|
292311
|
- |
|
siemens
|
simatic_s7-1200_firmware simatic_s7-1200_cpu_1211c_firmware simatic_s7-1200_cpu_1212c_firmware simatic_s7-1200_cpu_1212fc_firmware simatic_s7-1200_cpu_1214_fc_firmware simatic_s7-1200_…
|
Cross-site scripting (XSS) vulnerability in the web server on Siemens SIMATIC S7-1200 PLCs 2.x through 3.0.1 allows remote attackers to inject arbitrary web script or HTML via a crafted URI.
|
CWE-79
Cross-site Scripting
|
CVE-2012-3040
|
2024-11-21 10:40 |
2012-10-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292312
|
- |
|
openttd
|
openttd
|
OpenTTD 0.6.0 through 1.2.1 does not properly validate requests to clear a water tile, which allows remote attackers to cause a denial of service (NULL pointer dereference and server crash) via a cer…
|
CWE-20
Improper Input Validation
|
CVE-2012-3436
|
2024-11-21 10:40 |
2012-10-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292313
|
- |
|
cerberusftp
|
ftp_server
|
Multiple cross-site request forgery (CSRF) vulnerabilities in the web interface in Cerberus FTP Server before 5.0.5.0 allow remote attackers to hijack the authentication of administrators for request…
|
CWE-352
Origin Validation Error
|
CVE-2012-2999
|
2024-11-21 10:40 |
2012-10-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292314
|
- |
|
hp
|
network_node_manager_i
|
Unspecified vulnerability in HP Network Node Manager i (NNMi) 9.20 allows remote attackers to obtain sensitive information via unknown vectors.
|
NVD-CWE-noinfo
|
CVE-2012-3267
|
2024-11-21 10:40 |
2012-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292315
|
6.5 |
MEDIUM
Network
|
postgresql opensuse apple canonical debian redhat
|
postgresql opensuse mac_os_x_server ubuntu_linux debian_linux enterprise_linux_server enterprise_linux_workstation enterprise_linux_desktop enterprise_linux_eus
|
The xml_parse function in the libxml2 support in the core server component in PostgreSQL 8.3 before 8.3.20, 8.4 before 8.4.13, 9.0 before 9.0.9, and 9.1 before 9.1.5 allows remote authenticated users…
|
CWE-611
XXE
|
CVE-2012-3489
|
2024-11-21 10:40 |
2012-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292316
|
- |
|
postgresql
|
postgresql
|
The libxslt support in contrib/xml2 in PostgreSQL 8.3 before 8.3.20, 8.4 before 8.4.13, 9.0 before 9.0.9, and 9.1 before 9.1.5 does not properly restrict access to files and URLs, which allows remote…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-3488
|
2024-11-21 10:40 |
2012-10-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292317
|
- |
|
linux
|
linux_kernel
|
The rds_recvmsg function in net/rds/recv.c in the Linux kernel before 3.0.44 does not initialize a certain structure member, which allows local users to obtain potentially sensitive information from …
|
CWE-200
Information Exposure
|
CVE-2012-3430
|
2024-11-21 10:40 |
2012-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292318
|
- |
|
linux canonical
|
linux_kernel ubuntu_linux
|
The sfc (aka Solarflare Solarstorm) driver in the Linux kernel before 3.2.30 allows remote attackers to cause a denial of service (DMA descriptor consumption and network-controller outage) via crafte…
|
CWE-189
Numeric Errors
|
CVE-2012-3412
|
2024-11-21 10:40 |
2012-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292319
|
- |
|
linux canonical
|
linux_kernel ubuntu_linux
|
Heap-based buffer overflow in the udf_load_logicalvol function in fs/udf/super.c in the Linux kernel before 3.4.5 allows remote attackers to cause a denial of service (system crash) or possibly have …
|
CWE-787
Out-of-bounds Write
|
CVE-2012-3400
|
2024-11-21 10:40 |
2012-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292320
|
- |
|
linux
|
linux_kernel
|
The epoll_ctl system call in fs/eventpoll.c in the Linux kernel before 3.2.24 does not properly handle ELOOP errors in EPOLL_CTL_ADD operations, which allows local users to cause a denial of service …
|
NVD-CWE-Other
|
CVE-2012-3375
|
2024-11-21 10:40 |
2012-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|