|
290861
|
- |
|
f5
|
big-ip_configuration_utility
|
XML External Entity (XXE) vulnerability in sam/admin/vpe2/public/php/server.php in F5 BIG-IP 10.0.0 through 10.2.4 and 11.0.0 through 11.2.1 allows remote authenticated users to read arbitrary files …
|
CWE-200
Information Exposure
|
CVE-2012-2997
|
2024-11-21 10:40 |
2014-01-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290862
|
- |
|
cisco
|
scientific_atlanta_wag310g scientific_atlanta_epc2420 scientific_atlanta_dpw700 scientific_atlanta_dpx100\/120 scientific_atlanta_dpc3008\/epc3008 scientific_atlanta_dpc\/epc2100 sc…
|
Cross-site scripting (XSS) vulnerability in the web-wizard setup page on Cisco Scientific Atlanta D20 and D30 cable modems allows remote attackers to inject arbitrary web script or HTML via unspecifi…
|
CWE-79
Cross-site Scripting
|
CVE-2012-3047
|
2024-11-21 10:40 |
2013-12-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290863
|
- |
|
ibm
|
maximo_asset_management
|
IBM Maximo Asset Management 6.2 before 6.2.8, 7.1 before 7.1.1.12, and 7.5 before 7.5.0.3 allows remote attackers to gain privileges via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-3323
|
2024-11-21 10:40 |
2013-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290864
|
- |
|
moxa
|
oncell_gateway_firmware oncell_gateway_g3111 oncell_gateway_g3151 oncell_gateway_g3211 oncell_gateway_g3251
|
Moxa OnCell Gateway G3111, G3151, G3211, and G3251 devices with firmware before 1.4 do not use a sufficient source of entropy for SSH and SSL keys, which makes it easier for remote attackers to obtai…
|
CWE-310
Cryptographic Issues
|
CVE-2012-3039
|
2024-11-21 10:40 |
2013-08-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290865
|
- |
|
wordpress swfupload_project tinymce
|
wordpress swfupload image_manager
|
Cross-site scripting (XSS) vulnerability in swfupload.swf in SWFUpload 2.2.0.1 and earlier, as used in WordPress before 3.3.2, TinyMCE Image Manager 1.1, and other products, allows remote attackers t…
|
CWE-79
Cross-site Scripting
|
CVE-2012-3414
|
2024-11-21 10:40 |
2013-07-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290866
|
- |
|
canarylabs
|
trendlink
|
The SaveToFile method in a certain ActiveX control in TrendDisplay.dll in Canary Labs TrendLink 9.0.2.27051 and earlier does not properly restrict the creation of files, which allows remote attackers…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-3022
|
2024-11-21 10:40 |
2013-04-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290867
|
- |
|
thekelleys redhat
|
dnsmasq enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation
|
Dnsmasq before 2.63test1, when used with certain libvirt configurations, replies to requests from prohibited interfaces, which allows remote attackers to cause a denial of service (traffic amplificat…
|
CWE-20
Improper Input Validation
|
CVE-2012-3411
|
2024-11-21 10:40 |
2013-03-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290868
|
- |
|
ibm
|
change_and_configuration_management_database tivoli_service_request_manager tivoli_asset_management_for_it maximo_asset_management maximo_asset_management_essentials
|
Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.1, Maximo Asset Management Essentials 7.1, Tivoli Asset Management for IT 7.1 and 7.2, Tivoli Service Request Manager 7.1 and…
|
CWE-79
Cross-site Scripting
|
CVE-2012-3328
|
2024-11-21 10:40 |
2013-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290869
|
- |
|
ibm
|
smartcloud_control_desk
|
IBM SmartCloud Control Desk 7.5 allows remote authenticated users to bypass intended access restrictions via vectors involving an expired password.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-3321
|
2024-11-21 10:40 |
2013-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290870
|
- |
|
ibm
|
maximo_asset_management maximo_asset_management_essentials tivoli_asset_management_for_it tivoli_service_request_manager maximo_service_desk change_and_configuration_management_databas…
|
Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 6.2 through 7.5, Maximo Asset Management Essentials 6.2 through 7.5, Tivoli Asset Management for IT 6.2 through 7.2, Tivoli Ser…
|
CWE-79
Cross-site Scripting
|
CVE-2012-3327
|
2024-11-21 10:40 |
2013-02-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|