CVE Feed

    Dashboard / CVE

    5
    Medium

    CVE-2011-3670

    Last Modified: 11 Apr 2025

    Mozilla Firefox before 3.6.26 and 4.x through 6.0, Thunderbird before 3.1.18 and 5.0 through 6.0, and SeaMonkey before 2.4 do not properly enforce the IPv6 literal address syntax, which allows remote attackers to obtain sensitive information by making XMLHttpRequest calls through a proxy and reading the error messages.

    Published: 31 Jan 2012
    10
    Critical

    CVE-2012-0444

    Last Modified: 11 Apr 2025

    Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 do not properly initialize nsChildView data structures, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via a crafted Ogg Vorbis file.

    Published: 31 Jan 2012
    4.3
    Medium

    CVE-2012-0782

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in wp-admin/setup-config.php in the installation component in WordPress 3.3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) dbhost, (2) dbname, or (3) uname parameter. NOTE: the vendor disputes the significance of this issue; also, it is unclear whether this specific XSS scenario has security relevance

    Published: 30 Jan 2012
    5
    Medium

    CVE-2012-0937

    Last Modified: 11 Apr 2025

    wp-admin/setup-config.php in the installation component in WordPress 3.3.1 and earlier does not limit the number of MySQL queries sent to external MySQL database servers, which allows remote attackers to use WordPress as a proxy for brute-force attacks or denial of service attacks via the dbhost parameter, a different vulnerability than CVE-2011-4898. NOTE: the vendor disputes the significance of this issue because an incomplete WordPress installation might be present on the network for only a short time

    Published: 30 Jan 2012
    7.5
    High

    CVE-2011-4899

    Last Modified: 11 Apr 2025

    wp-admin/setup-config.php in the installation component in WordPress 3.3.1 and earlier does not ensure that the specified MySQL database service is appropriate, which allows remote attackers to configure an arbitrary database via the dbhost and dbname parameters, and subsequently conduct static code injection and cross-site scripting (XSS) attacks via (1) an HTTP request or (2) a MySQL query. NOTE: the vendor disputes the significance of this issue; however, remote code execution makes the issue important in many realistic environments

    Published: 30 Jan 2012
    5
    Medium

    CVE-2011-4898

    Last Modified: 11 Apr 2025

    wp-admin/setup-config.php in the installation component in WordPress 3.3.1 and earlier generates different error messages for requests lacking a dbname parameter depending on whether the MySQL credentials are valid, which makes it easier for remote attackers to conduct brute-force attacks via a series of requests with different uname and pwd parameters. NOTE: the vendor disputes the significance of this issue; also, it is unclear whether providing intentionally vague error messages during installation would be reasonable from a usability perspective

    Published: 30 Jan 2012
    7.2
    High

    CVE-2012-0809

    Last Modified: 11 Apr 2025

    Format string vulnerability in the sudo_debug function in Sudo 1.8.0 through 1.8.3p1 allows local users to execute arbitrary code via format string sequences in the program name for sudo.

    Published: 30 Jan 2012
    7.5
    High

    CVE-2011-4337

    Last Modified: 11 Apr 2025

    Static code injection vulnerability in translate.php in Support Incident Tracker (aka SiT!) 3.45 through 3.65 allows remote attackers to inject arbitrary PHP code into an executable language file in the i18n directory via the lang variable.

    Published: 29 Jan 2012
    7.5
    High

    CVE-2011-5072

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in Support Incident Tracker (aka SiT!) before 3.65 allow remote attackers to execute arbitrary SQL commands via the (1) start parameter to portal/kb.php; (2) contractid parameter to contract_add_service.php; (3) id parameter to edit_escalation_path.php; (4) unlock, (5) lock, or (6) selected parameter to holding_queue.php; inc parameter in a report action to (7) report_customers.php or (8) report_incidents_by_site.php; (9) start parameter to search.php; or (10) sites parameter to transactions.php.

    Published: 29 Jan 2012
    5
    Medium

    CVE-2011-5075

    Last Modified: 11 Apr 2025

    translate.php in Support Incident Tracker (aka SiT!) 3.45 through 3.65 allows remote attackers to obtain sensitive information via a direct request using the save action, which reveals the installation path.

    Published: 29 Jan 2012
    4.3
    Medium

    CVE-2011-5073

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Support Incident Tracker (aka SiT!) before 3.65 allow remote attackers to inject arbitrary web script or HTML via the (1) mode parameter to contact_support.php; (2) contractid parameter to contract_add_service.php; (3) user parameter to edit_backup_users.php; (4) id parameter to edit_escalation_path.php; the Referer to (5) forgotpwd.php, (6) an approvalpage action to billable_incidents.php, or (7) transactions.php; (8) action parameter to inbox.php; (9) search_string parameter in a findcontact action to incident_add.php; table1 parameter to (10) report_customers.php, (11) report_incidents_by_engineer.php, (12) report_incidents_by_site.php, or (13) report_marketing.php; or the (14) startdate or (15) enddate parameter to report_incidents_by_vendor.php.

    Published: 29 Jan 2012
    6.8
    Medium

    CVE-2011-5074

    Last Modified: 11 Apr 2025

    Multiple cross-site request forgery (CSRF) vulnerabilities in Support Incident Tracker (aka SiT!) before 3.65 allow remote attackers to hijack the authentication of administrators for requests that change administrator email, add a new administrator, or insert arbitrary script via (1) user_profile_edit.php or (2) user_add.php.

    Published: 29 Jan 2012
    4
    Medium

    CVE-2011-3829

    Last Modified: 11 Apr 2025

    ftp_upload_file.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to obtain sensitive information via the file name, which reveals the installation path in an error message.

    Published: 29 Jan 2012
    4.3
    Medium

    CVE-2011-3830

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in search.php in Support Incident Tracker (aka SiT!) 3.65 allows remote attackers to inject arbitrary web script or HTML via the search_string parameter.

    Published: 29 Jan 2012
    7.5
    High

    CVE-2011-3831

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in incident_attachments.php in Support Incident Tracker (aka SiT!) 3.65 allows remote attackers to execute arbitrary SQL commands via an uploaded file with a crafted file name.

    Published: 29 Jan 2012
    6.5
    Medium

    CVE-2011-3832

    Last Modified: 11 Apr 2025

    Eval injection vulnerability in config.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated administrators to execute arbitrary PHP code via the application_name parameter in a save action.

    Published: 29 Jan 2012
    6.8
    Medium

    CVE-2011-5068

    Last Modified: 11 Apr 2025

    Multiple cross-site request forgery (CSRF) vulnerabilities in Support Incident Tracker (aka SiT!) 3.65 allow remote attackers to hijack the authentication of user for requests that delete a user via user_delete.php and other unspecified programs.

    Published: 29 Jan 2012
    7.5
    High

    CVE-2011-5071

    Last Modified: 11 Apr 2025

    Multiple SQL injection vulnerabilities in Support Incident Tracker (aka SiT!) before 3.64 allow remote attackers to execute arbitrary SQL commands via the (1) exc[] parameter to report_marketing.php, (2) selected[] parameter to tasks.php, (3) sites[] parameter to billable_incidents.php, or (4) search_string parameter to search.php. NOTE: some of these details are obtained from third party information.

    Published: 29 Jan 2012
    4.3
    Medium

    CVE-2012-0932

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in admin/login.php in Lead Capture Page System allows remote attackers to inject arbitrary web script or HTML via the message parameter.

    Published: 29 Jan 2012
    2.6
    Low

    CVE-2012-0933

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Acidcat CMS 3.5.1, 3.5.2, 3.5.6, and possibly earlier allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) admin_colors.asp, (2) admin_config.asp, and (3) admin_cat_add.asp in admin/.

    Published: 29 Jan 2012
    7.5
    High

    CVE-2012-0934

    Last Modified: 11 Apr 2025

    PHP remote file inclusion vulnerability in ajax/savetag.php in the Theme Tuner plugin for WordPress before 0.8 allows remote attackers to execute arbitrary PHP code via a URL in the tt-abspath parameter.

    Published: 29 Jan 2012
    6
    Medium

    CVE-2011-5069

    Last Modified: 11 Apr 2025

    Unrestricted file upload vulnerability in incident_attachments.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in unspecified directory, a different program than CVE-2011-3833.

    Published: 29 Jan 2012
    4.3
    Medium

    CVE-2012-0936

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in web/springframework/security/SecurityAuthenticationEventOnmsEventBuilder.java in OpenNMS 1.8.x before 1.8.17, 1.9.93 and earlier, and 1.10.x before 1.10.1 allows remote attackers to inject arbitrary web script or HTML via the Username field, related to login.

    Published: 29 Jan 2012
    6
    Medium

    CVE-2011-3833

    Last Modified: 11 Apr 2025

    Unrestricted file upload vulnerability in ftp_upload_file.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to execute arbitrary PHP code by uploading a PHP file, then accessing it via a direct request to the file in an unspecified directory.

    Published: 29 Jan 2012
    4
    Medium

    CVE-2011-5067

    Last Modified: 11 Apr 2025

    move_uploaded_file.php in Support Incident Tracker (aka SiT!) 3.65 allows remote authenticated users to obtain sensitive information via the file name, which reveals the installation path in an error message.

    Published: 29 Jan 2012
    4.3
    Medium

    CVE-2011-5070

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in Support Incident Tracker (aka SiT!) 3.65 allow remote attackers to inject arbitrary web script or HTML via (1) the file name to incident_attachments.php; (2) unspecified vectors in link_add.php, possibly involving origref, linkref, linktype parameters, which are not properly handled in the clean_int function in lib/base.inc.php, or the redirect parameter, which is not properly handled in the html_redirect function in lib/html.inc.php; and (3) unspecified vectors in translate.php.

    Published: 29 Jan 2012
    7.5
    High

    CVE-2012-0935

    Last Modified: 11 Apr 2025

    SQL injection vulnerability in Default.aspx in Aryadad CMS allows remote attackers to execute arbitrary SQL commands via the PageID parameter.

    Published: 29 Jan 2012
    5
    Medium

    CVE-2012-0817

    Last Modified: 11 Apr 2025

    Memory leak in smbd in Samba 3.6.x before 3.6.3 allows remote attackers to cause a denial of service (memory and CPU consumption) by making many connection requests.

    Published: 29 Jan 2012
    2.6
    Low

    CVE-2012-1164

    Last Modified: 11 Apr 2025

    slapd in OpenLDAP before 2.4.30 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via an LDAP search query with attrsOnly set to true, which causes empty attributes to be returned.

    Published: 29 Jan 2012
    5
    Medium

    CVE-2012-0823

    Last Modified: 11 Apr 2025

    VP8 Codec SDK (libvpx) before 1.0.0 "Duclair" allows remote attackers to cause a denial of service (application crash) via (1) unspecified "corrupt input" or (2) by "starting decoding from a P-frame," which triggers an out-of-bounds read, related to "the clamping of motion vectors in SPLITMV blocks".

    Published: 29 Jan 2012
    7.5
    High

    CVE-2012-0929

    Last Modified: 11 Apr 2025

    Multiple buffer overflows in Schneider Electric Modicon Quantum PLC allow remote attackers to cause a denial of service via malformed requests to the (1) FTP server or (2) HTTP server.

    Published: 28 Jan 2012
    6.1
    Medium

    CVE-2012-0930

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in Schneider Electric Modicon Quantum PLC allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 28 Jan 2012
    9.8
    Critical

    CVE-2012-0931

    Last Modified: 11 Apr 2025

    Schneider Electric Modicon Quantum PLC does not perform authentication between the Unity software and PLC, which allows remote attackers to cause a denial of service or possibly execute arbitrary code via unspecified vectors.

    Published: 28 Jan 2012
    7.5
    High

    CVE-2011-3626

    Last Modified: 11 Apr 2025

    Double free vulnerability in the prepare_exec function in src/exec.c in Logsurfer 1.5b and earlier, and Logsurfer+ 1.7 and earlier, allows remote attackers to execute arbitrary commands via crafted strings in a log file.

    Published: 27 Jan 2012
    9.3
    Critical

    CVE-2011-3874

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in libsysutils in Android 2.2.x through 2.2.2 and 2.3.x through 2.3.6 allows user-assisted remote attackers to execute arbitrary code via an application that calls the FrameworkListener::dispatchCommand method with the wrong number of arguments, as demonstrated by zergRush to trigger a use-after-free error.

    Published: 27 Jan 2012
    9.3
    Critical

    CVE-2012-0395

    Last Modified: 11 Apr 2025

    Buffer overflow in the server in EMC NetWorker 7.5.x and 7.6.x before 7.6.3 SP1 Cumulative Release build 851 allows remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via unspecified vectors.

    Published: 27 Jan 2012
    6.5
    Medium

    CVE-2012-0806

    Last Modified: 11 Apr 2025

    Buffer overflow in Bip 0.8.8 and earlier might allow remote authenticated users to execute arbitrary code via vectors involving a series of TCP connections that triggers use of many open file descriptors.

    Published: 27 Jan 2012
    5.1
    Medium

    CVE-2012-0807

    Last Modified: 11 Apr 2025

    Stack-based buffer overflow in the suhosin_encrypt_single_cookie function in the transparent cookie-encryption feature in the Suhosin extension before 0.9.33 for PHP, when suhosin.cookie.encrypt and suhosin.multiheader are enabled, might allow remote attackers to execute arbitrary code via a long string that is used in a Set-Cookie HTTP header.

    Published: 27 Jan 2012
    5
    Medium

    CVE-2011-4143

    Last Modified: 11 Apr 2025

    EMC RSA enVision 4.0 before SP4 P5 and 4.1 before P3 allows remote attackers to obtain sensitive information about environment variables in the web system via unspecified vectors.

    Published: 27 Jan 2012
    4.3
    Medium

    CVE-2011-1940

    Last Modified: 11 Apr 2025

    Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 3.3.x before 3.3.10.1 and 3.4.x before 3.4.1 allow remote attackers to inject arbitrary web script or HTML via a crafted table name that triggers improper HTML rendering on a Tracking page, related to (1) libraries/tbl_links.inc.php and (2) tbl_tracking.php.

    Published: 26 Jan 2012
    4.3
    Medium

    CVE-2011-1941

    Last Modified: 11 Apr 2025

    Open redirect vulnerability in the redirector feature in phpMyAdmin 3.4.x before 3.4.1 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors.

    Published: 26 Jan 2012
    4.3
    Medium

    CVE-2012-0311

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in osCommerce 2.2MS1J before R9 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 26 Jan 2012
    4.3
    Medium

    CVE-2012-0312

    Last Modified: 11 Apr 2025

    Cross-site scripting (XSS) vulnerability in osCommerce 2.2MS1J before R9, and osCommerce Online Merchant before 2.3.1, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Published: 26 Jan 2012
    6.5
    Medium

    CVE-2012-0814

    Last Modified: 22 May 2026

    The auth_parse_options function in auth-options.c in sshd in OpenSSH before 5.7 provides debug messages containing authorized_keys command options, which allows remote authenticated users to obtain potentially sensitive information by reading these messages, as demonstrated by the shared user account required by Gitolite. NOTE: this can cross privilege boundaries because a user account may intentionally have no shell or filesystem access, and therefore may have no supported way to read an authorized_keys file in its own home directory.

    Published: 26 Jan 2012
    4.3
    Medium

    CVE-2011-4276

    Last Modified: 11 Apr 2025

    The Bluetooth service (com/android/phone/BluetoothHeadsetService.java) in Android 2.3 before 2.3.6 allows remote attackers within Bluetooth range to obtain contact data via an AT phonebook transfer.

    Published: 25 Jan 2012
    Unknown

    CVE-2011-4123

    Last Modified: 17 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2011-3874. Reason: This candidate is a duplicate of CVE-2011-3874. Notes: All CVE users should reference CVE-2011-3874 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Published: 25 Jan 2012
    6.8
    Medium

    CVE-2011-3479

    Last Modified: 11 Apr 2025

    Symantec pcAnywhere 12.5.x through 12.5.3, and IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), uses world-writable permissions for product-installation files, which allows local users to gain privileges by modifying a file.

    Published: 25 Jan 2012
    10
    Critical

    CVE-2011-3478

    Last Modified: 11 Apr 2025

    The host-services component in Symantec pcAnywhere 12.5.x through 12.5.3, and IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), does not properly filter login and authentication data, which allows remote attackers to execute arbitrary code via a crafted session on TCP port 5631.

    Published: 25 Jan 2012
    4.3
    Medium

    CVE-2012-0885

    Last Modified: 11 Apr 2025

    chan_sip.c in Asterisk Open Source 1.8.x before 1.8.8.2 and 10.x before 10.0.1, when the res_srtp module is used and media support is improperly configured, allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a crafted SDP message with a crypto attribute and a (1) video or (2) text media type, as demonstrated by CSipSimple.

    Published: 25 Jan 2012
    6.4
    Medium

    CVE-2011-4697

    Last Modified: 11 Apr 2025

    The Xiaomi MiTalk Messenger (com.xiaomi.channel) application before 2.1.320 for Android does not properly protect data, which allows remote attackers to read or modify messaging information via a crafted application.

    Published: 25 Jan 2012