|
293921
|
- |
|
microsoft
|
windows_server_2008 windows_xp windows_server_2003 windows_vista
|
The Client/Server Run-time Subsystem (aka CSRSS) in the Win32 subsystem in Microsoft Windows XP SP2 and SP3, Server 2003 SP2, Vista SP2, and Server 2008 SP2, when a Chinese, Japanese, or Korean syste…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-0005
|
2024-11-21 10:34 |
2012-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293922
|
- |
|
microsoft
|
windows_server_2008 windows_xp windows_7 windows_server_2003 windows_vista
|
Unspecified vulnerability in DirectShow in DirectX in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1…
|
NVD-CWE-noinfo
|
CVE-2012-0004
|
2024-11-21 10:34 |
2012-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293923
|
- |
|
microsoft
|
windows_server_2008 windows_7 windows_xp windows_server_2003 windows_vista
|
Unspecified vulnerability in winmm.dll in Windows Multimedia Library in Windows Media Player (WMP) in Microsoft Windows XP SP2 and SP3, Server 2003 SP2, Vista SP2, and Server 2008 SP2 allows remote a…
|
NVD-CWE-noinfo
|
CVE-2012-0003
|
2024-11-21 10:34 |
2012-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293924
|
- |
|
microsoft
|
windows_server_2008 windows_7 windows_xp windows_server_2003 windows_vista
|
The kernel in Microsoft Windows XP SP2, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 does not properly load structured exception han…
|
NVD-CWE-Other
|
CVE-2012-0001
|
2024-11-21 10:34 |
2012-01-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293925
|
- |
|
apache
|
struts
|
The DebuggingInterceptor component in Apache Struts before 2.3.1.1, when developer mode is used, allows remote attackers to execute arbitrary commands via unspecified vectors. NOTE: the vendor chara…
|
CWE-94
Code Injection
|
CVE-2012-0394
|
2024-11-21 10:34 |
2012-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293926
|
- |
|
apache
|
struts
|
The ParameterInterceptor component in Apache Struts before 2.3.1.1 does not prevent access to public constructors, which allows remote attackers to create or overwrite arbitrary files via a crafted p…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-0393
|
2024-11-21 10:34 |
2012-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293927
|
- |
|
apache
|
struts
|
The CookieInterceptor component in Apache Struts before 2.3.1.1 does not use the parameter-name whitelist, which allows remote attackers to execute arbitrary commands via a crafted HTTP Cookie header…
|
NVD-CWE-noinfo
|
CVE-2012-0392
|
2024-11-21 10:34 |
2012-01-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293928
|
- |
|
maradns
|
maradns
|
MaraDNS before 1.3.07.12 and 1.4.x before 1.4.08 computes hash values for DNS data without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a den…
|
CWE-400
Uncontrolled Resource Consumption
|
CVE-2012-0024
|
2024-11-21 10:34 |
2012-01-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293929
|
- |
|
wordpress
|
wordpress
|
Cross-site scripting (XSS) vulnerability in wp-comments-post.php in WordPress 3.3.x before 3.3.1, when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via th…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0287
|
2024-11-21 10:34 |
2012-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293930
|
- |
|
gnu
|
gnutls
|
The DTLS implementation in GnuTLS 3.0.10 and earlier executes certain error-handling code only if there is a specific relationship between a padding length and the ciphertext size, which makes it eas…
|
CWE-310
Cryptographic Issues
|
CVE-2012-0390
|
2024-11-21 10:34 |
2012-01-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|