CVE Feed

    Dashboard / CVE

    9
    Critical

    CVE-2012-1014

    Last Modified: 11 Apr 2025

    The process_as_req function in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.10.x before 1.10.3 does not initialize a certain structure member, which allows remote attackers to cause a denial of service (uninitialized pointer dereference and daemon crash) or possibly execute arbitrary code via a malformed AS-REQ request.

    Published: 31 Jul 2012
    9.3
    Critical

    CVE-2012-1015

    Last Modified: 11 Apr 2025

    The kdc_handle_protected_negotiation function in the Key Distribution Center (KDC) in MIT Kerberos 5 (aka krb5) 1.8.x, 1.9.x before 1.9.5, and 1.10.x before 1.10.3 attempts to calculate a checksum before verifying that the key type is appropriate for a checksum, which allows remote attackers to execute arbitrary code or cause a denial of service (uninitialized pointer free, heap memory corruption, and daemon crash) via a crafted AS-REQ request.

    Published: 31 Jul 2012
    6.8
    Medium

    CVE-2012-3422

    Last Modified: 11 Apr 2025

    The getFirstInTableInstance function in the IcedTea-Web plugin before 1.2.1 returns an uninitialized pointer when the instance_to_id_map hash is empty, which allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a crafted web page, which causes an uninitialized memory location to be read.

    Published: 31 Jul 2012
    7.5
    High

    CVE-2012-3423

    Last Modified: 11 Apr 2025

    The IcedTea-Web plugin before 1.2.1 does not properly handle NPVariant NPStrings without NUL terminators, which allows remote attackers to cause a denial of service (crash), obtain sensitive information from memory, or execute arbitrary code via a crafted Java applet.

    Published: 31 Jul 2012
    6.5
    Medium

    CVE-2012-2962

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in d4d/statusFilter.php in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) before 9.5.2 allows remote authenticated users to execute arbitrary SQL commands via the q parameter.

    Published: 30 Jul 2012
    4.9
    Medium

    CVE-2012-0723

    Last Modified: 11 Apr 2025

    The kernel in IBM AIX 5.3, 6.1, and 7.1, and VIOS 2.2.1.4-FP-25 SP-02, does not properly implement the dupmsg system call, which allows local users to cause a denial of service (system crash) via a crafted application.

    Published: 30 Jul 2012
    9
    Critical

    CVE-2012-2163

    Last Modified: 11 Apr 2025

    IBM Scale Out Network Attached Storage (SONAS) 1.1 through 1.3.1 allows remote authenticated administrators to execute arbitrary Linux commands via the (1) Command Line Interface or (2) Graphical User Interface, related to a "code injection" issue.

    Published: 30 Jul 2012
    2.1
    Low

    CVE-2013-7273

    Last Modified: 12 Apr 2025

    GNOME Display Manager (gdm) 3.4.1 and earlier, when disable-user-list is set to true, allows local users to cause a denial of service (unable to login) by pressing the cancel button after entering a user name.

    Published: 30 Jul 2012
    7.8
    High

    CVE-2012-3412

    Last Modified: 11 Apr 2025

    The sfc (aka Solarflare Solarstorm) driver in the Linux kernel before 3.2.30 allows remote attackers to cause a denial of service (DMA descriptor consumption and network-controller outage) via crafted TCP packets that trigger a small MSS value.

    Published: 30 Jul 2012
    3.5
    Low

    CVE-2012-3445

    Last Modified: 11 Apr 2025

    The virTypedParameterArrayClear function in libvirt 0.9.13 does not properly handle virDomain* API calls with typed parameters, which might allow remote authenticated users to cause a denial of service (libvirtd crash) via an RPC command with nparams set to zero, which triggers an out-of-bounds read or a free of an invalid pointer.

    Published: 30 Jul 2012
    4.3
    Medium

    CVE-2012-1968

    Last Modified: 11 Apr 2025

    Bugzilla 4.1.x and 4.2.x before 4.2.2 and 4.3.x before 4.3.2 uses bug-editor privileges instead of bugmail-recipient privileges during construction of HTML bugmail documents, which allows remote attackers to obtain sensitive description information by reading the tooltip portions of an HTML e-mail message.

    Published: 28 Jul 2012
    4.3
    Medium

    CVE-2012-1969

    Last Modified: 11 Apr 2025

    The get_attachment_link function in Template.pm in Bugzilla 2.x and 3.x before 3.6.10, 3.7.x and 4.0.x before 4.0.7, 4.1.x and 4.2.x before 4.2.2, and 4.3.x before 4.3.2 does not check whether an attachment is private before presenting the attachment description within a public comment, which allows remote attackers to obtain sensitive description information by reading a comment.

    Published: 28 Jul 2012
    5
    Medium

    CVE-2012-2978

    Last Modified: 11 Apr 2025

    query.c in NSD 3.0.x through 3.0.8, 3.1.x through 3.1.1, and 3.2.x before 3.2.12 allows remote attackers to cause a denial of service (NULL pointer dereference and child process crash) via a crafted DNS packet.

    Published: 27 Jul 2012
    3.5
    Low

    CVE-2012-2202

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in javatester_init.php in IBM Lotus Protector for Mail Security 2.1, 2.5, 2.5.1, and 2.8 and IBM ISS Proventia Network Mail Security System allows remote authenticated administrators to read arbitrary files via a .. (dot dot) in the template parameter.

    Published: 27 Jul 2012
    4.3
    Medium

    CVE-2012-3437

    Last Modified: 11 Apr 2025

    The Magick_png_malloc function in coders/png.c in ImageMagick 6.7.8 and earlier does not use the proper variable type for the allocation size, which might allow remote attackers to cause a denial of service (crash) via a crafted PNG file that triggers incorrect memory allocation.

    Published: 27 Jul 2012
    6.8
    Medium

    CVE-2011-2658

    Last Modified: 11 Apr 2025

    The ISList.ISAvi ActiveX control in AdminStudio in Novell ZENworks Configuration Management (ZCM) 10.2, 10.3, and 11 SP1 provides access to the mscomct2.ocx file, which allows remote attackers to execute arbitrary code by leveraging unspecified mscomct2 flaws.

    Published: 26 Jul 2012
    6.8
    Medium

    CVE-2011-3174

    Last Modified: 11 Apr 2025

    Buffer overflow in the DoFindReplace function in the ISGrid.Grid2.1 ActiveX control in InstallShield/ISGrid2.dll in AdminStudio in Novell ZENworks Configuration Management (ZCM) 10.2, 10.3, and 11 SP1 allows remote attackers to execute arbitrary code via a long bstrReplaceText parameter.

    Published: 26 Jul 2012
    5
    Medium

    CVE-2012-3884

    Last Modified: 11 Apr 2025

    AirDroid 1.0.4 beta implements authentication through direct transmission of a password hash over HTTP, which makes it easier for remote attackers to obtain access by sniffing the local wireless network and then replaying the authentication data.

    Published: 26 Jul 2012
    7.5
    High

    CVE-2012-3885

    Last Modified: 11 Apr 2025

    The default configuration of AirDroid 1.0.4 beta uses a four-character alphanumeric password, which makes it easier for remote attackers to obtain access via a brute-force attack.

    Published: 26 Jul 2012
    5
    Medium

    CVE-2012-3886

    Last Modified: 11 Apr 2025

    AirDroid 1.0.4 beta uses the MD5 algorithm for values in the checklogin key parameter and 7bb cookie, which makes it easier for remote attackers to obtain cleartext data by sniffing the local wireless network and then conducting a (1) brute-force attack or (2) rainbow-table attack.

    Published: 26 Jul 2012
    5
    Medium

    CVE-2012-3887

    Last Modified: 11 Apr 2025

    AirDroid before 1.0.7 beta uses a cleartext base64 format for data transfer that is documented as an "Encrypted Transmission" feature, which allows remote attackers to obtain sensitive information by sniffing the local wireless network, as demonstrated by the SMS message content sent to the sdctl/sms/send/single/ URI.

    Published: 26 Jul 2012
    5
    Medium

    CVE-2012-3888

    Last Modified: 11 Apr 2025

    The login implementation in AirDroid 1.0.4 beta allows remote attackers to bypass a multiple-login protection mechanism by modifying a pass value within JSON data.

    Published: 26 Jul 2012
    6.8
    Medium

    CVE-2011-2657

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in the LaunchProcess function in the LaunchHelp.HelpLauncher.1 ActiveX control in LaunchHelp.dll in AdminStudio in Novell ZENworks Configuration Management (ZCM) 10.2, 10.3, and 11 SP1 allows remote attackers to execute arbitrary commands via a pathname in the first argument.

    Published: 26 Jul 2012
    5
    Medium

    CVE-2011-4963

    Last Modified: 11 Apr 2025

    nginx/Windows 1.3.x before 1.3.1 and 1.2.x before 1.2.1 allows remote attackers to bypass intended access restrictions and access restricted files via (1) a trailing . (dot) or (2) certain "$index_allocation" sequences in a request.

    Published: 26 Jul 2012
    4.3
    Medium

    CVE-2012-4043

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in global-protect/login.esp in Palo Alto Networks Global Protect Portal, Global Protect Gateway, and SSL VPN portals 3.1.x through 3.1.11 and 4.0.x through 4.0.5 allows remote attackers to inject arbitrary web script or HTML via the inputStr parameter in a Login action.

    Published: 26 Jul 2012
    5
    Medium

    CVE-2012-3698

    Last Modified: 11 Apr 2025

    Apple Xcode before 4.4 does not properly compose a designated requirement (DR) during signing of programs that lack bundle identifiers, which allows remote attackers to read keychain entries via a crafted app, as demonstrated by the keychain entries of a (1) helper tool or (2) command-line tool.

    Published: 26 Jul 2012
    7.5
    High

    CVE-2012-4068

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in the SoapServer service in Citrix Provisioning Services 5.0, 5.1, 5.6, 5.6 SP1, 6.0, and 6.1 allows remote attackers to execute arbitrary code via a crafted string associated with date and time data.

    Published: 26 Jul 2012
    6.9
    Medium

    CVE-2012-3015

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in Siemens SIMATIC STEP7 before 5.5 SP1, as used in SIMATIC PCS7 7.1 SP3 and earlier and other products, allows local users to gain privileges via a Trojan horse DLL in a STEP7 project folder.

    Published: 26 Jul 2012
    6.9
    Medium

    CVE-2012-3005

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in Invensys Wonderware InTouch 2012 and earlier, as used in Wonderware Application Server, Wonderware Information Server, Foxboro Control Software, InFusion CE/FE/SCADA, InBatch, and Wonderware Historian, allows local users to gain privileges via a Trojan horse DLL in an unspecified directory.

    Published: 26 Jul 2012
    1.9
    Low

    CVE-2012-3432

    Last Modified: 11 Apr 2025

    The handle_mmio function in arch/x86/hvm/io.c in the MMIO operations emulator for Xen 3.3 and 4.x, when running an HVM guest, does not properly reset certain state information between emulation cycles, which allows local guest OS users to cause a denial of service (guest OS crash) via unspecified operations on MMIO regions.

    Published: 26 Jul 2012
    5
    Medium

    CVE-2012-3424

    Last Modified: 11 Apr 2025

    The decode_credentials method in actionpack/lib/action_controller/metal/http_authentication.rb in Ruby on Rails 3.x before 3.0.16, 3.1.x before 3.1.7, and 3.2.x before 3.2.7 converts Digest Authentication strings to symbols, which allows remote attackers to cause a denial of service by leveraging access to an application that uses a with_http_digest helper method, as demonstrated by the authenticate_or_request_with_http_digest method.

    Published: 26 Jul 2012
    7.5
    High

    CVE-2012-2152

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in the get_packet method in socket.c in dhcpcd 3.2.3 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long packet.

    Published: 25 Jul 2012
    6.8
    Medium

    CVE-2012-2305

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in the Node Gallery module for Drupal 6.x-3.1 and earlier allows remote attackers to hijack the authentication of certain users for requests that create node galleries.

    Published: 25 Jul 2012
    7.5
    High

    CVE-2012-2306

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in the Addressbook module for Drupal 6.x-4.2 and earlier allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Published: 25 Jul 2012
    6.8
    Medium

    CVE-2012-2307

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in the Addressbook module for Drupal 6.x-4.2 and earlier allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

    Published: 25 Jul 2012
    3.5
    Low

    CVE-2012-2308

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Taxonomy Grid : Catalog module for Drupal 6.x-1.6 and earlier allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via unspecified vectors.

    Published: 25 Jul 2012
    4.3
    Medium

    CVE-2012-2442

    Last Modified: 11 Apr 2025

    Buffer overflow in the Video Manager in Nokia PC Suite 7.1.180.64 and earlier allows remote attackers to cause a denial of service via a crafted mp4 file.

    Published: 25 Jul 2012
    6.9
    Medium

    CVE-2012-4054

    Last Modified: 11 Apr 2025

    Buffer overflow in the readfile function in CPE17 Autorun Killer 1.7.1 and earlier allows physically proximate attackers to execute arbitrary code via a crafted inf file.

    Published: 25 Jul 2012
    7.5
    High

    CVE-2012-4055

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in index2.php in Uiga Fan Club allows remote attackers to execute arbitrary SQL commands via the p parameter.

    Published: 25 Jul 2012
    7.5
    High

    CVE-2012-4056

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in index2.php in Uiga Personal Portal allows remote attackers to execute arbitrary SQL commands via the p parameter.

    Published: 25 Jul 2012
    9.3
    Critical

    CVE-2012-4057

    Last Modified: 11 Apr 2025

    Buffer overflow in the Player in Remote-Anything 5.60.15 allows remote attackers to execute arbitrary code via a crafted flm file.

    Published: 25 Jul 2012
    4.3
    Medium

    CVE-2012-4058

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in SocketMail Pro 2.2.9 allows remote attackers to inject arbitrary web script or HTML via the subject of an email.

    Published: 25 Jul 2012
    7.5
    High

    CVE-2012-4061

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in ASP-DEv XM Diary allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to diary_view.asp or (2) view_date parameter to default.asp.

    Published: 25 Jul 2012
    5
    Medium

    CVE-2012-2296

    Last Modified: 11 Apr 2025

    The Janrain Engage (formerly RPX) module for Drupal 6.x-1.x. 6.x-2.x before 6.x-2.2, and 7.x-2.x before 7.x-2.2 stores user profile data from Engage in session tables, which might allow remote attackers to obtain sensitive information by leveraging a separate vulnerability.

    Published: 25 Jul 2012
    5
    Medium

    CVE-2012-2302

    Last Modified: 11 Apr 2025

    Site Documentation (Sitedoc) module for Drupal 6.x-1.x before 6.x-1.4 does not properly check the save location when archiving, which allows remote attackers to obtain sensitive information via unspecified vectors.

    Published: 25 Jul 2012
    3.5
    Low

    CVE-2012-2310

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the cctags module for Drupal 6.x-1.x before 6.x-1.10 and 7.x-1.x before 7.x-1.10 allows remote authenticated users with certain roles to inject arbitrary web script or HTML via unspecified vectors.

    Published: 25 Jul 2012
    7.5
    High

    CVE-2012-4060

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in ASP-DEv XM Forums RC3 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) profile.asp, (2) forum.asp, or (3) topic.asp.

    Published: 25 Jul 2012
    3.5
    Low

    CVE-2012-2309

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the Glossify Internal Links Auto SEO module for Drupal 6.x-2.5 and earlier allows remote authenticated users with certain roles to inject arbitrary web script or HTML via unspecified vectors.

    Published: 25 Jul 2012
    6.8
    Medium

    CVE-2012-4059

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in home/secretqtn.php in SocketMail Pro 2.2.9 allows remote attackers to hijack the authentication of arbitrary users for requests that change user security questions and answers via an upd action.

    Published: 25 Jul 2012
    9.3
    Critical

    CVE-2012-3630

    Last Modified: 11 Apr 2025

    WebKit, as used in Apple Safari before 6.0, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site, a different vulnerability than other WebKit CVEs listed in APPLE-SA-2012-07-25-1.

    Published: 25 Jul 2012