|
292231
|
- |
|
cisco
|
unified_presence jabber_extensible_communications_platform
|
Cisco Unified Presence (CUP) before 8.6(3) and Jabber Extensible Communications Platform (aka Jabber XCP) before 5.3 allow remote attackers to cause a denial of service (process crash) via a crafted …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-3935
|
2024-11-21 10:41 |
2012-09-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292232
|
- |
|
oscc nurul_hidayah_hamazulan
|
mymeeting mymesyuarat
|
Open Source Competency Center (OSCC) MyMeeting 3.0.1 and earlier, and MyMesyuarat 09b-1, does not properly verify uploaded documents, which allows remote authenticated users to execute arbitrary PHP …
|
CWE-20
Improper Input Validation
|
CVE-2012-3572
|
2024-11-21 10:41 |
2012-09-12 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292233
|
- |
|
dell
|
crowbar
|
Cross-site scripting (XSS) vulnerability in crowbar_framework/app/views/support/index.html.haml in the Crowbar barclamp in Crowbar, possibly 1.4 and earlier, allows remote attackers to inject arbitra…
|
CWE-79
Cross-site Scripting
|
CVE-2012-3551
|
2024-11-21 10:41 |
2012-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292234
|
- |
|
openstack
|
essex horizon
|
OpenStack Keystone, as used in OpenStack Folsom before folsom-rc1 and OpenStack Essex (2012.1), allows remote attackers to add an arbitrary user to an arbitrary tenant via a request to update the use…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-3542
|
2024-11-21 10:41 |
2012-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292235
|
- |
|
openstack
|
horizon
|
Open redirect vulnerability in views/auth_forms.py in OpenStack Dashboard (Horizon) Essex (2012.1) allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a …
|
CWE-20
Improper Input Validation
|
CVE-2012-3540
|
2024-11-21 10:41 |
2012-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292236
|
- |
|
dell
|
crowbar
|
The Crowbar Ohai plugin (chef/cookbooks/ohai/files/default/plugins/crowbar.rb) in the Deployer Barclamp in Crowbar, possibly 1.4 and earlier, allows local users to execute arbitrary shell commands vi…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-3537
|
2024-11-21 10:41 |
2012-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292237
|
- |
|
uclouvain
|
openjpeg
|
Heap-based buffer overflow in OpenJPEG 1.5.0 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted JPEG2000 file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-3535
|
2024-11-21 10:41 |
2012-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292238
|
- |
|
typo3
|
typo3
|
Cross-site scripting (XSS) vulnerability in the Install Tool in TYPO3 4.5.x before 4.5.19, 4.6.x before 4.6.12 and 4.7.x before 4.7.4 allows remote attackers to inject arbitrary web script or HTML vi…
|
CWE-79
Cross-site Scripting
|
CVE-2012-3531
|
2024-11-21 10:41 |
2012-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292239
|
- |
|
typo3
|
typo3
|
Incomplete blacklist vulnerability in the t3lib_div::quoteJSvalue API function in TYPO3 4.5.x before 4.5.19, 4.6.x before 4.6.12 and 4.7.x before 4.7.4 allows remote attackers to conduct cross-site s…
|
NVD-CWE-Other
|
CVE-2012-3530
|
2024-11-21 10:41 |
2012-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
292240
|
- |
|
typo3
|
typo3
|
The configuration module in the backend in TYPO3 4.5.x before 4.5.19, 4.6.x before 4.6.12 and 4.7.x before 4.7.4 allows remote authenticated backend users to obtain the encryption key via unspecified…
|
CWE-200
Information Exposure
|
CVE-2012-3529
|
2024-11-21 10:41 |
2012-09-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|