|
293421
|
- |
|
icloudcenter
|
ictimeattendance
|
SQL injection vulnerability in checklogin.aspx in ICloudCenter ICTimeAttendance 1.0 allows remote attackers to execute arbitrary SQL commands via the passw parameter. NOTE: Some of these details are…
|
CWE-89
SQL Injection
|
CVE-2012-0913
|
2024-11-21 10:35 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293422
|
- |
|
horde
|
groupware_webmail_edition
|
Cross-site scripting (XSS) vulnerability in Horde_Form in Horde Groupware Webmail Edition before 4.0.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related …
|
CWE-79
Cross-site Scripting
|
CVE-2012-0909
|
2024-11-21 10:35 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293423
|
- |
|
simplesamlphp
|
simplesamlphp
|
Cross-site scripting (XSS) vulnerability in logout.php in SimpleSAMLphp 1.8.1 and possibly other versions before 1.8.2 allows remote attackers to inject arbitrary web script or HTML via the link_href…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0908
|
2024-11-21 10:35 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293424
|
- |
|
horde
|
imp dynamic_imp groupware_webmail_edition
|
Multiple cross-site scripting (XSS) vulnerabilities in Horde IMP before 5.0.18 and Horde Groupware Webmail Edition before 4.0.6 allow remote attackers to inject arbitrary web script or HTML via the (…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0791
|
2024-11-21 10:35 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293425
|
- |
|
oetiker
|
smokeping
|
Cross-site scripting (XSS) vulnerability in smokeping_cgi in Smokeping 2.4.2, 2.6.6, and other versions before 2.6.7 allows remote attackers to inject arbitrary web script or HTML via the displaymode…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0790
|
2024-11-21 10:35 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293426
|
- |
|
stone-ware
|
webnetwork
|
SQL injection vulnerability in Stoneware webNetwork before 6.0.8.0 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2012-0912
|
2024-11-21 10:35 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293427
|
- |
|
neoaxis
|
neoaxis_web_player
|
Directory traversal vulnerability in the web player in NeoAxis NeoAxis web player 1.4 and earlier allows user-assisted remote attackers to write arbitrary files via a .. (dot dot) in a filename in th…
|
CWE-22
Path Traversal
|
CVE-2012-0907
|
2024-11-21 10:35 |
2012-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293428
|
- |
|
mystarmedia
|
moviebase_addon
|
SQL injection vulnerability in the Moviebase addon for deV!L'z Clanportal (DZCP) 1.5.5 allows remote attackers to execute arbitrary SQL commands via the id parameter in a showkat action to index.php.
|
CWE-89
SQL Injection
|
CVE-2012-0906
|
2024-11-21 10:35 |
2012-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293429
|
- |
|
dev\!l\'s
|
dev\!l\'z_clanportal_gamebase_addon
|
SQL injection vulnerability in deV!L'z Clanportal (DZCP) Gamebase addon allows remote attackers to execute arbitrary SQL commands via the gameid parameter in a detail action to index.php.
|
CWE-89
SQL Injection
|
CVE-2012-0905
|
2024-11-21 10:35 |
2012-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293430
|
- |
|
videolan
|
vlc_media_player
|
VLC media player 1.1.11 allows remote attackers to cause a denial of service (crash) via a long string in an amr file.
|
CWE-399
Resource Management Errors
|
CVE-2012-0904
|
2024-11-21 10:35 |
2012-01-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|