|
295461
|
- |
|
apache
|
http_server
|
The log_cookie function in mod_log_config.c in the mod_log_config module in the Apache HTTP Server 2.2.17 through 2.2.21, when a threaded MPM is used, does not properly handle a %{}C format string, w…
|
CWE-20
Improper Input Validation
|
CVE-2012-0021
|
2024-11-21 10:34 |
2012-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295462
|
- |
|
linux
|
linux_kernel
|
The mem_write function in the Linux kernel before 3.2.2, when ASLR is disabled, does not properly check permissions when writing to /proc/<pid>/mem, which allows local users to gain privileges by mod…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-0056
|
2024-11-21 10:34 |
2012-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295463
|
- |
|
kvm_group
|
qemu-kvm
|
Heap-based buffer overflow in the process_tx_desc function in the e1000 emulation (hw/e1000.c) in qemu-kvm 0.12, and possibly other versions, allows guest OS users to cause a denial of service (QEMU …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-0029
|
2024-11-21 10:34 |
2012-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295464
|
- |
|
emc
|
networker
|
Buffer overflow in the server in EMC NetWorker 7.5.x and 7.6.x before 7.6.3 SP1 Cumulative Release build 851 allows remote attackers to cause a denial of service (daemon crash) or possibly execute ar…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-0395
|
2024-11-21 10:34 |
2012-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295465
|
- |
|
oscommerce
|
online_merchant oscommerce
|
Cross-site scripting (XSS) vulnerability in osCommerce 2.2MS1J before R9, and osCommerce Online Merchant before 2.3.1, allows remote attackers to inject arbitrary web script or HTML via unspecified v…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0312
|
2024-11-21 10:34 |
2012-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295466
|
- |
|
oscommerce
|
oscommerce
|
Cross-site scripting (XSS) vulnerability in osCommerce 2.2MS1J before R9 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2012-0311
|
2024-11-21 10:34 |
2012-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295467
|
- |
|
mailenable
|
mailenable
|
Cross-site scripting (XSS) vulnerability in ForgottenPassword.aspx in MailEnable Professional, Enterprise, and Premium 4.26 and earlier, 5.x before 5.53, and 6.x before 6.03 allows remote attackers t…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0389
|
2024-11-21 10:34 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295468
|
- |
|
batavi
|
batavi
|
SQL injection vulnerability in ajax.php in Batavi before 1.2.1 allows remote attackers to execute arbitrary SQL commands via the boxToReload parameter.
|
CWE-89
SQL Injection
|
CVE-2012-0069
|
2024-11-21 10:34 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295469
|
- |
|
simplesamlphp
|
simplesamlphp
|
Cross-site scripting (XSS) vulnerability in modules/core/www/no_cookie.php in SimpleSAMLphp 1.8.1 and possibly other versions before 1.8.2 allows remote attackers to inject arbitrary web script or HT…
|
CWE-79
Cross-site Scripting
|
CVE-2012-0040
|
2024-11-21 10:34 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295470
|
- |
|
stone-ware
|
webnetwork
|
Cross-site request forgery (CSRF) vulnerability in Stoneware webNetwork before 6.0.8.0 allows remote attackers to hijack the authentication of unspecified victims for requests that modify user accoun…
|
CWE-352
Origin Validation Error
|
CVE-2012-0286
|
2024-11-21 10:34 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|