CVE Feed

    Dashboard / CVE

    7.5
    High

    CVE-2012-2671

    Last Modified: 11 Apr 2025

    The Rack::Cache rubygem 0.3.0 through 1.1 caches Set-Cookie and other sensitive headers, which allows attackers to obtain sensitive cookie information, hijack web sessions, or have other unspecified impact by accessing the cache.

    Published: 17 Jun 2012
    7.5
    High

    CVE-2012-2691

    Last Modified: 11 Apr 2025

    The mc_issue_note_update function in the SOAP API in MantisBT before 1.2.11 does not properly check privileges, which allows remote attackers with bug reporting privileges to edit arbitrary bugnotes via a SOAP request.

    Published: 17 Jun 2012
    3.6
    Low

    CVE-2012-2692

    Last Modified: 11 Apr 2025

    MantisBT before 1.2.11 does not check the delete_attachments_threshold permission when form_security_validation is set to OFF, which allows remote authenticated users with certain privileges to bypass intended access restrictions and delete arbitrary attachments.

    Published: 17 Jun 2012
    7.5
    High

    CVE-2012-3577

    Last Modified: 11 Apr 2025

    Unrestricted file upload vulnerability in doupload.php in the Nmedia Member Conversation plugin before 1.4 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in wp-content/uploads/user_uploads.

    Published: 17 Jun 2012
    6.8
    Medium

    CVE-2012-3578

    Last Modified: 11 Apr 2025

    Unrestricted file upload vulnerability in html/Upload.php in the FCChat Widget plugin 2.2.13.1 and earlier for WordPress allows remote attackers to execute arbitrary code by uploading a file with a file with an executable extension followed by a safe extension, then accessing it via a direct request to the file in html/images.

    Published: 17 Jun 2012
    9.3
    Critical

    CVE-2012-2090

    Last Modified: 11 Apr 2025

    Multiple format string vulnerabilities in FlightGear 2.6 and earlier and SimGear 2.6 and earlier allow user-assisted remote attackers to cause a denial of service and possibly execute arbitrary code via format string specifiers in certain data chunk values in an aircraft xml model to (1) fgfs/flightgear/src/Cockpit/panel.cxx or (2) fgfs/flightgear/src/Network/generic.cxx, or (3) a scene graph model to simgear/simgear/scene/model/SGText.cxx.

    Published: 17 Jun 2012
    9.3
    Critical

    CVE-2012-2091

    Last Modified: 11 Apr 2025

    Multiple buffer overflows in FlightGear 2.6 and earlier and SimGear 2.6 and earlier allow user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a (1) long string in a rotor tag of an aircraft xml model to the Rotor::getValueforFGSet function in src/FDM/YASim/Rotor.cpp or (2) a crafted UDP packet to the SGSocketUDP::read function in simgear/simgear/simgear/io/sg_socket_udp.cxx.

    Published: 17 Jun 2012
    3.7
    Low

    CVE-2012-1720

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 update 4 and earlier, 6 update 32 and earlier, 5 update 35 and earlier, and 1.4.2_37 and earlier, when running on Solaris, allows local users to affect confidentiality, integrity, and availability via unknown vectors related to Networking.

    Published: 16 Jun 2012
    5
    Medium

    CVE-2011-4328

    Last Modified: 11 Apr 2025

    plugin/npapi/plugin.cpp in Gnash before 0.8.10 uses weak permissions (world readable) for cookie files with predictable names in /tmp, which allows local users to obtain sensitive information.

    Published: 16 Jun 2012
    6.8
    Medium

    CVE-2011-4408

    Last Modified: 11 Apr 2025

    The Single Sign On Client (ubuntu-sso-client) for Ubuntu 11.04 and 11.10 does not properly validate SSL certificates when using HTTPS, which allows remote attackers to spoof a server and modify or read sensitive data via a man-in-the-middle (MITM) attack.

    Published: 16 Jun 2012
    9.3
    Critical

    CVE-2012-0210

    Last Modified: 11 Apr 2025

    debdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4 allows remote attackers to obtain system information and execute arbitrary code via the file name in a (1) .dsc or (2) .changes file.

    Published: 16 Jun 2012
    9.3
    Critical

    CVE-2012-0211

    Last Modified: 11 Apr 2025

    debdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4 allows remote attackers to execute arbitrary code via a crafted tarball file name in the top-level directory of an original (.orig) source tarball of a source package.

    Published: 16 Jun 2012
    7.5
    High

    CVE-2012-3574

    Last Modified: 11 Apr 2025

    Unrestricted file upload vulnerability in includes/doajaxfileupload.php in the MM Forms Community plugin 2.2.5 and 2.2.6 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in upload/temp.

    Published: 16 Jun 2012
    10
    Critical

    CVE-2012-3575

    Last Modified: 11 Apr 2025

    Unrestricted file upload vulnerability in uploader.php in the RBX Gallery plugin 2.1 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in uploads/rbxslider.

    Published: 16 Jun 2012
    7.5
    High

    CVE-2011-4409

    Last Modified: 11 Apr 2025

    The Ubuntu One Client for Ubuntu 10.04 LTS, 11.04, 11.10, and 12.04 LTS does not properly validate SSL certificates, which allows remote attackers to spoof a server and modify or read sensitive information via a man-in-the-middle (MITM) attack.

    Published: 16 Jun 2012
    9.3
    Critical

    CVE-2012-0212

    Last Modified: 11 Apr 2025

    debdiff.pl in devscripts 2.10.x before 2.10.69 and 2.11.x before 2.11.4 allows remote attackers to execute arbitrary code via shell metacharacters in the file name argument.

    Published: 16 Jun 2012
    10
    Critical

    CVE-2012-3576

    Last Modified: 11 Apr 2025

    Unrestricted file upload vulnerability in php/upload.php in the wpStoreCart plugin before 2.5.30 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in uploads/wpstorecart.

    Published: 16 Jun 2012
    2.6
    Low

    CVE-2012-2632

    Last Modified: 11 Apr 2025

    SEIL routers with firmware SEIL/x86 1.00 through 2.35, SEIL/X1 2.30 through 3.75, SEIL/X2 2.30 through 3.75, and SEIL/B1 2.30 through 3.75, when the http-proxy and application-gateway features are enabled, do not properly handle the CONNECT command, which allows remote attackers to bypass intended URL restrictions via a TCP session.

    Published: 15 Jun 2012
    4.3
    Medium

    CVE-2012-2633

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in wassup.php in the WassUp plugin before 1.8.3.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the User-Agent HTTP header.

    Published: 15 Jun 2012
    2.6
    Low

    CVE-2012-2634

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in FeedDemon before 4.0, when the feed preview option is enabled, allows remote attackers to inject arbitrary web script or HTML via a feed.

    Published: 15 Jun 2012
    4.3
    Medium

    CVE-2012-2635

    Last Modified: 11 Apr 2025

    The Dolphin Browser HD application before 7.6 and Dolphin for Pad application before 1.0.1 for Android do not properly implement the WebView class, which allows remote attackers to obtain sensitive information via a crafted application.

    Published: 15 Jun 2012
    4.3
    Medium

    CVE-2012-2631

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in WEBLOGIC @WEB ShoppingCart before 1.5.2.0, and @WEB ShoppingCart T 1.5.0.1 and earlier, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 15 Jun 2012
    5.6
    Medium

    CVE-2012-3345

    Last Modified: 11 Apr 2025

    ioquake3 before r2253 allows local users to overwrite arbitrary files via a symlink attack on the /tmp/ioq3.pid temporary file.

    Published: 15 Jun 2012
    6.8
    Medium

    CVE-2012-2113

    Last Modified: 11 Apr 2025

    Multiple integer overflows in tiff2pdf in libtiff before 4.0.2 allow remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted tiff image, which triggers a heap-based buffer overflow.

    Published: 15 Jun 2012
    6.8
    Medium

    CVE-2012-3523

    Last Modified: 11 Apr 2025

    The STARTTLS implementation in nnrpd in INN before 2.5.3 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted sessions by sending a cleartext command that is processed after TLS is in place, related to a "plaintext command injection" attack, a similar issue to CVE-2011-0411.

    Published: 15 Jun 2012
    7.5
    High

    CVE-2012-2088

    Last Modified: 11 Apr 2025

    Integer signedness error in the TIFFReadDirectory function in tif_dirread.c in libtiff 3.9.4 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a negative tile depth in a tiff image, which triggers an improper conversion between signed and unsigned types, leading to a heap-based buffer overflow.

    Published: 15 Jun 2012
    9.3
    Critical

    CVE-2012-3288

    Last Modified: 11 Apr 2025

    VMware Workstation 7.x before 7.1.6 and 8.x before 8.0.4, VMware Player 3.x before 3.1.6 and 4.x before 4.0.4, VMware Fusion 4.x before 4.1.3, VMware ESXi 3.5 through 5.0, and VMware ESX 3.5 through 4.1 allow user-assisted remote attackers to execute arbitrary code on the host OS or cause a denial of service (memory corruption) on the host OS via a crafted Checkpoint file.

    Published: 14 Jun 2012
    7.8
    High

    CVE-2012-3289

    Last Modified: 11 Apr 2025

    VMware Workstation 8.x before 8.0.4, VMware Player 4.x before 4.0.4, VMware ESXi 3.5 through 5.0, and VMware ESX 3.5 through 4.1 allow remote attackers to cause a denial of service (guest OS crash) via crafted traffic from a remote virtual device.

    Published: 14 Jun 2012
    10
    Critical

    CVE-2012-3559

    Last Modified: 11 Apr 2025

    Unspecified vulnerability in Opera before 12.00 on Mac OS X has unknown impact and attack vectors, related to a "moderate severity issue."

    Published: 14 Jun 2012
    7.6
    High

    CVE-2012-3555

    Last Modified: 11 Apr 2025

    Opera before 11.65 does not ensure that keyboard sequences are associated with a visible window, which makes it easier for user-assisted remote attackers to conduct cross-site scripting (XSS) attacks or execute arbitrary code via a crafted web site, related to a "hidden keyboard navigation" issue.

    Published: 14 Jun 2012
    9.3
    Critical

    CVE-2012-3556

    Last Modified: 11 Apr 2025

    Opera before 11.65 does not properly restrict the opening of a pop-up window in response to the first click of a double-click action, which makes it easier for user-assisted remote attackers to conduct cross-site scripting (XSS) attacks or execute arbitrary code via a crafted web site.

    Published: 14 Jun 2012
    5
    Medium

    CVE-2012-3557

    Last Modified: 11 Apr 2025

    Opera before 11.65 does not properly restrict the reading of JSON strings, which allows remote attackers to perform cross-domain loading of JSON resources and consequently obtain sensitive information via a crafted web site.

    Published: 14 Jun 2012
    10
    Critical

    CVE-2012-3561

    Last Modified: 11 Apr 2025

    Opera before 11.64 does not properly allocate memory for URL strings, which allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted string.

    Published: 14 Jun 2012
    4.3
    Medium

    CVE-2012-3562

    Last Modified: 11 Apr 2025

    Opera before 12.00 Beta allows user-assisted remote attackers to cause a denial of service (application crash) via a crafted web page that is not properly handled during a reload, as demonstrated by a "multiple origin camera test" page.

    Published: 14 Jun 2012
    5
    Medium

    CVE-2012-3563

    Last Modified: 11 Apr 2025

    Opera before 12.00 Beta allows remote attackers to cause a denial of service (application crash) via a web page that contains invalid character encodings.

    Published: 14 Jun 2012
    5
    Medium

    CVE-2012-3564

    Last Modified: 11 Apr 2025

    Opera before 12.00 Beta allows remote attackers to cause a denial of service (application hang) via an absolutely positioned wrap=off TEXTAREA element located next to an "overflow: auto" block element.

    Published: 14 Jun 2012
    5
    Medium

    CVE-2012-3565

    Last Modified: 11 Apr 2025

    Opera before 12.00 Beta allows remote attackers to cause a denial of service (application crash) via crafted characters in domain names, as demonstrated by "IDNA2008 tests."

    Published: 14 Jun 2012
    4.3
    Medium

    CVE-2012-3566

    Last Modified: 11 Apr 2025

    Opera before 12.00 Beta allows user-assisted remote attackers to cause a denial of service (application hang) via JavaScript code that changes a form before submission.

    Published: 14 Jun 2012
    5
    Medium

    CVE-2012-3567

    Last Modified: 11 Apr 2025

    Opera before 12.00 Beta allows remote attackers to cause a denial of service (memory consumption or application hang) via an IFRAME element that uses the src="#" syntax to embed a parent document.

    Published: 14 Jun 2012
    4.3
    Medium

    CVE-2012-3560

    Last Modified: 11 Apr 2025

    Opera before 11.65 does not ensure that the address field corresponds to the displayed web page during blocked navigation, which makes it easier for remote attackers to conduct spoofing attacks by detecting and preventing attempts to load a different web page.

    Published: 14 Jun 2012
    2.6
    Low

    CVE-2012-3558

    Last Modified: 11 Apr 2025

    Opera before 11.65 does not ensure that the address field corresponds to the displayed web page during unusually timed changes to this field, which makes it easier for user-assisted remote attackers to conduct spoofing attacks via vectors involving navigation, reloads, and redirects.

    Published: 14 Jun 2012
    5
    Medium

    CVE-2012-3568

    Last Modified: 11 Apr 2025

    Opera before 12.00 Beta allows remote attackers to cause a denial of service (application crash) via crafted WebGL content, as demonstrated by a codeflow.org WebGL demo.

    Published: 14 Jun 2012
    2.1
    Low

    CVE-2012-2679

    Last Modified: 11 Apr 2025

    Red Hat Network (RHN) Configuration Client (rhncfg-client) in rhncfg before 5.10.27-8 uses weak permissions (world-readable) for /var/log/rhncfg-actions, which allows local users to obtain sensitive information about the rhncfg-client actions by reading the file.

    Published: 14 Jun 2012
    5
    Medium

    CVE-2012-3541

    Last Modified: 7 Nov 2023

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: none. Reason: This candidate was withdrawn by its CNA. Further investigation showed that it was not a security issue. Notes: none.

    Published: 14 Jun 2012
    4.3
    Medium

    CVE-2012-2011

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in HP Web Jetadmin 8.x allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 13 Jun 2012
    4.3
    Medium

    CVE-2011-2545

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in the SIP implementation on the Cisco SPA8000 and SPA8800 before 6.1.11, SPA2102 and SPA3102 before 5.2.13, and SPA 500 series IP phones before 7.4.9 allows remote attackers to inject arbitrary web script or HTML via the FROM field of an INVITE message, aka Bug IDs CSCtr27277, CSCtr27256, CSCtr27274, and CSCtr14715.

    Published: 13 Jun 2012
    6.5
    Medium

    CVE-2012-1828

    Last Modified: 11 Apr 2025

    The administrative functions in AutoFORM PDM Archive before 7.1 do not have authorization requirements, which allows remote authenticated users to perform administrative actions by leveraging knowledge of a hidden function, as demonstrated by the password-change function.

    Published: 13 Jun 2012
    3.5
    Low

    CVE-2012-1829

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in AutoFORM PDM Archive before 6.920 allow remote authenticated users to inject arbitrary web script or HTML via unspecified fields.

    Published: 13 Jun 2012
    5
    Medium

    CVE-2012-3287

    Last Modified: 11 Apr 2025

    Poul-Henning Kamp md5crypt has insufficient algorithmic complexity and a consequently short runtime, which makes it easier for context-dependent attackers to discover cleartext passwords via a brute-force attack, as demonstrated by an attack using GPU hardware.

    Published: 13 Jun 2012
    6
    Medium

    CVE-2012-3347

    Last Modified: 11 Apr 2025

    AutoFORM PDM Archive before 7.0 implements user accounts in a way that allows for JMX Console authentication, which allows remote authenticated users to bypass intended access restrictions via the /jmx-console URI, and then upload and execute arbitrary JSP code via a JBoss remote-deployment mechanism, a different vulnerability than CVE-2012-1828.

    Published: 13 Jun 2012