CVE Feed

    Dashboard / CVE

    5
    Medium

    CVE-2012-1256

    Last Modified: 11 Apr 2025

    The single sign-on (SSO) implementation in EasyVista before 2010.1.1.89 allows remote attackers to bypass authentication via a modified url_account parameter, in conjunction with a valid login name in the SSPI_HEADER parameter, to index.php.

    Published: 22 Feb 2012
    9.3
    Critical

    CVE-2012-0223

    Last Modified: 11 Apr 2025

    Untrusted search path vulnerability in 7-Technologies (7T) TERMIS 2.10 and earlier allows local users to gain privileges via a Trojan horse DLL in the current working directory, a different vulnerability than CVE-2012-0224.

    Published: 22 Feb 2012
    4.4
    Medium

    CVE-2012-1054

    Last Modified: 11 Apr 2025

    Puppet 2.6.x before 2.6.14 and 2.7.x before 2.7.11, and Puppet Enterprise (PE) Users 1.0, 1.1, 1.2.x, 2.0.x before 2.0.3, when managing a user login file with the k5login resource type, allows local users to gain privileges via a symlink attack on .k5login.

    Published: 22 Feb 2012
    2.1
    Low

    CVE-2013-2013

    Last Modified: 11 Apr 2025

    The user-password-update command in python-keystoneclient before 0.2.4 accepts the new password in the --password argument, which allows local users to obtain sensitive information by listing the process.

    Published: 22 Feb 2012
    6.9
    Medium

    CVE-2012-1053

    Last Modified: 11 Apr 2025

    The change_user method in the SUIDManager (lib/puppet/util/suidmanager.rb) in Puppet 2.6.x before 2.6.14 and 2.7.x before 2.7.11, and Puppet Enterprise (PE) Users 1.0, 1.1, 1.2.x, 2.0.x before 2.0.3 does not properly manage group privileges, which allows local users to gain privileges via vectors related to (1) the change_user not dropping supplementary groups in certain conditions, (2) changes to the eguid without associated changes to the egid, or (3) the addition of the real gid to supplementary groups.

    Published: 22 Feb 2012
    10
    Critical

    CVE-2011-1914

    Last Modified: 11 Apr 2025

    Buffer overflow in the Advantech ADAM OLE for Process Control (OPC) Server ActiveX control in ADAM OPC Server before 3.01.012, Modbus RTU OPC Server before 3.01.010, and Modbus TCP OPC Server before 3.01.010 allows remote attackers to execute arbitrary code via unspecified vectors.

    Published: 21 Feb 2012
    4.3
    Medium

    CVE-2011-4522

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in bwerrdn.asp in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.

    Published: 21 Feb 2012
    10
    Critical

    CVE-2011-4524

    Last Modified: 11 Apr 2025

    Buffer overflow in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary code via a long string value in unspecified parameters.

    Published: 21 Feb 2012
    10
    Critical

    CVE-2011-4526

    Last Modified: 11 Apr 2025

    Buffer overflow in an ActiveX control in Advantech/BroadWin WebAccess before 7.0 might allow remote attackers to execute arbitrary code via a long string value in unspecified parameters.

    Published: 21 Feb 2012
    4
    Medium

    CVE-2011-4890

    Last Modified: 11 Apr 2025

    The server in IBM solidDB 6.5 before FP9 and 7.0 before FP1 allows remote authenticated users to cause a denial of service (daemon crash) via a SELECT statement with a ROWNUM condition involving a subquery.

    Published: 21 Feb 2012
    7.5
    High

    CVE-2012-0234

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary SQL commands via a malformed URL.

    Published: 21 Feb 2012
    6
    Medium

    CVE-2012-0235

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to hijack the authentication of unspecified victims via unknown vectors.

    Published: 21 Feb 2012
    5
    Medium

    CVE-2012-0236

    Last Modified: 11 Apr 2025

    Advantech/BroadWin WebAccess 7.0 and earlier allows remote attackers to obtain sensitive information via a direct request to a URL. NOTE: the vendor reportedly "does not consider it to be a security risk."

    Published: 21 Feb 2012
    6.4
    Medium

    CVE-2012-0237

    Last Modified: 11 Apr 2025

    Advantech/BroadWin WebAccess before 7.0 allows remote attackers to (1) enable date and time syncing or (2) disable date and time syncing via a crafted URL.

    Published: 21 Feb 2012
    10
    Critical

    CVE-2012-0238

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in opcImg.asp in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary code via unspecified vectors.

    Published: 21 Feb 2012
    5
    Medium

    CVE-2012-0239

    Last Modified: 11 Apr 2025

    uaddUpAdmin.asp in Advantech/BroadWin WebAccess before 7.0 does not properly perform authentication, which allows remote attackers to modify an administrative password via a password-change request.

    Published: 21 Feb 2012
    10
    Critical

    CVE-2012-0240

    Last Modified: 11 Apr 2025

    GbScriptAddUp.asp in Advantech/BroadWin WebAccess before 7.0 does not properly perform authentication, which allows remote attackers to execute arbitrary code via unspecified vectors.

    Published: 21 Feb 2012
    7.5
    High

    CVE-2012-0244

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in Advantech/BroadWin WebAccess before 7.0 allow remote attackers to execute arbitrary SQL commands via crafted string input.

    Published: 21 Feb 2012
    6.5
    Medium

    CVE-2012-1234

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in Advantech/BroadWin WebAccess 7.0 allows remote authenticated users to execute arbitrary SQL commands via a malformed URL. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0234.

    Published: 21 Feb 2012
    6
    Medium

    CVE-2012-1235

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in Advantech/BroadWin WebAccess 7.0 allows remote authenticated users to hijack the authentication of unspecified victims via unknown vectors. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-0235.

    Published: 21 Feb 2012
    4.3
    Medium

    CVE-2011-4523

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in bwview.asp in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters.

    Published: 21 Feb 2012
    10
    Critical

    CVE-2011-4525

    Last Modified: 11 Apr 2025

    Advantech/BroadWin WebAccess before 7.0 allows remote attackers to trigger the extraction of arbitrary web content into a batch file on a client system, and execute this batch file, via unspecified vectors.

    Published: 21 Feb 2012
    4
    Medium

    CVE-2012-0200

    Last Modified: 11 Apr 2025

    The server in IBM solidDB 6.5 before Interim Fix 6 does not properly initialize data structures, which allows remote authenticated users to cause a denial of service (daemon crash) via a SELECT statement with a redundant WHERE condition.

    Published: 21 Feb 2012
    10
    Critical

    CVE-2012-0242

    Last Modified: 11 Apr 2025

    Format string vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary code via format string specifiers in a message string.

    Published: 21 Feb 2012
    7.5
    High

    CVE-2011-4521

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary SQL commands via crafted string input.

    Published: 21 Feb 2012
    10
    Critical

    CVE-2012-0243

    Last Modified: 11 Apr 2025

    Buffer overflow in an ActiveX control in bwocxrun.ocx in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary code by leveraging the ability to write arbitrary content to any pathname.

    Published: 21 Feb 2012
    4.3
    Medium

    CVE-2012-0233

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to inject arbitrary web script or HTML via a malformed URL.

    Published: 21 Feb 2012
    5
    Medium

    CVE-2012-0241

    Last Modified: 11 Apr 2025

    Advantech/BroadWin WebAccess before 7.0 allows remote attackers to cause a denial of service (memory corruption) via a modified stream identifier to a function.

    Published: 21 Feb 2012
    7.5
    High

    CVE-2011-4967

    Last Modified: 21 Nov 2024

    tog-Pegasus has a package hash collision DoS vulnerability

    Published: 21 Feb 2012
    5.8
    Medium

    CVE-2012-0865

    Last Modified: 11 Apr 2025

    Multiple open redirect vulnerabilities in CubeCart 3.0.20 and earlier allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the (1) r parameter to switch.php or (2) goto parameter to admin/login.php.

    Published: 21 Feb 2012
    5
    Medium

    CVE-2012-1221

    Last Modified: 11 Apr 2025

    Directory traversal vulnerability in the telnet server in RabidHamster R2/Extreme 1.65 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the File command.

    Published: 21 Feb 2012
    8.5
    High

    CVE-2012-1222

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in RabidHamster R2/Extreme 1.65 and earlier allows remote authenticated users to execute arbitrary code via a long string to TCP port 23.

    Published: 21 Feb 2012
    5
    Medium

    CVE-2012-1223

    Last Modified: 11 Apr 2025

    RabidHamster R2/Extreme 1.65 and earlier uses a small search space of values for the PIN number, which allows remote attackers to obtain the PIN number via a brute force attack.

    Published: 21 Feb 2012
    4.3
    Medium

    CVE-2012-1224

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in system/classes/login.php in ContentLion Alpha 1.3 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.

    Published: 21 Feb 2012
    7.5
    High

    CVE-2012-1226

    Last Modified: 11 Apr 2025

    Multiple directory traversal vulnerabilities in Dolibarr CMS 3.2.0 Alpha allow remote attackers to read arbitrary files and possibly execute arbitrary code via a .. (dot dot) in the (1) file parameter to document.php or (2) backtopage parameter in a create action to comm/action/fiche.php.

    Published: 21 Feb 2012
    6.8
    Medium

    CVE-2012-1227

    Last Modified: 11 Apr 2025

    Multiple cross-site request forgery (CSRF) vulnerabilities in admin.php in pluck 4.7 allow remote attackers to hijack the authentication of admins for requests that (1) modify the admin email address or (2) modify the blog title via a settings action; (3) add a page via an editpage action, or (4) add a categorie via the blog module.

    Published: 21 Feb 2012
    5
    Medium

    CVE-2012-0841

    Last Modified: 11 Apr 2025

    libxml2 before 2.8.0 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via crafted XML data.

    Published: 21 Feb 2012
    6.8
    Medium

    CVE-2012-0993

    Last Modified: 11 Apr 2025

    Eval injection vulnerability in zp-core/zp-extensions/viewer_size_image.php in ZENphoto 1.4.2, when the viewer_size_image plugin is enabled, allows remote attackers to execute arbitrary PHP code via the viewer_size_image_saved cookie.

    Published: 21 Feb 2012
    6
    Medium

    CVE-2012-0994

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in the Manage Albums feature in zp-core/admin-albumsort.php in ZENphoto 1.4.2 allows remote authenticated users to execute arbitrary SQL commands via the sortableList parameter.

    Published: 21 Feb 2012
    4.3
    Medium

    CVE-2012-0995

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in ZENphoto 1.4.2 allow remote attackers to inject arbitrary web script or HTML via the (1) msg parameter in an external action to zp-core/admin.php, (2) PATH_INTO to an unspecified URL, as demonstrated using /1/, (3) PATH_INFO to zp-core/admin.php, or (4) album parameter to zp-core/admin-edit.php.

    Published: 21 Feb 2012
    5.5
    Medium

    CVE-2012-1012

    Last Modified: 11 Apr 2025

    server/server_stubs.c in the kadmin protocol implementation in MIT Kerberos 5 (aka krb5) 1.10 before 1.10.1 does not properly restrict access to (1) SET_STRING and (2) GET_STRINGS operations, which might allow remote authenticated administrators to modify or read string attributes by leveraging the global list privilege.

    Published: 21 Feb 2012
    6.8
    Medium

    CVE-2012-1220

    Last Modified: 11 Apr 2025

    Cross-site request forgery (CSRF) vulnerability in modules/config/admin_utente.php in GAzie 5.20 and earlier allows remote attackers to hijack the authentication of administrators for requests that change account information via an update action, as demonstrated by changing the password.

    Published: 21 Feb 2012
    5
    Medium

    CVE-2012-2328

    Last Modified: 11 Apr 2025

    internal/cimxml/sax/NodeFactory.java in Standards-Based Linux Instrumentation for Manageability (SBLIM) Common Information Model (CIM) Client (aka sblim-cim-client2) before 2.1.12 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumption) via a crafted XML file.

    Published: 21 Feb 2012
    7.9
    High

    CVE-2012-0870

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in process.c in smbd in Samba 3.0, as used in the file-sharing service on the BlackBerry PlayBook tablet before 2.0.0.7971 and other products, allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via a Batched (aka AndX) request that triggers infinite recursion.

    Published: 21 Feb 2012
    7.5
    High

    CVE-2012-1218

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in freelancerKit 2.35 allow remote attackers to execute arbitrary SQL commands via unspecified vectors to the (1) notes and (2) tickets components.

    Published: 21 Feb 2012
    4.3
    Medium

    CVE-2012-1219

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in freelancerKit 2.35 allow remote attackers to inject arbitrary web script or HTML via the (1) ticket parameter to tickets.php, (2) title parameter to notes.php, or (3) task parameter to todo.php. NOTE: some of these details are obtained from third party information.

    Published: 21 Feb 2012
    7.5
    High

    CVE-2012-1225

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in Dolibarr CMS 3.2.0 Alpha and earlier allow remote authenticated users to execute arbitrary SQL commands via the (1) memberslist parameter (aka Member List) in list.php or (2) rowid parameter to adherents/fiche.php.

    Published: 21 Feb 2012
    9.3
    Critical

    CVE-2011-4186

    Last Modified: 11 Apr 2025

    Heap-based buffer overflow in nipplib.dll in Novell iPrint Client before 5.78 on Windows allows remote attackers to execute arbitrary code via a crafted client-file-name parameter in a printer-url, a different vulnerability than CVE-2011-1705.

    Published: 20 Feb 2012
    10
    Critical

    CVE-2011-4187

    Last Modified: 11 Apr 2025

    Buffer overflow in the GetDriverSettings function in nipplib.dll in Novell iPrint Client before 5.78 on Windows allows remote attackers to execute arbitrary code via a long realm field, a different vulnerability than CVE-2011-3173.

    Published: 20 Feb 2012
    10
    Critical

    CVE-2011-4185

    Last Modified: 11 Apr 2025

    The GetPrinterURLList2 method in the ActiveX control in Novell iPrint Client before 5.78 on Windows allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2008-2431 and CVE-2008-2436.

    Published: 20 Feb 2012