10
    Critical

    CVE-2012-5692

    Last Modified: 27 Oct 2016

    Unspecified vulnerability in admin/sources/base/core.php in Invision Power Board (aka IPB or IP.Board) 3.1.x through 3.3.x has unknown impact and remote attack vectors.

    Source:Metasploit
    Published:31 Oct 2012
    9.3
    Critical

    CVE-2012-5691

    Last Modified: 29 Dec 2012

    Buffer overflow in RealNetworks RealPlayer before 16.0.0.282 and RealPlayer SP 1.0 through 1.1.5 allows remote attackers to execute arbitrary code via a crafted RealMedia file.

    Source:Metasploit
    Published:19 Dec 2012
    7.8
    High

    CVE-2012-5687

    Last Modified: 15 Feb 2013

    Directory traversal vulnerability in the web-based management feature on the TP-LINK TL-WR841N router with firmware 3.13.9 build 120201 Rel.54965n and earlier allows remote attackers to read arbitrary files via a .. (dot dot) in the PATH_INFO to the help/ URI.

    Source:m-1-k-3
    Published:1 Nov 2012
    9.8
    Critical

    CVE-2012-5686

    Last Modified: 7 Nov 2012

    ZPanel 10.0.1 has insufficient entropy for its password reset process.

    Source:pcsjj
    Published:4 Feb 2020
    7.5
    High

    CVE-2012-5685

    Last Modified: 7 Nov 2012

    SQL injection vulnerability in ZPanel 10.0.1 and earlier allows remote attackers to execute arbitrary SQL commands via the inEmailAddress parameter in an UpdateClient action in the manage_clients module to the default URI.

    Source:pcsjj
    Published:14 Aug 2014
    4.3
    Medium

    CVE-2012-5684

    Last Modified: 7 Nov 2012

    Cross-site scripting (XSS) vulnerability in ZPanel 10.0.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the inFullname parameter in an UpdateAccountSettings action in the my_account module to zpanel/.

    Source:pcsjj
    Published:14 Aug 2014
    6.8
    Medium

    CVE-2012-5683

    Last Modified: 7 Nov 2012

    Multiple cross-site request forgery (CSRF) vulnerabilities in ZPanel 10.0.1 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) create new FTP users via a CreateFTP action in the ftp_management module to the default URI, (2) conduct cross-site scripting (XSS) attacks via the inFullname parameter in an UpdateAccountSettings action in the my_account module to zpanel/, or (3) conduct SQL injection attacks via the inEmailAddress parameter in an UpdateClient action in the manage_clients module to the default URI.

    Source:pcsjj
    Published:14 Aug 2014
    4.3
    Medium

    CVE-2012-5672

    Last Modified: 26 Aug 2015

    Microsoft Excel Viewer (aka Xlview.exe) and Excel in Microsoft Office 2007 (aka Office 12) allow remote attackers to cause a denial of service (read access violation and application crash) via a crafted spreadsheet file, as demonstrated by a .xls file with battery voltage data.

    Source:Jean Pascal Pereira
    Published:25 Oct 2012
    4.4
    Medium

    CVE-2012-5667

    Last Modified: 31 Dec 2012

    Multiple integer overflows in GNU Grep before 2.11 might allow context-dependent attackers to execute arbitrary code via vectors involving a long input line that triggers a heap-based buffer overflow.

    Source:Joshua Rogers
    Published:22 Dec 2012
    6.4
    Medium

    CVE-2012-5664

    Last Modified: 13 Feb 2025

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-6496, CVE-2012-6497. Reason: this candidate was intended for one issue, but the candidate was publicly used to label concerns about multiple products. Notes: All CVE users should consult CVE-2012-6496 and CVE-2012-6497 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage.

    Published:21 Dec 2012
    4
    Medium

    CVE-2012-5627

    Last Modified: 8 Sept 2015

    Oracle MySQL and MariaDB 5.5.x before 5.5.29, 5.3.x before 5.3.12, and 5.2.x before 5.2.14 does not modify the salt during multiple executions of the change_user command within the same connection which makes it easier for remote authenticated users to conduct brute force password guessing attacks.

    Source:kingcope
    Published:3 Dec 2012
    5
    Medium

    CVE-2012-5615

    Last Modified: 3 Dec 2012

    Oracle MySQL 5.5.38 and earlier, 5.6.19 and earlier, and MariaDB 5.5.28a, 5.3.11, 5.2.13, 5.1.66, and possibly other versions, generates different error messages with different time delays depending on whether a user name exists, which allows remote attackers to enumerate valid usernames.

    Source:kingcope
    Published:1 Dec 2012
    4
    Medium

    CVE-2012-5614

    Last Modified: 2 Dec 2012

    Oracle MySQL 5.1.67 and earlier and 5.5.29 and earlier, and MariaDB 5.5.28a and possibly other versions, allows remote authenticated users to cause a denial of service (mysqld crash) via a SELECT command with an UpdateXML command containing XML with a large number of unique, nested elements.

    Source:kingcope
    Published:1 Dec 2012
    6
    Medium

    CVE-2012-5613

    Last Modified: 21 Feb 2013

    MySQL 5.5.19 and possibly other versions, and MariaDB 5.5.28a and possibly other versions, when configured to assign the FILE privilege to users who should not have administrative privileges, allows remote authenticated users to gain privileges by leveraging the FILE privilege to create files as the MySQL administrator. NOTE: the vendor disputes this issue, stating that this is only a vulnerability when the administrator does not follow recommendations in the product's installation documentation. NOTE: it could be argued that this should not be included in CVE because it is a configuration issue.

    Source:kingcope
    Published:1 Dec 2012
    6.5
    Medium

    CVE-2012-5612

    Last Modified: 2 Dec 2012

    Heap-based buffer overflow in Oracle MySQL 5.5.19 and other versions through 5.5.28, and MariaDB 5.5.28a and possibly other versions, allows remote authenticated users to cause a denial of service (memory corruption and crash) and possibly execute arbitrary code, as demonstrated using certain variations of the (1) USE, (2) SHOW TABLES, (3) DESCRIBE, (4) SHOW FIELDS FROM, (5) SHOW COLUMNS FROM, (6) SHOW INDEX FROM, (7) CREATE TABLE, (8) DROP TABLE, (9) ALTER TABLE, (10) DELETE FROM, (11) UPDATE, and (12) SET PASSWORD commands.

    Source:kingcope
    Published:1 Dec 2012
    6.5
    Medium

    CVE-2012-5611

    Last Modified: 2 Dec 2012

    Stack-based buffer overflow in the acl_get function in Oracle MySQL 5.5.19 and other versions through 5.5.28, and 5.1.53 and other versions through 5.1.66, and MariaDB 5.5.2.x before 5.5.28a, 5.3.x before 5.3.11, 5.2.x before 5.2.13 and 5.1.x before 5.1.66, allows remote authenticated users to execute arbitrary code via a long argument to the GRANT FILE command.

    Source:kingcope
    Published:29 Nov 2012
    6.4
    Medium

    CVE-2012-5575

    Last Modified: 11 Apr 2025

    Apache CXF 2.5.x before 2.5.10, 2.6.x before CXF 2.6.7, and 2.7.x before CXF 2.7.4 does not verify that a specified cryptographic algorithm is allowed by the WS-SecurityPolicy AlgorithmSuite definition before decrypting, which allows remote attackers to force CXF to use weaker cryptographic algorithms than intended and makes it easier to decrypt communications, aka "XML Encryption backwards compatibility attack."

    Published:8 Mar 2013
    5
    Medium

    CVE-2012-5533

    Last Modified: 22 Nov 2012

    The http_request_split_value function in request.c in lighttpd before 1.4.32 allows remote attackers to cause a denial of service (infinite loop) via a request with a header containing an empty token, as demonstrated using the "Connection: TE,,Keep-Alive" header.

    Source:t4c
    Published:24 Nov 2012
    7.2
    High

    CVE-2012-5519

    Last Modified: 11 Apr 2025

    CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator key in /var/run/cups/certs/0 using certain permissions, which allows local users in the lpadmin group to read or write arbitrary files as root by leveraging the web interface.

    Published:8 Nov 2012
    4.3
    Medium

    CVE-2012-5470

    Last Modified: 11 Oct 2012

    libpng_plugin in VideoLAN VLC media player 2.0.3 allows remote attackers to cause a denial of service (application crash) via a crafted PNG file.

    Source:Jean Pascal Pereira
    Published:26 Oct 2012
    7.5
    High

    CVE-2012-5469

    Last Modified: 14 Dec 2012

    The Portable phpMyAdmin plugin before 1.3.1 for WordPress allows remote attackers to bypass authentication and obtain phpMyAdmin console access via a direct request to wp-content/plugins/portable-phpmyadmin/wp-pma-mod.

    Source:Mark Stanislav
    Published:20 Dec 2012
    6.5
    Medium

    CVE-2012-5453

    Last Modified: 22 Oct 2012

    SQL injection vulnerability in user/index_inline_editor_submit.php in ATutor AContent 1.2-1 allows remote authenticated users to execute arbitrary SQL commands via the field parameter. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-5167.

    Source:High-Tech Bridge SA
    Published:22 Oct 2012
    4.3
    Medium

    CVE-2012-5452

    Last Modified: 22 Oct 2012

    Multiple cross-site scripting (XSS) vulnerabilities in Subrion CMS 2.2.1 allow remote attackers to inject arbitrary web script or HTML via the (1) multi_title parameter to blocks/add/; (2) cost, (3) days, or (4) title[en] parameter to plans/add/; (5) name or (6) title[en] parameter to fields/group/add/ in admin/manage/; or (7) f[accounts][fullname] or (8) f[accounts][username] parameter to advsearch/. NOTE: This might overlap CVE-2011-5211. NOTE: it was later reported that the f[accounts][fullname] and f[accounts][username] vectors might also affect 2.2.2.

    Source:High-Tech Bridge SA
    Published:22 Oct 2012
    5
    Medium

    CVE-2012-5451

    Last Modified: 9 Dec 2012

    Multiple stack-based buffer overflows in HttpUtils.dll in TVMOBiLi before 2.1.0.3974 allow remote attackers to cause a denial of service (tvMobiliService service crash) via a long string in a (1) GET or (2) HEAD request to TCP port 30888.

    Source:High-Tech Bridge SA
    Published:24 Apr 2015
    10
    Critical

    CVE-2012-5409

    Last Modified: 1 Nov 2012

    AscoServer.exe in the server in Siemens SiPass integrated MP2.6 and earlier does not properly handle IOCP RPC messages received over an Ethernet network, which allows remote attackers to write data to any memory location and consequently execute arbitrary code via crafted messages, as demonstrated by an arbitrary pointer dereference attack or a buffer overflow attack.

    Source:Lucas Apa
    Published:1 Nov 2012
    3.5
    Low

    CVE-2012-5388

    Last Modified: 26 Sept 2016

    Cross-site scripting (XSS) vulnerability in wlcms-plugin.php in the White Label CMS plugin 1.5 for WordPress allows remote authenticated administrators to inject arbitrary web script or HTML via the wlcms_o_developer_name parameter in a save action to wp-admin/admin.php, a related issue to CVE-2012-5387.

    Source:pcsjj
    Published:24 Oct 2012
    6.8
    Medium

    CVE-2012-5387

    Last Modified: 26 Sept 2016

    Cross-site request forgery (CSRF) vulnerability in wlcms-plugin.php in the White Label CMS plugin before 1.5.1 for WordPress allows remote attackers to hijack the authentication of administrators for requests that modify the developer name via the wlcms_o_developer_name parameter in a save action to wp-admin/admin.php, as demonstrated by a developer name containing XSS sequences.

    Source:pcsjj
    Published:24 Oct 2012
    6.8
    Medium

    CVE-2012-5386

    Last Modified: 4 Apr 2012

    Directory traversal vulnerability in index.php in phpPaleo 4.8b180 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the phppaleo4_lang cookie, a different vulnerability than CVE-2012-1671. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.

    Source:Mark Stanislav
    Published:11 Oct 2012
    6.2
    Medium

    CVE-2012-5383

    Last Modified: 6 Sept 2013

    Untrusted search path vulnerability in the installation functionality in Oracle MySQL 5.5.28, when installed in the top-level C:\ directory, might allow local users to gain privileges via a Trojan horse DLL in the "C:\MySQL\MySQL Server 5.5\bin" directory, which may be added to the PATH system environment variable by an administrator, as demonstrated by a Trojan horse wlbsctrl.dll file used by the "IKE and AuthIP IPsec Keying Modules" system service in Windows Vista SP1, Windows Server 2008 SP2, Windows 7 SP1, and Windows 8 Release Preview. NOTE: CVE disputes this issue because the unsafe PATH is established only by a separate administrative action that is not a default part of the MySQL installation

    Source:Metasploit
    Published:11 Oct 2012
    6
    Medium

    CVE-2012-5382

    Last Modified: 6 Sept 2013

    Untrusted search path vulnerability in the installation functionality in Zend Server 5.6.0 SP4, when installed in the top-level C:\ directory, might allow local users to gain privileges via a Trojan horse DLL in the C:\Zend\ZendServer\share\ZendFramework\bin directory, which may be added to the PATH system environment variable by an administrator, as demonstrated by a Trojan horse wlbsctrl.dll file used by the "IKE and AuthIP IPsec Keying Modules" system service in Windows Vista SP1, Windows Server 2008 SP2, Windows 7 SP1, and Windows 8 Release Preview. NOTE: CVE disputes this issue because the choice of C:\ (and the resulting unsafe PATH) is established by an administrative action that is not a default part of the Zend Server installation

    Source:Metasploit
    Published:11 Oct 2012
    6
    Medium

    CVE-2012-5381

    Last Modified: 6 Sept 2013

    Untrusted search path vulnerability in the installation functionality in PHP 5.3.17, when installed in the top-level C:\ directory, might allow local users to gain privileges via a Trojan horse DLL in the C:\PHP directory, which may be added to the PATH system environment variable by an administrator, as demonstrated by a Trojan horse wlbsctrl.dll file used by the "IKE and AuthIP IPsec Keying Modules" system service in Windows Vista SP1, Windows Server 2008 SP2, Windows 7 SP1, and Windows 8 Release Preview. NOTE: CVE disputes this issue because the unsafe PATH is established only by a separate administrative action that is not a default part of the PHP installation

    Source:Metasploit
    Published:11 Oct 2012
    6.7
    Medium

    CVE-2012-5380

    Last Modified: 6 Sept 2013

    Untrusted search path vulnerability in the installation functionality in Ruby 1.9.3-p194, when installed in the top-level C:\ directory, might allow local users to gain privileges via a Trojan horse DLL in the C:\Ruby193\bin directory, which may be added to the PATH system environment variable by an administrator, as demonstrated by a Trojan horse wlbsctrl.dll file used by the "IKE and AuthIP IPsec Keying Modules" system service in Windows Vista SP1, Windows Server 2008 SP2, Windows 7 SP1, and Windows 8 Release Preview. NOTE: CVE disputes this issue because the unsafe PATH is established only by a separate administrative action that is not a default part of the Ruby installation

    Source:Metasploit
    Published:11 Oct 2012
    7.3
    High

    CVE-2012-5379

    Last Modified: 6 Sept 2013

    Untrusted search path vulnerability in the installation functionality in ActivePython 3.2.2.3, when installed in the top-level C:\ directory, might allow local users to gain privileges via a Trojan horse DLL in the C:\Python27 or C:\Python27\Scripts directory, which may be added to the PATH system environment variable by an administrator, as demonstrated by a Trojan horse wlbsctrl.dll file used by the "IKE and AuthIP IPsec Keying Modules" system service in Windows Vista SP1, Windows Server 2008 SP2, Windows 7 SP1, and Windows 8 Release Preview. NOTE: CVE disputes this issue because the unsafe PATH is established only by a separate administrative action that is not a default part of the ActivePython installation

    Source:Metasploit
    Published:11 Oct 2012
    6
    Medium

    CVE-2012-5378

    Last Modified: 6 Sept 2013

    Untrusted search path vulnerability in the installation functionality in ActiveTcl 8.5.12, when installed in the top-level C:\ directory, allows local users to gain privileges via a Trojan horse DLL in the C:\TD\bin directory, which is added to the PATH system environment variable, as demonstrated by a Trojan horse wlbsctrl.dll file used by the "IKE and AuthIP IPsec Keying Modules" system service in Windows Vista SP1, Windows Server 2008 SP2, Windows 7 SP1, and Windows 8 Release Preview.

    Source:Metasploit
    Published:11 Oct 2012
    6
    Medium

    CVE-2012-5377

    Last Modified: 6 Sept 2013

    Untrusted search path vulnerability in the installation functionality in ActivePerl 5.16.1.1601, when installed in the top-level C:\ directory, allows local users to gain privileges via a Trojan horse DLL in the C:\Perl\Site\bin directory, which is added to the PATH system environment variable, as demonstrated by a Trojan horse wlbsctrl.dll file used by the "IKE and AuthIP IPsec Keying Modules" system service in Windows Vista SP1, Windows Server 2008 SP2, Windows 7 SP1, and Windows 8 Release Preview.

    Source:Metasploit
    Published:11 Oct 2012
    4
    Medium

    CVE-2012-5375

    Last Modified: 10 Sept 2015

    The CRC32C feature in the Btrfs implementation in the Linux kernel before 3.8-rc1 allows local users to cause a denial of service (prevention of file creation) by leveraging the ability to write to a directory important to the victim, and creating a file with a crafted name that is associated with a specific CRC32C hash value.

    Source:Pascal Junod
    Published:13 Dec 2012
    6
    Medium

    CVE-2012-5367

    Last Modified: 29 Aug 2015

    Multiple SQL injection vulnerabilities in OrangeHRM 2.7.1 RC 1 allow remote authenticated administrators to execute arbitrary SQL commands via the sortField parameter to (1) viewCustomers, (2) viewPayGrades, or (3) viewSystemUsers in symfony/web/index.php/admin/, as demonstrated using cross-site request forgery (CSRF) attacks.

    Source:High-Tech Bridge
    Published:3 Dec 2012
    9.8
    Critical

    CVE-2012-5357

    Last Modified: 5 Dec 2012

    Ektron Content Management System (CMS) before 8.02 SP5 uses the XslCompiledTransform class with enablescript set to true, which allows remote attackers to execute arbitrary code with NETWORK SERVICE privileges via crafted XSL data.

    Source:Metasploit
    Published:30 Oct 2017
    6
    Medium

    CVE-2012-5350

    Last Modified: 6 Jan 2012

    SQL injection vulnerability in the Pay With Tweet plugin before 1.2 for WordPress allows remote authenticated users with certain permissions to execute arbitrary SQL commands via the id parameter in a paywithtweet shortcode.

    Source:Gianluca Brindisi
    Published:9 Oct 2012
    2.6
    Low

    CVE-2012-5349

    Last Modified: 6 Jan 2012

    Multiple cross-site scripting (XSS) vulnerabilities in pay.php in the Pay With Tweet plugin before 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) link, (2) title, or (3) dl parameter.

    Source:Gianluca Brindisi
    Published:9 Oct 2012
    6.8
    Medium

    CVE-2012-5348

    Last Modified: 8 Jan 2012

    SQL injection vulnerability in MangosWeb Enhanced 3.0.3 allows remote attackers to execute arbitrary SQL commands via the login parameter in a login action to index.php.

    Source:Hood3dRob1n
    Published:9 Oct 2012
    7.5
    High

    CVE-2012-5347

    Last Modified: 6 Jan 2012

    TinyWebGallery 1.8.3 allows remote attackers to execute arbitrary code via shell metacharacters in the command parameter to (1) inc/filefunctions.inc or (2) info.php.

    Source:Expl0!Ts
    Published:9 Oct 2012
    4.3
    Medium

    CVE-2012-5346

    Last Modified: 25 Mar 2015

    Cross-site scripting (XSS) vulnerability in wp-live.php in the WP Live.php module 1.2.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter. NOTE: some of these details are obtained from third party information.

    Source:H4ckCity Security Team
    Published:9 Oct 2012
    5
    Medium

    CVE-2012-5345

    Last Modified: 27 Mar 2015

    Buffer overflow in the Remote command server (Rcmd.bat) in IpTools (aka Tiny TCP/IP server) 0.1.4 allows remote attackers to cause a denial of service (crash) via a long string to TCP port 23.

    Source:demonalex
    Published:9 Oct 2012
    5
    Medium

    CVE-2012-5344

    Last Modified: 27 Mar 2015

    Directory traversal vulnerability in the WebServer (Thttpd.bat) in IpTools (aka Tiny TCP/IP server) 0.1.4 allows remote attackers to read arbitrary files via a .. (dot dot) in a HTTP request.

    Source:demonalex
    Published:9 Oct 2012
    4.3
    Medium

    CVE-2012-5343

    Last Modified: 26 Mar 2015

    Cross-site scripting (XSS) vulnerability in admin/login.php in Limny 3.0.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO, related to the "PHP_SELF" variable.

    Source:Gjoko Krstic
    Published:9 Oct 2012
    7.5
    High

    CVE-2012-5342

    Last Modified: 22 Aug 2015

    Multiple SQL injection vulnerabilities in SenseSites CommonSense CMS allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) special.php, (2) article.php, or (3) cat2.php.

    Source:H4ckCity Security Team
    Published:9 Oct 2012
    4.3
    Medium

    CVE-2012-5341

    Last Modified: 26 Mar 2015

    Multiple cross-site scripting (XSS) vulnerabilities in statistik.php in Otterware StatIt 4 allow remote attackers to inject arbitrary web script or HTML via the (1) action parameter, (2) show parameter in a stat_tld action, or (3) order parameter in a stat_abfragen action.

    Source:sonyy
    Published:9 Oct 2012
    7.8
    High

    CVE-2012-5340

    Last Modified: 9 Dec 2012

    SumatraPDF 2.1.1/MuPDF 1.0 allows remote attackers to cause an Integer Overflow in the lex_number() function via a corrupt PDF file.

    Source:beford
    Published:23 Jan 2020
    4.3
    Medium

    CVE-2012-5337

    Last Modified: 28 Sept 2015

    Multiple cross-site scripting (XSS) vulnerabilities in jforum.page in JForum 2.1.9 allow remote attackers to inject arbitrary web script or HTML via the (1) action, (2) match_type, (3) sort_by, or (4) start parameters.

    Source:ZeroDayLab
    Published:24 Feb 2013