|
294131
|
- |
|
apache
|
mod_fcgid
|
fcgid_spawn_ctl.c in the mod_fcgid module 2.3.6 for the Apache HTTP Server does not recognize the FcgidMaxProcessesPerClass directive for a virtual host, which makes it easier for remote attackers to…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-1181
|
2024-11-21 10:36 |
2012-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294132
|
- |
|
dotclear
|
dotclear
|
Multiple cross-site scripting (XSS) vulnerabilities in Dotclear before 2.4.2 allow remote attackers to inject arbitrary web script or HTML via the (1) login_data parameter to admin/auth.php; (2) nb p…
|
CWE-79
Cross-site Scripting
|
CVE-2012-1039
|
2024-11-21 10:36 |
2012-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294133
|
- |
|
contao
|
contao_cms
|
Multiple cross-site request forgery (CSRF) vulnerabilities in main.php in Contao (formerly TYPOlight) 2.11.0 and earlier allow remote attackers to hijack the authentication of administrators for requ…
|
CWE-352
Origin Validation Error
|
CVE-2012-1297
|
2024-11-21 10:36 |
2012-03-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294134
|
- |
|
gomlab
|
gom_media_player
|
Unspecified vulnerability in Gretech GOM Media Player before 2.1.37.5091 allows remote attackers to execute arbitrary code via a crafted AVI file.
|
NVD-CWE-noinfo
|
CVE-2012-1264
|
2024-11-21 10:36 |
2012-03-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294135
|
- |
|
openssl
|
openssl
|
The mime_param_cmp function in crypto/asn1/asn_mime.c in OpenSSL before 0.9.8u and 1.x before 1.0.0h allows remote attackers to cause a denial of service (NULL pointer dereference and application cra…
|
CWE-399
Resource Management Errors
|
CVE-2012-1165
|
2024-11-21 10:36 |
2012-03-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294136
|
- |
|
pidgin
|
pidgin
|
The msn_oim_report_to_user function in oim.c in the MSN protocol plugin in libpurple in Pidgin before 2.10.2 allows remote servers to cause a denial of service (application crash) via an OIM message …
|
CWE-399
Resource Management Errors
|
CVE-2012-1178
|
2024-11-21 10:36 |
2012-03-15 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294137
|
- |
|
tinycouch
|
tiny_password
|
Unspecified vulnerability in the Tiny Password (com.tinycouch.android.freepassword) application 1.64 for Android has unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2012-1409
|
2024-11-21 10:36 |
2012-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294138
|
- |
|
creative_core
|
app_lock
|
Unspecified vulnerability in the App Lock (com.cc.applock) application 1.7.5 and 1.7.6 for Android has unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2012-1408
|
2024-11-21 10:36 |
2012-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294139
|
- |
|
rubyonrails
|
ruby_on_rails rails
|
Cross-site scripting (XSS) vulnerability in actionpack/lib/action_view/helpers/form_options_helper.rb in the select helper in Ruby on Rails 3.0.x before 3.0.12, 3.1.x before 3.1.4, and 3.2.x before 3…
|
CWE-79
Cross-site Scripting
|
CVE-2012-1099
|
2024-11-21 10:36 |
2012-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294140
|
- |
|
rubyonrails
|
ruby_on_rails rails
|
Cross-site scripting (XSS) vulnerability in Ruby on Rails 3.0.x before 3.0.12, 3.1.x before 3.1.4, and 3.2.x before 3.2.2 allows remote attackers to inject arbitrary web script or HTML via vectors in…
|
CWE-79
Cross-site Scripting
|
CVE-2012-1098
|
2024-11-21 10:36 |
2012-03-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|