|
291061
|
5.9 |
MEDIUM
Network
|
microsoft
|
windows_phone_7_firmware
|
Microsoft Windows Phone 7 does not verify the domain name in the subject's Common Name (CN) field of an X.509 certificate, which allows man-in-the-middle attackers to spoof an SSL server for the (1) …
|
CWE-295
Improper Certificate Validation
|
CVE-2012-2993
|
2024-11-21 10:40 |
2012-09-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291062
|
- |
|
trendmicro
|
interscan_messaging_security_suite
|
Cross-site request forgery (CSRF) vulnerability in saveAccountSubTab.imss in Trend Micro InterScan Messaging Security Suite 7.1-Build_Win32_1394 allows remote attackers to hijack the authentication o…
|
CWE-352
Origin Validation Error
|
CVE-2012-2996
|
2024-11-21 10:40 |
2012-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291063
|
- |
|
trendmicro
|
interscan_messaging_security_suite
|
Multiple cross-site scripting (XSS) vulnerabilities in Trend Micro InterScan Messaging Security Suite 7.1-Build_Win32_1394 allow remote attackers to inject arbitrary web script or HTML via (1) the wr…
|
CWE-79
Cross-site Scripting
|
CVE-2012-2995
|
2024-11-21 10:40 |
2012-09-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291064
|
- |
|
cisco
|
unity_connection
|
Cisco Unity Connection (UC) 7.1, 8.0, and 8.5 allows remote authenticated users to cause a denial of service (resource consumption and administration outage) via extended use of the product, aka Bug …
|
NVD-CWE-Other
|
CVE-2012-3096
|
2024-11-21 10:40 |
2012-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291065
|
- |
|
cisco
|
anyconnect_secure_mobility_client
|
The VPN downloader in the download_install component in Cisco AnyConnect Secure Mobility Client 3.1.x before 3.1.00495 on Linux accepts arbitrary X.509 server certificates without user interaction, w…
|
CWE-200
Information Exposure
|
CVE-2012-3094
|
2024-11-21 10:40 |
2012-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291066
|
- |
|
cisco
|
anyconnect_secure_mobility_client
|
Cisco AnyConnect Secure Mobility Client 3.1.x before 3.1.00495, and 3.2.x, does not check whether an HTTP request originally contains ScanSafe headers, which allows remote attackers to have an unspec…
|
NVD-CWE-noinfo
|
CVE-2012-3088
|
2024-11-21 10:40 |
2012-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291067
|
- |
|
cisco
|
ios
|
Cisco IOS 12.2 allows remote attackers to cause a denial of service (CPU consumption) by establishing many IPv6 neighbors, aka Bug ID CSCtn78957.
|
CWE-399
Resource Management Errors
|
CVE-2012-3079
|
2024-11-21 10:40 |
2012-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291068
|
- |
|
cisco
|
unity_connection
|
Cisco Unity Connection (UC) 8.6, 9.0, and 9.5 allows remote attackers to cause a denial of service (CPU consumption) via malformed UDP packets, aka Bug ID CSCtz76269.
|
CWE-399
Resource Management Errors
|
CVE-2012-3060
|
2024-11-21 10:40 |
2012-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291069
|
- |
|
cisco
|
vpn_client
|
Untrusted search path vulnerability in Cisco VPN Client 5.0 allows local users to gain privileges via a Trojan horse DLL in the current working directory, aka Bug ID CSCua28747.
|
NVD-CWE-Other
|
CVE-2012-3052
|
2024-11-21 10:40 |
2012-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291070
|
- |
|
cisco
|
nx-os nexus_7000 nexus_7000_10-slot nexus_7000_18-slot nexus_7000_9-slot
|
Cisco NX-OS 5.2 and 6.1 on Nexus 7000 series switches allows remote attackers to cause a denial of service (process crash or packet loss) via a large number of ARP packets, aka Bug ID CSCtr44822.
|
NVD-CWE-noinfo
|
CVE-2012-3051
|
2024-11-21 10:40 |
2012-09-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|