|
291541
|
- |
|
fedoraproject guac-dev
|
fedora guacamole
|
Stack-based buffer overflow in the guac_client_plugin_open function in libguac in Guacamole before 0.6.3 allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a l…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-4415
|
2024-11-21 10:42 |
2012-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291542
|
- |
|
david_king
|
vino
|
Vino 2.28, 2.32, 3.4.2, and earlier allows remote attackers to read clipboard activity by listening on TCP port 5900.
|
CWE-200
Information Exposure
|
CVE-2012-4429
|
2024-11-21 10:42 |
2012-10-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291543
|
- |
|
wordpress
|
wordpress
|
Cross-site request forgery (CSRF) vulnerability in wp-admin/index.php in WordPress 3.4.2 allows remote attackers to hijack the authentication of administrators for requests that modify an RSS URL via…
|
CWE-352
Origin Validation Error
|
CVE-2012-4448
|
2024-11-21 10:42 |
2012-09-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291544
|
- |
|
jamf
|
casper_suite
|
Multiple cross-site request forgery (CSRF) vulnerabilities in editAccount.html in the JAMF Software Server (JSS) interface in JAMF Casper Suite before 8.61 allow remote attackers to hijack the authen…
|
CWE-352
Origin Validation Error
|
CVE-2012-4051
|
2024-11-21 10:42 |
2012-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291545
|
- |
|
jb\+
|
jigbrowser\+
|
The jigbrowser+ application before 1.5.0 for Android does not properly implement the WebView class, which allows remote attackers to obtain sensitive information via a crafted application.
|
CWE-94
Code Injection
|
CVE-2012-4017
|
2024-11-21 10:42 |
2012-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291546
|
- |
|
justsystems
|
atok
|
The ATOK application before 1.0.4 for Android allows remote attackers to read the learning information file, and obtain sensitive input-string information, via a crafted application.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-4016
|
2024-11-21 10:42 |
2012-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291547
|
- |
|
mylittletools
|
mylittleadmin
|
Cross-site scripting (XSS) vulnerability in the management screen in myLittleTools myLittleAdmin for SQL Server 2000 allows remote attackers to inject arbitrary web script or HTML via vectors that tr…
|
CWE-79
Cross-site Scripting
|
CVE-2012-4015
|
2024-11-21 10:42 |
2012-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291548
|
- |
|
mcafee
|
email_and_web_security
|
Unspecified vulnerability in McAfee Email Anti-virus (formerly WebShield SMTP) allows remote attackers to cause a denial of service via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2012-4014
|
2024-11-21 10:42 |
2012-09-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291549
|
- |
|
moodle
|
moodle
|
course/reset.php in Moodle 2.1.x before 2.1.8, 2.2.x before 2.2.5, and 2.3.x before 2.3.2 checks an update capability instead of a reset capability, which allows remote authenticated users to bypass …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-4408
|
2024-11-21 10:42 |
2012-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
291550
|
- |
|
moodle
|
moodle
|
lib/filelib.php in Moodle 2.1.x before 2.1.8, 2.2.x before 2.2.5, and 2.3.x before 2.3.2 does not properly check the publication state of blog files, which allows remote attackers to obtain sensitive…
|
CWE-200
Information Exposure
|
CVE-2012-4407
|
2024-11-21 10:42 |
2012-09-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|