|
295341
|
7.5 |
HIGH
Network
|
cisco
|
ios ios_xe
|
The IKEv1 implementation in Cisco IOS 12.2 through 12.4 and 15.0 through 15.2 and IOS XE 2.1.x through 2.6.x and 3.1.xS through 3.4.xS before 3.4.2S, 3.5.xS before 3.5.1S, and 3.2.xSG before 3.2.2SG …
|
CWE-310
Cryptographic Issues
|
CVE-2012-0381
|
2024-11-21 10:34 |
2012-03-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295342
|
- |
|
hp
|
hp-ux
|
Unspecified vulnerability in the WBEM implementation in HP HP-UX 11.11 and 11.23 allows remote attackers to obtain access to diagnostic information via unknown vectors, a related issue to CVE-2012-01…
|
NVD-CWE-noinfo
|
CVE-2012-0126
|
2024-11-21 10:34 |
2012-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295343
|
- |
|
hp
|
hp-ux
|
Unspecified vulnerability in the WBEM implementation in HP HP-UX 11.31 allows local users to obtain access to diagnostic information via unknown vectors, a related issue to CVE-2012-0126.
|
NVD-CWE-noinfo
|
CVE-2012-0125
|
2024-11-21 10:34 |
2012-03-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295344
|
- |
|
apache
|
traffic_server
|
Apache Traffic Server 2.0.x and 3.0.x before 3.0.4 and 3.1.x before 3.1.3 does not properly allocate heap memory, which allows remote attackers to cause a denial of service (daemon crash) via a long …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-0256
|
2024-11-21 10:34 |
2012-03-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295345
|
- |
|
apache
|
wicket
|
Cross-site scripting (XSS) vulnerability in Apache Wicket 1.4.x before 1.4.20 allows remote attackers to inject arbitrary web script or HTML via the wicket:pageMapName parameter.
|
CWE-79
Cross-site Scripting
|
CVE-2012-0047
|
2024-11-21 10:34 |
2012-03-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295346
|
- |
|
rsa
|
envision
|
Directory traversal vulnerability in EMC RSA enVision 4.x before 4.1 Patch 4 allows remote authenticated users to have an unspecified impact via unknown vectors.
|
CWE-22
Path Traversal
|
CVE-2012-0403
|
2024-11-21 10:34 |
2012-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295347
|
- |
|
rsa
|
envision
|
EMC RSA enVision 4.x before 4.1 Patch 4 uses unspecified hardcoded credentials, which makes it easier for remote attackers to obtain access via unknown vectors.
|
CWE-255
Credentials Management
|
CVE-2012-0402
|
2024-11-21 10:34 |
2012-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295348
|
- |
|
rsa
|
envision
|
Multiple SQL injection vulnerabilities in EMC RSA enVision 4.x before 4.1 Patch 4 allow remote authenticated users to execute arbitrary SQL commands via unspecified vectors.
|
CWE-89
SQL Injection
|
CVE-2012-0401
|
2024-11-21 10:34 |
2012-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295349
|
- |
|
rsa
|
envision
|
EMC RSA enVision 4.x before 4.1 Patch 4 does not properly restrict the number of failed authentication attempts, which makes it easier for remote attackers to obtain access via a brute-force attack.
|
CWE-287
Improper Authentication
|
CVE-2012-0400
|
2024-11-21 10:34 |
2012-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295350
|
- |
|
rsa
|
envision
|
Multiple cross-site scripting (XSS) vulnerabilities in EMC RSA enVision 4.x before 4.1 Patch 4 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2012-0399
|
2024-11-21 10:34 |
2012-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|