|
290311
|
- |
|
e107
|
e107
|
Multiple cross-site request forgery (CSRF) vulnerabilities in e107_admin/download.php in e107 1.0.2 allow remote attackers to hijack the authentication of administrators for requests that conduct SQL…
|
CWE-352
Origin Validation Error
|
CVE-2012-6434
|
2024-11-21 10:46 |
2013-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290312
|
- |
|
e107
|
e107
|
Cross-site request forgery (CSRF) vulnerability in e107_admin/newspost.php in e107 1.0.1 allows remote attackers to hijack the authentication of administrators for requests that conduct XSS attacks v…
|
CWE-352
Origin Validation Error
|
CVE-2012-6433
|
2024-11-21 10:46 |
2013-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290313
|
- |
|
moinmo
|
moinmoin
|
Multiple directory traversal vulnerabilities in the (1) twikidraw (action/twikidraw.py) and (2) anywikidraw (action/anywikidraw.py) actions in MoinMoin before 1.9.6 allow remote authenticated users w…
|
CWE-22
Path Traversal
|
CVE-2012-6495
|
2024-11-21 10:46 |
2013-01-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290314
|
- |
|
opera
|
opera_browser
|
Opera before 12.12 on UNIX uses weak permissions for the profile directory, which allows local users to obtain sensitive information by reading a (1) cache file, (2) password file, or (3) configurati…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-6472
|
2024-11-21 10:46 |
2013-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290315
|
- |
|
opera
|
opera_browser
|
Opera before 12.12 allows remote attackers to spoof the address field via a high rate of HTTP requests.
|
NVD-CWE-Other
|
CVE-2012-6471
|
2024-11-21 10:46 |
2013-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290316
|
- |
|
opera
|
opera_browser
|
Opera before 12.12 does not properly allocate memory for GIF images, which allows remote attackers to execute arbitrary code or cause a denial of service (memory overwrite) via a malformed image.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-6470
|
2024-11-21 10:46 |
2013-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290317
|
- |
|
opera
|
opera_browser
|
Opera before 12.11 allows remote attackers to determine the existence of arbitrary local files via vectors involving web script in an error page.
|
CWE-200
Information Exposure
|
CVE-2012-6469
|
2024-11-21 10:46 |
2013-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290318
|
- |
|
opera
|
opera_browser
|
Heap-based buffer overflow in Opera before 12.11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a long HTTP response.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-6468
|
2024-11-21 10:46 |
2013-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290319
|
- |
|
opera
|
opera_browser
|
Opera before 12.10 follows Internet shortcuts that are referenced by a (1) IMG element or (2) other inline element, which makes it easier for remote attackers to conduct phishing attacks via a crafte…
|
NVD-CWE-noinfo
|
CVE-2012-6467
|
2024-11-21 10:46 |
2013-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
290320
|
- |
|
opera
|
opera_browser
|
Opera before 12.10 does not properly handle incorrect size data in a WebP image, which allows remote attackers to obtain potentially sensitive information from process memory by using a crafted image…
|
CWE-200
Information Exposure
|
CVE-2012-6466
|
2024-11-21 10:46 |
2013-01-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|