|
293371
|
5.9 |
MEDIUM
Network
|
canonical
|
ubuntu_cobbler
|
A Security Bypass vulnerability exists in Ubuntu Cobbler before 2,2,2 in the cobbler-ubuntu-import script due to an error when verifying the GPG signature.
|
CWE-347
Improper Verification of Cryptographic Signature
|
CVE-2012-2092
|
2024-11-21 10:38 |
2019-12-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293372
|
8.1 |
HIGH
Network
|
dhclient_project debian
|
dhclient debian_linux
|
An issue was discovered in dhclient 4.3.1-6 due to an embedded path variable.
|
CWE-20
Improper Input Validation
|
CVE-2012-2248
|
2024-11-21 10:38 |
2019-11-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293373
|
8.8 |
HIGH
Network
|
drupal
|
activity
|
A cross-site request forgery (CSRF) vulnerability in the Activity module 6.x-1.x for Drupal.
|
CWE-352
Origin Validation Error
|
CVE-2012-2079
|
2024-11-21 10:38 |
2019-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293374
|
4.8 |
MEDIUM
Network
|
drupal
|
activity
|
Cross-site scripting (XSS) vulnerability in the Activity module 6.x-1.x for Drupal.
|
CWE-79
Cross-site Scripting
|
CVE-2012-2078
|
2024-11-21 10:38 |
2019-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293375
|
7.5 |
HIGH
Network
|
pam_shield_project debian
|
pam_shield debian_linux
|
pam_shield before 0.9.4: Default configuration does not perform protective action
|
CWE-20
Improper Input Validation
|
CVE-2012-2350
|
2024-11-21 10:38 |
2019-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293376
|
7.5 |
HIGH
Network
|
tryton
|
trytond
|
trytond 2.4: ModelView.button fails to validate authorization
|
CWE-863
Incorrect Authorization
|
CVE-2012-2238
|
2024-11-21 10:38 |
2019-11-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293377
|
9.8 |
CRITICAL
Network
|
ibm
|
xiv_storage_system_2810-a14_firmware xiv_storage_system_2812-a14_firmware xiv_storage_system_2810-114_firmware xiv_storage_system_2812-114_firmware
|
IBM XIV Storage System 2810-A14 and 2812-A14 devices before level 10.2.4.e-2 and 2810-114 and 2812-114 devices before level 11.1.1 have hardcoded passwords for unspecified accounts, which allows remo…
|
CWE-798
Use of Hard-coded Credentials
|
CVE-2012-2166
|
2024-11-21 10:38 |
2018-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293378
|
- |
|
sgi
|
xfsprogs
|
xfs_metadump in xfsprogs before 3.2.4 does not properly obfuscate file data, which allows remote attackers to obtain sensitive information by reading a generated image.
|
CWE-200
Information Exposure
|
CVE-2012-2150
|
2024-11-21 10:38 |
2015-08-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293379
|
- |
|
simple_php_agenda_project
|
simple_php_agenda
|
Multiple cross-site request forgery (CSRF) vulnerabilities in Simple PHP Agenda 2.2.8 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) add an ad…
|
CWE-352
Origin Validation Error
|
CVE-2012-1978
|
2024-11-21 10:38 |
2015-05-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293380
|
- |
|
ubercart
|
ubercart
|
The Ubercart module 6.x-2.x before 6.x-2.8 for Drupal allows remote authenticated users with the "administer product classes" permission to execute arbitrary PHP code via unspecified vectors.
|
CWE-94
Code Injection
|
CVE-2012-2301
|
2024-11-21 10:38 |
2014-11-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|