|
295471
|
- |
|
stone-ware
|
webnetwork
|
Multiple cross-site scripting (XSS) vulnerabilities in Stoneware webNetwork before 6.0.8.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2012-0285
|
2024-11-21 10:34 |
2012-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295472
|
- |
|
glucose
|
glucose_2
|
Cross-site scripting (XSS) vulnerability in glucose 2 before stage 6.2 allows remote attackers to inject arbitrary web script or HTML via an RSS feed.
|
CWE-79
Cross-site Scripting
|
CVE-2012-0313
|
2024-11-21 10:34 |
2012-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295473
|
- |
|
ibm
|
lotus_symphony
|
Multiple integer overflows in vclmi.dll in the visual class library module in IBM Lotus Symphony before 3.0.1 might allow remote attackers to execute arbitrary code via an embedded (1) JPEG or (2) PN…
|
CWE-189
Numeric Errors
|
CVE-2012-0192
|
2024-11-21 10:34 |
2012-01-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295474
|
- |
|
ibm
|
websphere_application_server
|
IBM WebSphere Application Server (WAS) 6.0 through 6.0.2.43, 6.1 before 6.1.0.43, 7.0 before 7.0.0.23, and 8.0 before 8.0.0.3 computes hash values for form parameters without restricting the ability …
|
CWE-20
Improper Input Validation
|
CVE-2012-0193
|
2024-11-21 10:34 |
2012-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295475
|
- |
|
openssl
|
openssl
|
OpenSSL 0.9.8s and 1.0.0f does not properly support DTLS applications, which allows remote attackers to cause a denial of service (crash) via unspecified vectors related to an out-of-bounds read. NO…
|
CWE-399
Resource Management Errors
|
CVE-2012-0050
|
2024-11-21 10:34 |
2012-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295476
|
- |
|
cisco
|
digital_media_manager
|
Cisco Digital Media Manager 5.2.2 and earlier, and 5.2.3, allows remote authenticated users to execute arbitrary code via vectors involving a URL and an administrative resource, aka Bug ID CSCts63878.
|
CWE-94
Code Injection
|
CVE-2012-0329
|
2024-11-21 10:34 |
2012-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295477
|
- |
|
yahoo
|
messenger
|
Integer overflow in the CYImage::LoadJPG method in YImage.dll in Yahoo! Messenger before 11.5.0.155, when photo sharing is enabled, might allow remote attackers to execute arbitrary code via a crafte…
|
CWE-189
Numeric Errors
|
CVE-2012-0268
|
2024-11-21 10:34 |
2012-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295478
|
- |
|
gnu eric_m_ludlam
|
emacs cedet
|
Untrusted search path vulnerability in EDE in CEDET before 1.0.1, as used in GNU Emacs before 23.4 and other products, allows local users to gain privileges via a crafted Lisp expression in a Project…
|
NVD-CWE-Other
|
CVE-2012-0035
|
2024-11-21 10:34 |
2012-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295479
|
- |
|
apache
|
tomcat
|
Apache Tomcat 5.5.x before 5.5.35, 6.x before 6.0.34, and 7.x before 7.0.23 uses an inefficient approach for handling parameters, which allows remote attackers to cause a denial of service (CPU consu…
|
CWE-189
Numeric Errors
|
CVE-2012-0022
|
2024-11-21 10:34 |
2012-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295480
|
- |
|
oracle mysql
|
mysql
|
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.x and 5.5.x allows remote authenticated users to affect availability via unknown vectors, a different vulnerability than CV…
|
NVD-CWE-noinfo
|
CVE-2012-0120
|
2024-11-21 10:34 |
2012-01-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|