|
295461
|
6.1 |
MEDIUM
Network
|
longtailvideo
|
jw_player
|
Multiple cross-site scripting (XSS) vulnerabilities in LongTail Video JW Player through 5.10.2295 allow remote attackers to inject arbitrary web script or HTML via the (1) link, (2) logo.link, or (3)…
|
CWE-79
Cross-site Scripting
|
CVE-2012-3351
|
2024-11-21 10:40 |
2020-02-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295462
|
8.1 |
HIGH
Network
|
gatewaygeomatics
|
mapserver
|
Gateway Geomatics MapServer for Windows before 3.0.6 contains a Local File Include Vulnerability which allows remote attackers to execute local PHP code and obtain sensitive information.
|
CWE-434
Unrestricted Upload of File with Dangerous Type
|
CVE-2012-2950
|
2024-11-21 10:40 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295463
|
8.8 |
HIGH
Network
|
wisc
|
htcondor
|
The (1) my_popenv_impl and (2) my_spawnv functions in src/condor_utils/my_popen.cpp and the (3) systemCommand function in condor_vm-gahp/vmgahp_common.cpp in Condor 7.6.x before 7.6.10 and 7.8.x befo…
|
NVD-CWE-noinfo
|
CVE-2012-3490
|
2024-11-21 10:40 |
2020-01-10 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295464
|
8.8 |
HIGH
Network
|
fedoraproject
|
sssd
|
A flaw was found in SSSD version 1.9.0. The SSSD's access-provider logic causes the result of the HBAC rule processing to be ignored in the event that the access-provider is also handling the setup o…
|
CWE-287
Improper Authentication
|
CVE-2012-3462
|
2024-11-21 10:40 |
2019-12-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295465
|
7.8 |
HIGH
Local
|
ecryptfs debian
|
ecryptfs-utils debian_linux
|
ecryptfs-utils: suid helper does not restrict mounting filesystems with nosuid,nodev which creates a possible privilege escalation
|
CWE-20
Improper Input Validation
|
CVE-2012-3409
|
2024-11-21 10:40 |
2019-12-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295466
|
7.8 |
HIGH
Local
|
plow_project
|
plow
|
plow has local buffer overflow vulnerability
|
CWE-120
Classic Buffer Overflow
|
CVE-2012-3407
|
2024-11-21 10:40 |
2019-11-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295467
|
9.8 |
CRITICAL
Network
|
redhat
|
enterprise_mrg
|
cumin: At installation postgresql database user created without password
|
CWE-20
Improper Input Validation
|
CVE-2012-3460
|
2024-11-21 10:40 |
2019-11-22 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295468
|
7.5 |
HIGH
Network
|
freebsd
|
name_server_daemon
|
FreeBSD NSD before 3.2.13 allows remote attackers to crash a NSD child server process (SIGSEGV) and cause a denial of service in the NSD server.
|
CWE-669
Incorrect Resource Transfer Between Spheres
|
CVE-2012-2979
|
2024-11-21 10:40 |
2019-11-2 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295469
|
7.5 |
HIGH
Network
|
apache
|
hadoop
|
Hadoop 1.0.3 contains a symlink vulnerability.
|
CWE-59
Link Following
|
CVE-2012-2945
|
2024-11-21 10:40 |
2019-10-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
295470
|
5.3 |
MEDIUM
Network
|
ibm
|
sametime
|
IBM Sametime allows remote attackers to obtain sensitive information from the Sametime Log database via a direct request to STLOG.NSF. IBM X-Force ID: 78048.
|
CWE-200
Information Exposure
|
CVE-2012-3331
|
2024-11-21 10:40 |
2018-02-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|