|
293221
|
- |
|
oracle
|
database_server
|
Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, and 11.1.0.7 allows remote attackers to affect integrity and availability via unknown vec…
|
NVD-CWE-noinfo
|
CVE-2012-0510
|
2024-11-21 10:35 |
2012-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293222
|
- |
|
oracle
|
financial_services_software
|
Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.0.2 and 5.3.0 through 5.3.4 allows remote authenticated users to affect integrity via…
|
NVD-CWE-noinfo
|
CVE-2012-0509
|
2024-11-21 10:35 |
2012-05-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293223
|
- |
|
ibm
|
rational_appscan
|
Cross-site scripting (XSS) vulnerability in IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1 allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2012-0737
|
2024-11-21 10:35 |
2012-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293224
|
- |
|
ibm
|
rational_appscan
|
IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1 does not properly create scan jobs, which allows remote attackers to execute arbitrary code via a crafted web site.
|
CWE-20
Improper Input Validation
|
CVE-2012-0736
|
2024-11-21 10:35 |
2012-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293225
|
- |
|
ibm
|
rational_appscan
|
IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1 does not properly scan file: URLs, which allows man-in-the-middle attackers to obtain sensitive information or possibly have unspecified oth…
|
CWE-20
Improper Input Validation
|
CVE-2012-0735
|
2024-11-21 10:35 |
2012-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293226
|
- |
|
ibm
|
rational_appscan
|
IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1 does not properly import jobs, which allows man-in-the-middle attackers to obtain sensitive information or possibly have unspecified other i…
|
NVD-CWE-noinfo
|
CVE-2012-0734
|
2024-11-21 10:35 |
2012-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293227
|
- |
|
ibm
|
rational_appscan
|
IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1, when Integrated Windows authentication is used, allows remote authenticated users to obtain administrative privileges by hijacking a sessio…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-0733
|
2024-11-21 10:35 |
2012-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293228
|
- |
|
ibm
|
rational_appscan
|
The Enterprise Console client in IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1 does not verify X.509 certificates from SSL servers, which allows man-in-the-middle attackers to spoof serv…
|
CWE-310
Cryptographic Issues
|
CVE-2012-0732
|
2024-11-21 10:35 |
2012-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293229
|
- |
|
ibm
|
rational_appscan
|
IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1 does not prevent service-account impersonation, which allows remote authenticated users to read arbitrary files via unspecified vectors.
|
CWE-200
Information Exposure
|
CVE-2012-0731
|
2024-11-21 10:35 |
2012-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293230
|
- |
|
ibm
|
rational_appscan
|
Multiple cross-site request forgery (CSRF) vulnerabilities in IBM Rational AppScan Enterprise 5.x and 8.x before 8.5.0.1 allow remote attackers to hijack the authentication of administrators for requ…
|
CWE-352
Origin Validation Error
|
CVE-2012-0730
|
2024-11-21 10:35 |
2012-05-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|