIGSEGV) and cause a denial of service in the NSD server.
|
CWE-669
Incorrect Resource Transfer Between Spheres
|
CVE-2012-2979
|
2024-11-21 10:40 |
2019-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290848
|
7.5 |
HIGH
Network
|
apache
|
hadoop
|
Hadoop 1.0.3 contains a symlink vulnerability.
|
CWE-59
Link Following
|
CVE-2012-2945
|
2024-11-21 10:40 |
2019-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290849
|
5.3 |
MEDIUM
Network
|
ibm
|
sametime
|
IBM Sametime allows remote attackers to obtain sensitive information from the Sametime Log database via a direct request to STLOG.NSF. IBM X-Force ID: 78048.
|
CWE-200
Information Exposure
|
CVE-2012-3331
|
2024-11-21 10:40 |
2018-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290850
|
7.5 |
HIGH
Network
|
apache
|
sling_jcr_contentloader
|
The Apache Sling JCR ContentLoader 2.1.4 XmlReader used in the Sling JCR content loader module makes it possible to import arbitrary files in the content repository, including local files, causing po…
|
CWE-200
Information Exposure
|
CVE-2012-3353
|
2024-11-21 10:40 |
2018-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|