|
291771
|
- |
|
mozilla suse opensuse redhat debian canonical
|
firefox seamonkey thunderbird thunderbird_esr linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit enterprise_linux_server en…
|
The HZ-GB-2312 character-set implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 do…
|
CWE-79
Cross-site Scripting
|
CVE-2012-4207
|
2024-11-21 10:42 |
2012-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291772
|
- |
|
mozilla
|
firefox
|
Untrusted search path vulnerability in the installer in Mozilla Firefox before 17.0 and Firefox ESR 10.x before 10.0.11 on Windows allows local users to gain privileges via a Trojan horse DLL in the …
|
NVD-CWE-Other
|
CVE-2012-4206
|
2024-11-21 10:42 |
2012-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291773
|
- |
|
mozilla canonical suse opensuse
|
firefox seamonkey thunderbird ubuntu_linux linux_enterprise_desktop linux_enterprise_software_development_kit opensuse linux_enterprise_server
|
Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 assign the system principal, rather than the sandbox principal, to XMLHttpRequest objects created in sandboxes, which a…
|
CWE-352
Origin Validation Error
|
CVE-2012-4205
|
2024-11-21 10:42 |
2012-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291774
|
- |
|
mozilla suse opensuse canonical
|
firefox seamonkey thunderbird linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit ubuntu_linux
|
The str_unescape function in the JavaScript engine in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a deni…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-4204
|
2024-11-21 10:42 |
2012-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291775
|
- |
|
mozilla
|
firefox
|
The New Tab page in Mozilla Firefox before 17.0 uses a privileged context for execution of JavaScript code by bookmarklets, which allows user-assisted remote attackers to run arbitrary programs by le…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-4203
|
2024-11-21 10:42 |
2012-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291776
|
- |
|
mozilla suse opensuse canonical redhat
|
firefox seamonkey thunderbird thunderbird_esr linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit ubuntu_linux enterprise_li…
|
Heap-based buffer overflow in the image::RasterImage::DrawFrameTo function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.1…
|
CWE-787
Out-of-bounds Write
|
CVE-2012-4202
|
2024-11-21 10:42 |
2012-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291777
|
- |
|
mozilla suse opensuse redhat canonical debian
|
firefox seamonkey thunderbird thunderbird_esr linux_enterprise_server linux_enterprise_desktop opensuse linux_enterprise_software_development_kit enterprise_linux_server en…
|
The evalInSandbox implementation in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 uses an incor…
|
CWE-79
Cross-site Scripting
|
CVE-2012-4201
|
2024-11-21 10:42 |
2012-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291778
|
- |
|
belkin
|
n300_wireless_router n450_wireless_router n150_wireless_router n900_wireless_router
|
Belkin wireless routers Surf N150 Model F7D1301v1, N900 Model F9K1104v1, N450 Model F9K1105V2, and N300 Model F7D2301v1 generate a predictable default WPA2-PSK passphrase based on eight digits of the…
|
CWE-310
Cryptographic Issues
|
CVE-2012-4366
|
2024-11-21 10:42 |
2012-11-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291779
|
- |
|
redhat
|
libvirt
|
The virNetServerProgramDispatchCall function in libvirt before 0.10.2 allows remote attackers to cause a denial of service (NULL pointer dereference and segmentation fault) via an RPC call with (1) a…
|
NVD-CWE-Other
|
CVE-2012-4423
|
2024-11-21 10:42 |
2012-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291780
|
- |
|
libreoffice sun
|
libreoffice openoffice.org
|
LibreOffice 3.5.x before 3.5.7.2 and 3.6.x before 3.6.1, and OpenOffice.org (OOo), allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted (1) odt file to vcllo.…
|
NVD-CWE-Other
|
CVE-2012-4233
|
2024-11-21 10:42 |
2012-11-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|