CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2012-5520

    Last Modified: 11 Apr 2025

    The send_to_sourcefire function in manage_sql.c in OpenVAS Manager 3.x before 3.0.4 allows remote attackers to execute arbitrary commands via the (1) IP address or (2) port number field in an OMP request.

    Published: 26 Nov 2012
    9.1
    Critical

    CVE-2012-2239

    Last Modified: 11 Apr 2025

    Mahara 1.4.x before 1.4.4 and 1.5.x before 1.5.3 allows remote attackers to read arbitrary files or create TCP connections via an XML external entity (XXE) injection attack, as demonstrated by reading config.php.

    Published: 24 Nov 2012
    4.3
    Medium

    CVE-2012-2243

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote attackers to inject arbitrary web script or HTML by uploading an XML file with the xhtml extension, which is rendered inline as script. NOTE: this can be leveraged with CVE-2012-2244 to execute arbitrary code without authentication, as demonstrated by modifying the clamav path.

    Published: 24 Nov 2012
    6
    Medium

    CVE-2012-2244

    Last Modified: 11 Apr 2025

    Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote authenticated administrators to execute arbitrary programs by modifying the path to clamav. NOTE: this can be exploited without authentication by leveraging CVE-2012-2243.

    Published: 24 Nov 2012
    4.3
    Medium

    CVE-2012-2247

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote attackers to inject arbitrary web script or HTML via vectors related to artefact/file/ and a crafted SVG file.

    Published: 24 Nov 2012
    4.3
    Medium

    CVE-2012-6037

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4, and other versions including 1.2, allow remote attackers to inject arbitrary web script or HTML via a CSV header with "unknown fields," which are not properly handled in error messages in the (1) bulk user, (2) group, and (3) group member upload capabilities. NOTE: this issue was originally part of CVE-2012-2243, but that ID was SPLIT due to different issues by different researchers.

    Published: 24 Nov 2012
    2.1
    Low

    CVE-2012-0959

    Last Modified: 11 Apr 2025

    Remote Login Service (RLS) 1.0.0 does not properly clear account information when switching users, which might allow physically proximate users to obtain login credentials.

    Published: 24 Nov 2012
    7.5
    High

    CVE-2012-0960

    Last Modified: 11 Apr 2025

    Unity integration extension (unity-firefox-extension) before 2.4.1 for Firefox does not properly handle callbacks, which allows remote attackers to cause a denial of service (Firefox crash) and possibly execute arbitrary code via a crafted request.

    Published: 24 Nov 2012
    6.8
    Medium

    CVE-2012-2246

    Last Modified: 11 Apr 2025

    Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote attackers to conduct clickjacking attacks to delete arbitrary users and bypass CSRF protection via account/delete.php.

    Published: 24 Nov 2012
    5
    Medium

    CVE-2012-5533

    Last Modified: 11 Apr 2025

    The http_request_split_value function in request.c in lighttpd before 1.4.32 allows remote attackers to cause a denial of service (infinite loop) via a request with a header containing an empty token, as demonstrated using the "Connection: TE,,Keep-Alive" header.

    Published: 24 Nov 2012
    4.3
    Medium

    CVE-2012-2253

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in group/members.php in Mahara 1.5.x before 1.5.7 and 1.6.x before 1.6.2 allows remote attackers to inject arbitrary web script or HTML via the query parameter.

    Published: 24 Nov 2012
    7.5
    High

    CVE-2012-5580

    Last Modified: 12 Apr 2025

    Format string vulnerability in the print_proxies function in bin/proxy.c in libproxy 0.3.1 might allow context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in a proxy name, as demonstrated using the http_proxy environment variable or a PAC file.

    Published: 24 Nov 2012
    6
    Medium

    CVE-2012-4601

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in Nicola Asuni TCExam before 11.3.009 allow remote authenticated users with level 5 or greater permissions to execute arbitrary SQL commands via the (1) user_groups[] parameter to admin/code/tce_edit_test.php or (2) subject_id parameter to admin/code/tce_show_all_questions.php.

    Published: 23 Nov 2012
    4.7
    Medium

    CVE-2012-6031

    Last Modified: 11 Apr 2025

    The do_tmem_get function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 allow local guest OS users to cause a denial of service (CPU hang and host crash) via unspecified vectors related to a spinlock being held in the "bad_copy error path." NOTE: this issue was originally published as part of CVE-2012-3497, which was too general; CVE-2012-3497 has been SPLIT into this ID and others.

    Published: 23 Nov 2012
    4.9
    Medium

    CVE-2012-6032

    Last Modified: 11 Apr 2025

    Multiple integer overflows in the (1) tmh_copy_from_client and (2) tmh_copy_to_client functions in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 allow local guest OS users to cause a denial of service (memory corruption and host crash) via unspecified vectors. NOTE: this issue was originally published as part of CVE-2012-3497, which was too general; CVE-2012-3497 has been SPLIT into this ID and others.

    Published: 23 Nov 2012
    4.4
    Medium

    CVE-2012-6033

    Last Modified: 11 Apr 2025

    The do_tmem_control function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 does not properly check privileges, which allows local guest OS users to access control stack operations via unspecified vectors. NOTE: this issue was originally published as part of CVE-2012-3497, which was too general; CVE-2012-3497 has been SPLIT into this ID and others.

    Published: 23 Nov 2012
    4.4
    Medium

    CVE-2012-6034

    Last Modified: 11 Apr 2025

    The (1) tmemc_save_get_next_page and (2) tmemc_save_get_next_inv functions and the (3) TMEMC_SAVE_GET_POOL_UUID sub-operation in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 "do not check incoming guest output buffer pointers," which allows local guest OS users to cause a denial of service (memory corruption and host crash) or execute arbitrary code via unspecified vectors. NOTE: this issue was originally published as part of CVE-2012-3497, which was too general; CVE-2012-3497 has been SPLIT into this ID and others.

    Published: 23 Nov 2012
    7.2
    High

    CVE-2012-6030

    Last Modified: 11 Apr 2025

    The do_tmem_op function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 allow local guest OS users to cause a denial of service (host crash) and possibly have other unspecified impacts via unspecified vectors related to "broken locking checks" in an "error path." NOTE: this issue was originally published as part of CVE-2012-3497, which was too general; CVE-2012-3497 has been SPLIT into this ID and others.

    Published: 23 Nov 2012
    4.4
    Medium

    CVE-2012-6036

    Last Modified: 11 Apr 2025

    The (1) memc_save_get_next_page, (2) tmemc_restore_put_page and (3) tmemc_restore_flush_page functions in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 do not check for negative id pools, which allows local guest OS users to cause a denial of service (memory corruption and host crash) or possibly execute arbitrary code via unspecified vectors. NOTE: this issue was originally published as part of CVE-2012-3497, which was too general; CVE-2012-3497 has been SPLIT into this ID and others.

    Published: 23 Nov 2012
    7.5
    High

    CVE-2012-2086

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in the get_last_conversation_lines function in common/logger.py in Gajim before 0.15 allows remote attackers to execute arbitrary SQL commands via the jig parameter.

    Published: 23 Nov 2012
    6.9
    Medium

    CVE-2012-3497

    Last Modified: 11 Apr 2025

    (1) TMEMC_SAVE_GET_CLIENT_WEIGHT, (2) TMEMC_SAVE_GET_CLIENT_CAP, (3) TMEMC_SAVE_GET_CLIENT_FLAGS and (4) TMEMC_SAVE_END in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 allow local guest OS users to cause a denial of service (NULL pointer dereference or memory corruption and host crash) or possibly have other unspecified impacts via a NULL client id.

    Published: 23 Nov 2012
    4.3
    Medium

    CVE-2012-4602

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in admin/code/tce_select_users_popup.php in Nicola Asuni TCExam before 11.3.009 allow remote attackers to inject arbitrary web script or HTML via the (1) cid or (2) uids parameter.

    Published: 23 Nov 2012
    6.9
    Medium

    CVE-2012-6035

    Last Modified: 11 Apr 2025

    The do_tmem_destroy_pool function in the Transcendent Memory (TMEM) in Xen 4.0, 4.1, and 4.2 does not properly validate pool ids, which allows local guest OS users to cause a denial of service (memory corruption and host crash) or execute arbitrary code via unspecified vectors. NOTE: this issue was originally published as part of CVE-2012-3497, which was too general; CVE-2012-3497 has been SPLIT into this ID and others.

    Published: 23 Nov 2012
    7.8
    High

    CVE-2012-5758

    Last Modified: 11 Apr 2025

    The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 through 2.0.0.3 and 2.1.0.0 through 2.1.0.2 does not require authentication for an unspecified interface, which allows remote attackers to cause a denial of service (process exit) via unknown vectors.

    Published: 23 Nov 2012
    6.8
    Medium

    CVE-2012-5173

    Last Modified: 11 Apr 2025

    Session fixation vulnerability in BIGACE before 2.7.8 allows remote attackers to hijack web sessions via unspecified vectors.

    Published: 23 Nov 2012
    9
    Critical

    CVE-2012-5759

    Last Modified: 11 Apr 2025

    The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 through 2.0.0.3 and 2.1.0.0 through 2.1.0.2 allows remote authenticated users to bypass intended administrative-role requirements and perform arbitrary JMX operations via unspecified vectors.

    Published: 23 Nov 2012
    10
    Critical

    CVE-2012-5862

    Last Modified: 8 Jul 2025

    These Sinapsi devices store hard-coded passwords in the PHP file of the device. By using the hard-coded passwords in the device, attackers can log into the device with administrative privileges. This could allow the attacker to have unauthorized access.

    Published: 23 Nov 2012
    9.4
    Critical

    CVE-2012-5864

    Last Modified: 8 Jul 2025

    These Sinapsi devices do not check if users that visit pages within the device have properly authenticated. By directly visiting the pages within the device, attackers can gain unauthorized access with administrative privileges.

    Published: 23 Nov 2012
    7.8
    High

    CVE-2012-5861

    Last Modified: 8 Jul 2025

    These Sinapsi devices do not check the validity of the data before executing queries. By accessing the SQL table of certain pages that do not require authentication within the device, attackers can leak information from the device. This could allow the attacker to compromise confidentiality.

    Published: 23 Nov 2012
    10
    Critical

    CVE-2012-5863

    Last Modified: 8 Jul 2025

    These Sinapsi devices do not check for special elements in commands sent to the system. By accessing certain pages with administrative privileges that do not require authentication within the device, attackers can execute arbitrary, unexpected, or dangerous commands directly onto the operating system.

    Published: 23 Nov 2012
    4.3
    Medium

    CVE-2012-5756

    Last Modified: 11 Apr 2025

    The IBM WebSphere DataPower XC10 Appliance 2.0.0.0 through 2.0.0.3 and 2.1.0.0 through 2.1.0.2, when a collective configuration is enabled, has a single secret key that is shared across different customers' installations, which allows remote attackers to spoof a container server by (1) sniffing the network to locate a cleartext transmission of this key or (2) leveraging knowledge of this key from another installation.

    Published: 23 Nov 2012
    5
    Medium

    CVE-2012-5373

    Last Modified: 11 Apr 2025

    Oracle Java SE 7 and earlier, and OpenJDK 7 and earlier, computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table, as demonstrated by a universal multicollision attack against the MurmurHash3 algorithm, a different vulnerability than CVE-2012-2739.

    Published: 23 Nov 2012
    5
    Medium

    CVE-2012-6051

    Last Modified: 11 Apr 2025

    Google CityHash computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table, as demonstrated by a universal multicollision attack.

    Published: 23 Nov 2012
    5
    Medium

    CVE-2012-5370

    Last Modified: 11 Apr 2025

    JRuby computes hash values without properly restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted input to an application that maintains a hash table, as demonstrated by a universal multicollision attack against the MurmurHash2 algorithm, a different vulnerability than CVE-2011-4838.

    Published: 23 Nov 2012
    6.4
    Medium

    CVE-2012-6619

    Last Modified: 12 Apr 2025

    The default configuration for MongoDB before 2.3.2 does not validate objects, which allows remote authenticated users to cause a denial of service (crash) or read system memory via a crafted BSON object in the column name in an insert command, which triggers a buffer over-read.

    Published: 23 Nov 2012
    4.3
    Medium

    CVE-2012-2084

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Printer, email and PDF versions module 6.x-1.x before 6.x-1.15 and 7.x-1.x before 7.x-1.0 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, probably the PATH_INFO.

    Published: 22 Nov 2012
    4.3
    Medium

    CVE-2012-2211

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in phpgwapi/inc/common_functions_inc.php in eGroupware before 1.8.004.20120405 allows remote attackers to inject arbitrary web script or HTML via the menuaction parameter to etemplate/process_exec.php. NOTE: some of these details are obtained from third party information.

    Published: 22 Nov 2012
    7.2
    High

    CVE-2012-3512

    Last Modified: 11 Apr 2025

    Munin before 2.0.6 stores plugin state files that run as root in the same group-writable directory as non-root plugins, which allows local users to execute arbitrary code by replacing a state file, as demonstrated using the smart_ plugin.

    Published: 21 Nov 2012
    9.3
    Critical

    CVE-2012-3513

    Last Modified: 11 Apr 2025

    munin-cgi-graph in Munin before 2.0.6, when running as a CGI module under Apache, allows remote attackers to load new configurations and create files in arbitrary directories via the logdir command.

    Published: 21 Nov 2012
    6.8
    Medium

    CVE-2012-4409

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in the check_file_head function in extra.c in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to execute arbitrary code via an encrypted file with a crafted header containing long salt data that is not properly handled during decryption.

    Published: 21 Nov 2012
    6.8
    Medium

    CVE-2012-4426

    Last Modified: 11 Apr 2025

    Multiple format string vulnerabilities in mcrypt 2.6.8 and earlier might allow user-assisted remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via vectors involving (1) errors.c or (2) mcrypt.c.

    Published: 21 Nov 2012
    6.8
    Medium

    CVE-2012-4527

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long file name. NOTE: it is not clear whether this is a vulnerability.

    Published: 21 Nov 2012
    6.5
    Medium

    CVE-2012-5471

    Last Modified: 11 Apr 2025

    The Dropbox Repository File Picker in Moodle 2.1.x before 2.1.9, 2.2.x before 2.2.6, and 2.3.x before 2.3.3 allows remote authenticated users to access the Dropbox of a different user by leveraging an unattended workstation after a logout.

    Published: 21 Nov 2012
    4
    Medium

    CVE-2012-5472

    Last Modified: 11 Apr 2025

    lib/formslib.php in Moodle 2.2.x before 2.2.6 and 2.3.x before 2.3.3 allows remote authenticated users to bypass intended access restrictions via a modified value of a frozen form field.

    Published: 21 Nov 2012
    4
    Medium

    CVE-2012-5473

    Last Modified: 11 Apr 2025

    The Database activity module in Moodle 2.1.x before 2.1.9, 2.2.x before 2.2.6, and 2.3.x before 2.3.3 allows remote authenticated users to read activity entries of a different group's users via an advanced search.

    Published: 21 Nov 2012
    6.5
    Medium

    CVE-2012-5479

    Last Modified: 11 Apr 2025

    The Portfolio plugin in Moodle 2.1.x before 2.1.9, 2.2.x before 2.2.6, and 2.3.x before 2.3.3 allows remote authenticated users to upload and execute files via a modified Portfolio API callback.

    Published: 21 Nov 2012
    6.4
    Medium

    CVE-2012-5480

    Last Modified: 11 Apr 2025

    The Database activity module in Moodle 2.1.x before 2.1.9, 2.2.x before 2.2.6, and 2.3.x before 2.3.3 allows remote attackers to bypass intended restrictions on reading other participants' entries via an advanced search.

    Published: 21 Nov 2012
    4
    Medium

    CVE-2012-5481

    Last Modified: 11 Apr 2025

    Moodle 2.3.x before 2.3.3 allows remote authenticated users to bypass the moodle/role:manage capability requirement and read all capability data by visiting the Check Permissions page.

    Published: 21 Nov 2012
    6.9
    Medium

    CVE-2012-4206

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in the installer in Mozilla Firefox before 17.0 and Firefox ESR 10.x before 10.0.11 on Windows allows local users to gain privileges via a Trojan horse DLL in the default downloads directory.

    Published: 21 Nov 2012
    Unknown

    CVE-2012-2615

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-5703. Reason: This candidate is a duplicate of CVE-2012-5703. Notes: All CVE users should reference CVE-2012-5703 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 20 Nov 2012