|
294471
|
- |
|
phplist
|
phplist
|
SQL injection vulnerability in public_html/lists/admin in phpList before 2.10.18 allows remote attackers to execute arbitrary SQL commands via the sortby parameter in a find action.
|
CWE-89
SQL Injection
|
CVE-2012-2740
|
2024-11-21 10:39 |
2012-09-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294472
|
- |
|
john_franklin
|
advertisement
|
The Advertisement module 6.x-2.x before 6.x-2.3 for Drupal does not properly restrict access to debug information, which allows remote attackers to obtain sensitive site configuration information tha…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-2704
|
2024-11-21 10:39 |
2012-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294473
|
- |
|
opensuse google
|
opensuse chrome
|
Cross-site scripting (XSS) vulnerability in an SSL interstitial page in Google Chrome before 21.0.1180.89 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2012-2872
|
2024-11-21 10:39 |
2012-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294474
|
- |
|
apple google xmlsoft
|
iphone_os chrome libxml2
|
libxml2 2.9.0-rc1 and earlier, as used in Google Chrome before 21.0.1180.89, does not properly support a cast of an unspecified variable during handling of XSL transforms, which allows remote attacke…
|
NVD-CWE-Other
|
CVE-2012-2871
|
2024-11-21 10:39 |
2012-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294475
|
- |
|
apple xmlsoft google
|
iphone_os libxslt chrome
|
libxslt 1.1.26 and earlier, as used in Google Chrome before 21.0.1180.89, does not properly manage memory, which might allow remote attackers to cause a denial of service (application crash) via a cr…
|
CWE-399
Resource Management Errors
|
CVE-2012-2870
|
2024-11-21 10:39 |
2012-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294476
|
- |
|
opensuse google
|
opensuse chrome
|
Google Chrome before 21.0.1180.89 does not properly load URLs, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger a "stale b…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-2869
|
2024-11-21 10:39 |
2012-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294477
|
- |
|
opensuse google
|
opensuse chrome
|
Race condition in Google Chrome before 21.0.1180.89 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving improper interaction between w…
|
CWE-362
Race Condition
|
CVE-2012-2868
|
2024-11-21 10:39 |
2012-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294478
|
- |
|
opensuse google
|
opensuse chrome
|
The SPDY implementation in Google Chrome before 21.0.1180.89 allows remote attackers to cause a denial of service (application crash) via unspecified vectors.
|
NVD-CWE-noinfo
|
CVE-2012-2867
|
2024-11-21 10:39 |
2012-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294479
|
- |
|
opensuse google
|
opensuse chrome
|
Google Chrome before 21.0.1180.89 does not properly perform a cast of an unspecified variable during handling of run-in elements, which allows remote attackers to cause a denial of service or possibl…
|
NVD-CWE-noinfo
|
CVE-2012-2866
|
2024-11-21 10:39 |
2012-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
294480
|
- |
|
opensuse google
|
opensuse chrome
|
Google Chrome before 21.0.1180.89 does not properly perform line breaking, which allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted document.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-2865
|
2024-11-21 10:39 |
2012-09-1 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|