|
293171
|
7.5 |
HIGH
Network
|
magentocommerce
|
magento
|
Zend_XmlRpc Class in Magento before 1.7.0.2 contains an information disclosure vulnerability.
|
CWE-200
Information Exposure
|
CVE-2012-6091
|
2024-11-21 10:45 |
2020-02-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293172
|
6.5 |
MEDIUM
Network
|
blackberry
|
playbook_firmware
|
BlackBerry PlayBook before 2.1 has an Information Disclosure Vulnerability via a Web browser component error
|
CWE-200
Information Exposure
|
CVE-2012-5828
|
2024-11-21 10:45 |
2020-02-11 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293173
|
7.5 |
HIGH
Network
|
arctic_torrent_project
|
arctic_torrent
|
A vulnerability exists in Arctic Torrent 1.4 via unspecified vectors in .torrent file handling, which could let a malicious user cause a Denial of Service.
|
NVD-CWE-noinfo
|
CVE-2012-6309
|
2024-11-21 10:45 |
2020-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293174
|
8.8 |
HIGH
Network
|
impulseadventure
|
jpegsnoop
|
A vulnerability exists in JPEGsnoop 1.5.2 due to an unspecified issue in JPEG file handling, which could let a malicious user execute arbitrary code
|
NVD-CWE-noinfo
|
CVE-2012-6307
|
2024-11-21 10:45 |
2020-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293175
|
9.8 |
CRITICAL
Network
|
hcview_project
|
hcview
|
A vulnerability exists in HCView (aka Hardcoreview) 1.4 due to a write access violation with a GIF file.
|
NVD-CWE-noinfo
|
CVE-2012-6306
|
2024-11-21 10:45 |
2020-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293176
|
8.8 |
HIGH
Network
|
dd-wrt
|
dd-wrt
|
Command Injection vulnerability exists via a CSRF in DD-WRT 24-sp2 from specially crafted configuration values containing shell meta-characters, which could let a remote malicious user cause a Denial…
|
CWE-352
Origin Validation Error
|
CVE-2012-6297
|
2024-11-21 10:45 |
2020-02-7 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293177
|
9.8 |
CRITICAL
Network
|
zpanelcp
|
zpanel
|
ZPanel 10.0.1 has insufficient entropy for its password reset process.
|
CWE-798 CWE-640
Use of Hard-coded Credentials Weak Password Recovery Mechanism for Forgotten Password
|
CVE-2012-5686
|
2024-11-21 10:45 |
2020-02-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293178
|
6.1 |
MEDIUM
Network
|
roundup-tracker
|
roundup
|
Multiple cross-site scripting (XSS) vulnerabilities in Roundup before 1.4.20 allow remote attackers to inject arbitrary web script or HTML via the (1) @ok_message or (2) @error_message parameter to i…
|
CWE-79
Cross-site Scripting
|
CVE-2012-6133
|
2024-11-21 10:45 |
2020-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293179
|
5.4 |
MEDIUM
Network
|
dokeos
|
dokeos
|
Dokeos 2.1.1 has multiple XSS issues involving "extra_" parameters in main/auth/profile.php.
|
CWE-79
Cross-site Scripting
|
CVE-2012-5776
|
2024-11-21 10:45 |
2020-01-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
293180
|
5.5 |
MEDIUM
Local
|
git-extras_project
|
git-extras
|
The git-changelog utility in git-extras 1.7.0 allows local users to overwrite arbitrary files via a symlink attack on (1) /tmp/changelog or (2) /tmp/.git-effort.
|
CWE-59
Link Following
|
CVE-2012-6114
|
2024-11-21 10:45 |
2020-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|