2.6
    Low

    CVE-2012-5972

    Last Modified: 29 Jun 2012

    Directory traversal vulnerability in the web server in SpecView 2.5 build 853 and earlier allows remote attackers to read arbitrary files via a ... (dot dot dot) in a URI.

    Source:Luigi Auriemma
    Published:17 Jan 2013
    6.5
    Medium

    CVE-2012-5967

    Last Modified: 13 Dec 2012

    SQL injection vulnerability in menuXML.php in Centreon 2.3.3 through 2.3.9-4 (fixed in Centreon web 2.6.0) allows remote authenticated users to execute arbitrary SQL commands via the menu parameter.

    Source:modpr0be
    Published:19 Dec 2012
    10
    Critical

    CVE-2012-5965

    Last Modified: 5 Feb 2013

    Stack-based buffer overflow in the unique_service_name function in ssdp/ssdp_server.c in the SSDP parser in the portable SDK for UPnP Devices (aka libupnp, formerly the Intel SDK for UPnP devices) 1.3.1 allows remote attackers to execute arbitrary code via a long DeviceType (aka urn device) field in a UDP packet.

    Source:Metasploit
    Published:29 Jan 2013
    10
    Critical

    CVE-2012-5964

    Last Modified: 5 Feb 2013

    Stack-based buffer overflow in the unique_service_name function in ssdp/ssdp_server.c in the SSDP parser in the portable SDK for UPnP Devices (aka libupnp, formerly the Intel SDK for UPnP devices) 1.3.1 allows remote attackers to execute arbitrary code via a long ServiceType (aka urn service) field in a UDP packet.

    Source:Metasploit
    Published:29 Jan 2013
    10
    Critical

    CVE-2012-5963

    Last Modified: 5 Feb 2013

    Stack-based buffer overflow in the unique_service_name function in ssdp/ssdp_server.c in the SSDP parser in the portable SDK for UPnP Devices (aka libupnp, formerly the Intel SDK for UPnP devices) 1.3.1 allows remote attackers to execute arbitrary code via a long UDN (aka uuid) field within a string that lacks a :: (colon colon) in a UDP packet.

    Source:Metasploit
    Published:29 Jan 2013
    10
    Critical

    CVE-2012-5962

    Last Modified: 5 Feb 2013

    Stack-based buffer overflow in the unique_service_name function in ssdp/ssdp_server.c in the SSDP parser in the portable SDK for UPnP Devices (aka libupnp, formerly the Intel SDK for UPnP devices) 1.3.1 allows remote attackers to execute arbitrary code via a long DeviceType (aka urn) field in a UDP packet.

    Source:Metasploit
    Published:29 Jan 2013
    10
    Critical

    CVE-2012-5961

    Last Modified: 5 Feb 2013

    Stack-based buffer overflow in the unique_service_name function in ssdp/ssdp_server.c in the SSDP parser in the portable SDK for UPnP Devices (aka libupnp, formerly the Intel SDK for UPnP devices) 1.3.1 allows remote attackers to execute arbitrary code via a long UDN (aka device) field in a UDP packet.

    Source:Metasploit
    Published:29 Jan 2013
    10
    Critical

    CVE-2012-5960

    Last Modified: 5 Feb 2013

    Stack-based buffer overflow in the unique_service_name function in ssdp/ssdp_server.c in the SSDP parser in the portable SDK for UPnP Devices (aka libupnp, formerly the Intel SDK for UPnP devices) before 1.6.18 allows remote attackers to execute arbitrary code via a long UDN (aka upnp:rootdevice) field in a UDP packet.

    Source:Metasploit
    Published:29 Jan 2013
    10
    Critical

    CVE-2012-5959

    Last Modified: 5 Feb 2013

    Stack-based buffer overflow in the unique_service_name function in ssdp/ssdp_server.c in the SSDP parser in the portable SDK for UPnP Devices (aka libupnp, formerly the Intel SDK for UPnP devices) before 1.6.18 allows remote attackers to execute arbitrary code via a long UDN (aka uuid) field within a string that contains a :: (colon colon) in a UDP packet.

    Source:Metasploit
    Published:29 Jan 2013
    10
    Critical

    CVE-2012-5958

    Last Modified: 27 Nov 2020

    Stack-based buffer overflow in the unique_service_name function in ssdp/ssdp_server.c in the SSDP parser in the portable SDK for UPnP Devices (aka libupnp, formerly the Intel SDK for UPnP devices) before 1.6.18 allows remote attackers to execute arbitrary code via a UDP packet with a crafted string that is not properly handled after a certain pointer subtraction.

    Source:Patrik Lantz
    Published:29 Jan 2013
    9.3
    Critical

    CVE-2012-5946

    Last Modified: 29 May 2013

    Buffer overflow in the c1sizer ActiveX control in C1sizer.ocx in IBM SPSS SamplePower 3.0 before FP1 allows remote attackers to execute arbitrary code via a long TabCaption string.

    Source:Metasploit
    Published:30 Apr 2013
    10
    Critical

    CVE-2012-5932

    Last Modified: 22 Nov 2012

    Eval injection vulnerability in the ldapagnt_eval function in ldapagnt.dll in unifid.exe in NetIQ Privileged User Manager 2.3.x before 2.3.1 HF2 allows remote attackers to execute arbitrary Perl code via a crafted application/x-amf request.

    Source:Metasploit
    Published:24 Dec 2012
    5.5
    Medium

    CVE-2012-5931

    Last Modified: 15 Nov 2012

    Directory traversal vulnerability in the set_log_config function in regclnt.dll in unifid.exe in NetIQ Privileged User Manager 2.3.x before 2.3.1 HF2 allows remote authenticated users to create or overwrite arbitrary files via directory traversal sequences in a log pathname.

    Source:rgod
    Published:24 Dec 2012
    6.4
    Medium

    CVE-2012-5930

    Last Modified: 15 Nov 2012

    The pa_modify_accounts function in auth.dll in unifid.exe in NetIQ Privileged User Manager 2.3.x before 2.3.1 HF2 does not require authentication for the modifyAccounts method, which allows remote attackers to change the passwords of administrative accounts via a crafted application/x-amf request.

    Source:rgod
    Published:24 Dec 2012
    4.3
    Medium

    CVE-2012-5919

    Last Modified: 23 Apr 2012

    Multiple cross-site scripting (XSS) vulnerabilities in Havalite 1.0.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) find or (2) replace fields to havalite/findReplace.php; (3) username parameter to havalite/hava_login.php, (4) the Edit Article module, or (5) hava_post.php in the postAuthor module; (6) postId parameter to hava_post.php; (7) userId parameter to hava_user.php; or (8) linkId parameter to hava_link.php.

    Source:Vulnerability-Lab
    Published:19 Nov 2012
    4
    Medium

    CVE-2012-5918

    Last Modified: 10 Jan 2012

    razorCMS 1.2 allows remote authenticated users to access administrator directories and files by creating and deleting a directory.

    Source:chap0
    Published:19 Nov 2012
    4.3
    Medium

    CVE-2012-5917

    Last Modified: 1 Apr 2012

    SnackAmp 3.1.3 allows remote attackers to cause a denial of service (application crash) via a long string in an aiff file.

    Source:Ahmed Elhady Mohamed
    Published:17 Nov 2012
    4.3
    Medium

    CVE-2012-5913

    Last Modified: 14 May 2015

    Cross-site scripting (XSS) vulnerability in wp-integrator.php in the WordPress Integrator module 1.32 for WordPress allows remote attackers to inject arbitrary web script or HTML via the redirect_to parameter to wp-login.php.

    Source:Stefan Schurtz
    Published:17 Nov 2012
    7.5
    High

    CVE-2012-5912

    Last Modified: 28 Mar 2012

    Multiple SQL injection vulnerabilities in PicoPublisher 2.0 allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) page.php or (2) single.php.

    Source:ZeTH
    Published:17 Nov 2012
    7.5
    High

    CVE-2012-5909

    Last Modified: 14 May 2015

    SQL injection vulnerability in admin/modules/user/users.php in MyBB (aka MyBulletinBoard) 1.6.6 allows remote attackers to execute arbitrary SQL commands via the conditions[usergroup][] parameter in a search action to admin/index.php.

    Source:Aditya Modha
    Published:17 Nov 2012
    4.3
    Medium

    CVE-2012-5908

    Last Modified: 14 May 2015

    Cross-site scripting (XSS) vulnerability in admin/modules/user/users.php in MyBB (aka MyBulletinBoard) 1.6.6 allows remote attackers to inject arbitrary web script or HTML via the conditions[usergroup][] parameter in a search action to admin/index.php.

    Source:Aditya Modha
    Published:17 Nov 2012
    5
    Medium

    CVE-2012-5907

    Last Modified: 14 May 2015

    Directory traversal vulnerability in json.php in TomatoCart 1.2.0 Alpha 2 and possibly earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the module parameter in a "3" action.

    Source:Canberk BOLAT
    Published:17 Nov 2012
    4
    Medium

    CVE-2012-5905

    Last Modified: 28 Mar 2012

    Buffer overflow in KnFTPd 1.0.0 allows remote authenticated users to cause a denial of service (crash) via a long string in a FEAT command.

    Source:Stefan Schurtz
    Published:17 Nov 2012
    4.3
    Medium

    CVE-2012-5903

    Last Modified: 9 Dec 2016

    Cross-site scripting (XSS) vulnerability in Simple Machines Forum (SMF) 2.0.2 allows remote attackers to inject arbitrary web script or HTML via the scheduled parameter to index.php.

    Source:Am!r
    Published:17 Nov 2012
    7.5
    High

    CVE-2012-5900

    Last Modified: 6 Apr 2012

    Multiple SQL injection vulnerabilities in SAMEDIA LandShop 0.9.2 allow remote attackers to execute arbitrary SQL commands via the (1) OB_ID parameter in a single action to admin/action/objects.php, (2) AREA_ID parameter in a single action to admin/action/areas.php, or (3) start parameter in a show action to admin/action/pdf.php.

    Source:Vulnerability-Lab
    Published:17 Nov 2012
    4.3
    Medium

    CVE-2012-5899

    Last Modified: 6 Apr 2012

    Cross-site scripting (XSS) vulnerability in admin/action/objects.php in SAMEDIA LandShop 0.9.2 allows remote attackers to inject arbitrary web script or HTML via the OTR_HEADS[] parameter in an edit action. NOTE: some of these details are obtained from third party information.

    Source:Vulnerability-Lab
    Published:17 Nov 2012
    6.8
    Medium

    CVE-2012-5898

    Last Modified: 6 Apr 2012

    Cross-site request forgery (CSRF) vulnerability in SAMEDIA LandShop 0.9.2 allows remote attackers to hijack the authentication of administrators for requests that change account settings.

    Source:Vulnerability-Lab
    Published:17 Nov 2012
    9.3
    Critical

    CVE-2012-5897

    Last Modified: 28 Mar 2012

    The (1) SimpleTree and (2) ReportTree classes in the ARDoc ActiveX control (ARDoc.dll) in Quest InTrust 10.4.0.853 and earlier do not properly implement the SaveToFile method, which allows remote attackers to write or overwrite arbitrary files via the bstrFileName argument.

    Source:rgod
    Published:17 Nov 2012
    10
    Critical

    CVE-2012-5896

    Last Modified: 27 Oct 2016

    The Annotation Objects Extension ActiveX control in AnnotateX.dll in Quest InTrust 10.4.0.853 and earlier does not properly implement the Add method, which allows remote attackers to execute arbitrary code via a memory address in the first argument, related to an "uninitialized pointer."

    Source:Metasploit
    Published:17 Nov 2012
    7.5
    High

    CVE-2012-5894

    Last Modified: 23 Apr 2012

    SQL injection vulnerability in hava_post.php in Havalite CMS 1.1.0 and earlier allows remote attackers to execute arbitrary SQL commands via the postId parameter.

    Source:Vulnerability-Lab
    Published:17 Nov 2012
    6.8
    Medium

    CVE-2012-5891

    Last Modified: 6 Apr 2012

    Multiple cross-site request forgery (CSRF) vulnerabilities in photo/pass.php in DAlbum 1.44 build 174 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) add a user via an add action, (2) change user passwords via a change action, or (3) delete a user via a delete action.

    Source:Ahmed Elhady Mohamed
    Published:17 Nov 2012
    8.2
    High

    CVE-2012-5879

    Last Modified: 29 Mar 2013

    An ActiveX control in McHealthCheck.dll in McAfee Virtual Technician (MVT) and ePO-MVT 6.5.0.2101 and earlier allows remote attackers to modify or create arbitrary files via a full pathname argument to the Save method.

    Source:High-Tech Bridge SA
    Published:28 Mar 2013
    9.8
    Critical

    CVE-2012-5878

    Last Modified: 9 Sept 2015

    Bulb Security Smartphone Pentest Framework (SPF) 0.1.2 through 0.1.4 allows remote attackers to execute arbitrary commands via shell metacharacters in the hostingPath parameter to (1) SEAttack.pl or (2) CSAttack.pl in frameworkgui/ or the (3) appURLPath parameter to frameworkgui/attachMobileModem.pl.

    Source:High-Tech Bridge
    Published:3 Jan 2020
    5
    Medium

    CVE-2012-5877

    Last Modified: 10 Jan 2013

    Nero MediaHome 4.5.8.0 and earlier allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via an HTTP header without a name.

    Source:High-Tech Bridge SA
    Published:30 May 2014
    5
    Medium

    CVE-2012-5876

    Last Modified: 10 Jan 2013

    Multiple off-by-one errors in NMMediaServerService.dll in Nero MediaHome 4.5.8.0 and earlier allow remote attackers to cause a denial of service (crash) via a long string in the (1) request line or (2) HTTP Referer header to TCP port 54444, which triggers a heap-based buffer overflow.

    Source:High-Tech Bridge SA
    Published:30 May 2014
    5
    Medium

    CVE-2012-5875

    Last Modified: 21 Dec 2012

    Firefly Media Server 1.0.0.1359 allows remote attackers to cause a denial of service (NULL pointer dereference) via a (1) crafted Connection HTTP header; a return carriage control character in the (2) Accept Language header, (3) User-agent header, (4) Host header, or (5) protocol version; or a (6) crafted HTTP protocol version.

    Source:High-Tech Bridge SA
    Published:18 Jan 2013
    7.5
    High

    CVE-2012-5874

    Last Modified: 21 Feb 2013

    Multiple SQL injection vulnerabilities in the (1) update_whosonline_reg and (2) update_whosonline_guest functions in Elite Bulletin Board before 2.1.22 allow remote attackers to execute arbitrary SQL commands via the PATH_INFO to (a) checkuser.php, (b) groups.php, (c) index.php, (d) login.php, (e) quicklogin.php, (f) register.php, (g) Search.php, (h) viewboard.php, or (i) viewtopic.php.

    Source:High-Tech Bridge SA
    Published:12 Jan 2013
    6.5
    Medium

    CVE-2012-5865

    Last Modified: 9 Dec 2012

    SQL injection vulnerability in dispatch.php in Achievo 1.4.5 allows remote authenticated users to execute arbitrary SQL commands via the activityid parameter in a stats action.

    Source:High-Tech Bridge SA
    Published:20 Oct 2014
    9.4
    Critical

    CVE-2012-5864

    Last Modified: 12 Sept 2012

    These Sinapsi devices do not check if users that visit pages within the device have properly authenticated. By directly visiting the pages within the device, attackers can gain unauthorized access with administrative privileges.

    Source:Roberto Paleari
    Published:23 Nov 2012
    10
    Critical

    CVE-2012-5863

    Last Modified: 12 Sept 2012

    These Sinapsi devices do not check for special elements in commands sent to the system. By accessing certain pages with administrative privileges that do not require authentication within the device, attackers can execute arbitrary, unexpected, or dangerous commands directly onto the operating system.

    Source:Roberto Paleari
    Published:23 Nov 2012
    10
    Critical

    CVE-2012-5862

    Last Modified: 12 Sept 2012

    These Sinapsi devices store hard-coded passwords in the PHP file of the device. By using the hard-coded passwords in the device, attackers can log into the device with administrative privileges. This could allow the attacker to have unauthorized access.

    Source:Roberto Paleari
    Published:23 Nov 2012
    7.8
    High

    CVE-2012-5861

    Last Modified: 12 Sept 2012

    These Sinapsi devices do not check the validity of the data before executing queries. By accessing the SQL table of certain pages that do not require authentication within the device, attackers can leak information from the device. This could allow the attacker to compromise confidentiality.

    Source:Roberto Paleari
    Published:23 Nov 2012
    4.3
    Medium

    CVE-2012-5858

    Last Modified: 5 Feb 2013

    Samsung Kies Air 2.1.207051 and 2.1.210161 relies on the IP address for authentication, which allows remote man-in-the-middle attackers to read arbitrary phone contents by spoofing or controlling the IP address.

    Source:Metasploit
    Published:3 Dec 2012
    4.3
    Medium

    CVE-2012-5851

    Last Modified: 31 Aug 2015

    html/parser/XSSAuditor.cpp in WebCore in WebKit, as used in Google Chrome through 22 and Safari 5.1.7, does not consider all possible output contexts of reflected data, which makes it easier for remote attackers to bypass a cross-site scripting (XSS) protection mechanism via a crafted string, aka rdar problem 12019108.

    Source:Tushar Dalvi
    Published:15 Nov 2012
    7.5
    High

    CVE-2012-5849

    Last Modified: 9 Dec 2012

    Multiple SQL injection vulnerabilities in ClipBucket 2.6 Revision 738 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) uid parameter in an add_friend action to ajax.php; id parameter in a (2) share_object, (3) add_to_fav, (4) rating, or (5) flag_object action to ajax.php; cid parameter in an (6) add_new_item, (7) remove_collection_item, (8) get_item, or (9) load_more_items action to ajax.php; (10) ci_id parameter in a get_item action to ajax.php; user parameter to (11) user_contacts.php or (12) view_channel.php; (13) pid parameter to view_page.php; (14) tid parameter to view_topic.php; or (15) v parameter to watch_video.php.

    Source:High-Tech Bridge SA
    Published:14 May 2015
    4.3
    Medium

    CVE-2012-5702

    Last Modified: 1 Sept 2015

    Multiple cross-site scripting (XSS) vulnerabilities in dotProject before 2.1.7 allow remote attackers to inject arbitrary web script or HTML via the (1) callback parameter in a color_selector action, (2) field parameter in a date_format action, or (3) company_name parameter in an addedit action to index.php. NOTE: the date parameter vector is already covered by CVE-2008-3886.

    Source:High-Tech Bridge
    Published:21 Oct 2014
    6.8
    Medium

    CVE-2012-5701

    Last Modified: 1 Sept 2015

    Multiple SQL injection vulnerabilities in dotProject before 2.1.7 allow remote authenticated administrators to execute arbitrary SQL commands via the (1) search_string or (2) where parameter in a contacts action, (3) dept_id parameter in a departments action, (4) project_id[] parameter in a project action, or (5) company_id parameter in a system action to index.php. NOTE: this can be leveraged using CSRF to allow remote attackers to execute arbitrary SQL commands.

    Source:High-Tech Bridge
    Published:20 Oct 2014
    4.3
    Medium

    CVE-2012-5700

    Last Modified: 16 Nov 2012

    Multiple cross-site scripting (XSS) vulnerabilities in Baby Gekko before 1.2.2f allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to admin/index.php or the (2) username or (3) password parameter in blocks/loginbox/loginbox.template.php to index.php. NOTE: some of these details are obtained from third party information.

    Source:High-Tech Bridge SA
    Published:22 Sept 2014
    9.8
    Critical

    CVE-2012-5699

    Last Modified: 16 Nov 2012

    BabyGekko before 1.2.4 allows PHP file inclusion.

    Source:High-Tech Bridge SA
    Published:23 Jan 2020
    8.8
    High

    CVE-2012-5698

    Last Modified: 16 Nov 2012

    BabyGekko before 1.2.4 has SQL injection.

    Source:High-Tech Bridge SA
    Published:23 Jan 2020