|
291261
|
- |
|
valarsoft
|
webmatic
|
SQL injection vulnerability in index.php in Webmatic 3.1.1 allows remote attackers to execute arbitrary SQL commands via the Referer HTTP header.
|
CWE-89
SQL Injection
|
CVE-2012-3350
|
2024-11-21 10:40 |
2012-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291262
|
- |
|
gimp
|
gimp
|
fits-io.c in GIMP before 2.8.1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a malformed XTENSION header of a .fit file, as demonstrated us…
|
CWE-476
NULL Pointer Dereference
|
CVE-2012-3236
|
2024-11-21 10:40 |
2012-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291263
|
- |
|
extplorer
|
extplorer
|
Cross-site request forgery (CSRF) vulnerability in eXtplorer 2.1 RC3 and earlier allows remote attackers to hijack the authentication of administrators for requests that add an administrator account …
|
CWE-352
Origin Validation Error
|
CVE-2012-3362
|
2024-11-21 10:40 |
2012-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291264
|
- |
|
artis.imag
|
basilic
|
Config/diff.php in Basilic 1.5.14 allows remote attackers to execute arbitrary commands via shell metacharacters in the file parameter.
|
CWE-20
Improper Input Validation
|
CVE-2012-3399
|
2024-11-21 10:40 |
2012-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291265
|
- |
|
apache
|
hadoop
|
DataNodes in Apache Hadoop 2.0.0 alpha does not check the BlockTokens of clients when Kerberos is enabled and the DataNode has checked out the same BlockPool twice from a NodeName, which might allow …
|
CWE-310
Cryptographic Issues
|
CVE-2012-3376
|
2024-11-21 10:40 |
2012-07-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291266
|
- |
|
cisco
|
telepresence_recording_server
|
The administrative web interface on Cisco TelePresence Recording Server before 1.8.0 allows remote authenticated users to execute arbitrary commands via unspecified vectors, aka Bug ID CSCth85804.
|
CWE-78
OS Command
|
CVE-2012-3076
|
2024-11-21 10:40 |
2012-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291267
|
- |
|
cisco
|
telepresence_system_software telepresence_system_1300_65 telepresence_system_3000 telepresence_system_3010 telepresence_system_3200 telepresence_system_3210 telepresence_system_t3
|
The administrative web interface on Cisco TelePresence Immersive Endpoint Devices before 1.7.4 allows remote authenticated users to execute arbitrary commands via a malformed request on TCP port 443,…
|
CWE-78
OS Command
|
CVE-2012-3075
|
2024-11-21 10:40 |
2012-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291268
|
- |
|
cisco
|
telepresence_system_software telepresence_system_1300_65 telepresence_system_3000 telepresence_system_3010 telepresence_system_3200 telepresence_system_3210 telepresence_system_t3
|
An unspecified API on Cisco TelePresence Immersive Endpoint Devices before 1.9.1 allows remote attackers to execute arbitrary commands by leveraging certain adjacency and sending a malformed request …
|
CWE-78
OS Command
|
CVE-2012-3074
|
2024-11-21 10:40 |
2012-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291269
|
- |
|
cisco
|
telepresence_multipoint_switch_software telepresence_multipoint_switch telepresence_system_software telepresence_system_1300_65 telepresence_system_3000 telepresence_system_3010 tel…
|
The IP implementation on Cisco TelePresence Multipoint Switch before 1.8.1, Cisco TelePresence Manager before 1.9.0, and Cisco TelePresence Recording Server 1.8 and earlier allows remote attackers to…
|
NVD-CWE-Other
|
CVE-2012-3073
|
2024-11-21 10:40 |
2012-07-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291270
|
- |
|
astaro sophos
|
security_gateway_software security_gateway unified_threat_management_software unified_threat_management
|
Cross-site scripting (XSS) vulnerability in the Backup/Restore component in WebAdmin in Astaro Security Gateway before 8.305 allows remote attackers to inject arbitrary web script or HTML via the "Co…
|
CWE-79
Cross-site Scripting
|
CVE-2012-3238
|
2024-11-21 10:40 |
2012-07-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|