10
    Critical

    CVE-2012-3575

    Last Modified: 8 Jun 2012

    Unrestricted file upload vulnerability in uploader.php in the RBX Gallery plugin 2.1 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in uploads/rbxslider.

    Source:Sammy FORGIT
    Published:16 Jun 2012
    7.5
    High

    CVE-2012-3574

    Last Modified: 7 Jun 2012

    Unrestricted file upload vulnerability in includes/doajaxfileupload.php in the MM Forms Community plugin 2.2.5 and 2.2.6 for WordPress allows remote attackers to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in upload/temp.

    Source:Sammy FORGIT
    Published:16 Jun 2012
    6.1
    Medium

    CVE-2012-3571

    Last Modified: 9 Jul 2015

    ISC DHCP 4.1.2 through 4.2.4 and 4.1-ESV before 4.1-ESV-R6 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a malformed client identifier.

    Source:Markus Hietava
    Published:24 Jul 2012
    9.3
    Critical

    CVE-2012-3569

    Last Modified: 18 Nov 2016

    Format string vulnerability in VMware OVF Tool 2.1 on Windows, as used in VMware Workstation 8.x before 8.0.5, VMware Player 4.x before 4.0.5, and other products, allows user-assisted remote attackers to execute arbitrary code via a crafted OVF file.

    Source:Metasploit
    Published:14 Nov 2012
    4.3
    Medium

    CVE-2012-3551

    Last Modified: 24 Jul 2015

    Cross-site scripting (XSS) vulnerability in crowbar_framework/app/views/support/index.html.haml in the Crowbar barclamp in Crowbar, possibly 1.4 and earlier, allows remote attackers to inject arbitrary web script or HTML via the file parameter to /utils.

    Source:Matthias Weckbecker
    Published:5 Sept 2012
    7.8
    High

    CVE-2012-3549

    Last Modified: 3 Aug 2012

    The SCTP implementation in FreeBSD 8.2 allows remote attackers to cause a denial of service (NULL pointer dereference and kernel panic) via a crafted ASCONF chunk.

    Source:Shaun Colley
    Published:9 Oct 2012
    Low

    CVE-2012-3539

    Last Modified: 27 Aug 2012

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-4681. Reason: This candidate is a duplicate of CVE-2012-4681. Notes: All CVE users should reference CVE-2012-4681 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:Metasploit
    Published:28 Aug 2012
    6.9
    Medium

    CVE-2012-3524

    Last Modified: 14 Sept 2012

    libdbus 1.5.x and earlier, when used in setuid or other privileged programs in X.org and possibly other products, allows local users to gain privileges and execute arbitrary code via the DBUS_SYSTEM_BUS_ADDRESS environment variable. NOTE: libdbus maintainers state that this is a vulnerability in the applications that do not cleanse environment variables, not in libdbus itself: "we do not support use of libdbus in setuid binaries that do not sanitize their environment before their first call into libdbus."

    Source:Sebastian Krahmer
    Published:12 Sept 2012
    4.3
    Medium

    CVE-2012-3508

    Last Modified: 16 Aug 2012

    Cross-site scripting (XSS) vulnerability in program/lib/washtml.php in Roundcube Webmail 0.8.0 allows remote attackers to inject arbitrary web script or HTML by using "javascript:" in an href attribute in the body of an HTML-formatted email.

    Source:Shai rod
    Published:25 Aug 2012
    7.2
    High

    CVE-2012-3485

    Last Modified: 11 Aug 2012

    Tunnelblick 3.3beta20 and earlier relies on argv[0] to determine the name of an appropriate (1) kernel module pathname or (2) executable file pathname, which allows local users to gain privileges via an execl system call.

    Source:zx2c4
    Published:26 Aug 2012
    6.2
    Medium

    CVE-2012-3483

    Last Modified: 11 Aug 2012

    Race condition in the runScript function in Tunnelblick 3.3beta20 and earlier allows local users to gain privileges by replacing a script file.

    Source:zx2c4
    Published:26 Aug 2012
    4.6
    Medium

    CVE-2012-3480

    Last Modified: 18 Jul 2015

    Multiple integer overflows in the (1) strtod, (2) strtof, (3) strtold, (4) strtod_l, and other unspecified "related functions" in stdlib in GNU C Library (aka glibc or libc6) 2.16 allow local users to cause a denial of service (application crash) and possibly execute arbitrary code via a long string, which triggers a stack-based buffer overflow.

    Source:Joseph S. Myer
    Published:12 Aug 2012
    7.5
    High

    CVE-2012-3456

    Last Modified: 13 Jul 2015

    Heap-based buffer overflow in the read function in filters/words/msword-odf/wv2/src/styles.cpp in the Microsoft import filter in Calligra 2.4.3 and earlier allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted ODF style in an ODF document. NOTE: this is the same vulnerability as CVE-2012-3455, but it was SPLIT by the CNA even though Calligra and KOffice share the same codebase.

    Source:Charlie Miller
    Published:20 Aug 2012
    2.6
    Low

    CVE-2012-3450

    Last Modified: 11 Jul 2015

    pdo_sql_parser.re in the PDO extension in PHP before 5.3.14 and 5.4.x before 5.4.4 does not properly determine the end of the query string during parsing of prepared statements, which allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted parameter value.

    Source:0x721427D8
    Published:10 Jun 2012
    7.5
    High

    CVE-2012-3448

    Last Modified: 31 Aug 2015

    Unspecified vulnerability in Ganglia Web before 3.5.1 allows remote attackers to execute arbitrary PHP code via unknown attack vectors.

    Source:Andrei Costin
    Published:6 Aug 2012
    7.5
    High

    CVE-2012-3435

    Last Modified: 24 Jul 2012

    SQL injection vulnerability in frontends/php/popup_bitem.php in Zabbix 1.8.15rc1 and earlier, and 2.x before 2.0.2rc1, allows remote attackers to execute arbitrary SQL commands via the itemid parameter.

    Source:muts
    Published:15 Aug 2012
    2.1
    Low

    CVE-2012-3430

    Last Modified: 6 Sept 2016

    The rds_recvmsg function in net/rds/recv.c in the Linux kernel before 3.0.44 does not initialize a certain structure member, which allows local users to obtain potentially sensitive information from kernel stack memory via a (1) recvfrom or (2) recvmsg system call on an RDS socket.

    Source:Jay Fenlason
    Published:23 Jul 2012
    4.3
    Medium

    CVE-2012-3414

    Last Modified: 3 Jul 2015

    Cross-site scripting (XSS) vulnerability in swfupload.swf in SWFUpload 2.2.0.1 and earlier, as used in WordPress before 3.3.2, TinyMCE Image Manager 1.1, and other products, allows remote attackers to inject arbitrary web script or HTML via the movieName parameter, related to the "ExternalInterface.call" function.

    Source:Nathan Partlan
    Published:19 Jul 2013
    7.5
    High

    CVE-2012-3399

    Last Modified: 9 Jul 2012

    Config/diff.php in Basilic 1.5.14 allows remote attackers to execute arbitrary commands via shell metacharacters in the file parameter.

    Source:Metasploit
    Published:12 Jul 2012
    4.9
    Medium

    CVE-2012-3375

    Last Modified: 4 Sept 2016

    The epoll_ctl system call in fs/eventpoll.c in the Linux kernel before 3.2.24 does not properly handle ELOOP errors in EPOLL_CTL_ADD operations, which allows local users to cause a denial of service (file-descriptor consumption and system crash) via a crafted application that attempts to create a circular epoll dependency. NOTE: this vulnerability exists because of an incorrect fix for CVE-2011-1083.

    Source:Yurij M. Plotnikov
    Published:27 Mar 2012
    9.1
    Critical

    CVE-2012-3363

    Last Modified: 31 Dec 2016

    Zend_XmlRpc in Zend Framework 1.x before 1.11.12 and 1.12.x before 1.12.0 does not properly handle SimpleXMLElement classes, which allows remote attackers to read arbitrary files or create TCP connections via an external entity reference in a DOCTYPE element in an XML-RPC request, aka an XML external entity (XXE) injection attack.

    Source:SEC Consult
    Published:13 Feb 2013
    6.1
    Medium

    CVE-2012-3351

    Last Modified: 10 Jul 2015

    Multiple cross-site scripting (XSS) vulnerabilities in LongTail Video JW Player through 5.10.2295 allow remote attackers to inject arbitrary web script or HTML via the (1) link, (2) logo.link, or (3) aboutlink parameter, or a nested URI scheme name for (4) javascript, (5) asfunction, or (6) vbscript.

    Source:MustLive
    Published:20 Feb 2020
    6.8
    Medium

    CVE-2012-3350

    Last Modified: 6 Jul 2012

    SQL injection vulnerability in index.php in Webmatic 3.1.1 allows remote attackers to execute arbitrary SQL commands via the Referer HTTP header.

    Source:High-Tech Bridge SA
    Published:12 Jul 2012
    6.8
    Medium

    CVE-2012-3294

    Last Modified: 13 Aug 2012

    Multiple cross-site request forgery (CSRF) vulnerabilities in the Web Gateway component in IBM WebSphere MQ File Transfer Edition 7.0.4 and earlier, and WebSphere MQ - Managed File Transfer 7.5, allow remote attackers to hijack the authentication of arbitrary users for requests that (1) add user accounts via the /wmqfteconsole/Filespaces URI, (2) modify permissions via the /wmqfteconsole/FileSpacePermisssions URI, or (3) add MQ Message Descriptor (MQMD) user accounts via the /wmqfteconsole/UploadUsers URI.

    Source:Nir Valtman
    Published:17 Aug 2012
    10
    Critical

    CVE-2012-3282

    Last Modified: 13 Aug 2013

    Unspecified vulnerability on the HP LeftHand Virtual SAN Appliance hydra with software before 10.0 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1468.

    Source:Metasploit
    Published:6 Feb 2013
    10
    Critical

    CVE-2012-3274

    Last Modified: 23 Mar 2017

    Stack-based buffer overflow in uam.exe in the User Access Manager (UAM) component in HP Intelligent Management Center (IMC) before 5.1 E0101P01 allows remote attackers to execute arbitrary code via vectors related to log data.

    Source:Metasploit
    Published:6 Dec 2012
    4.3
    Medium

    CVE-2012-3236

    Last Modified: 30 Jun 2012

    fits-io.c in GIMP before 2.8.1 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a malformed XTENSION header of a .fit file, as demonstrated using a long string.

    Source:Joseph Sheridan
    Published:29 Jun 2012
    4.3
    Medium

    CVE-2012-3233

    Last Modified: 27 Jul 2015

    Cross-site scripting (XSS) vulnerability in __swift/thirdparty/PHPExcel/PHPExcel/Shared/JAMA/docs/download.php in Kayako Fusion 4.40.1148, and possibly before 4.50.1581, allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO.

    Source:High-Tech Bridge
    Published:15 Sept 2012
    4.3
    Medium

    CVE-2012-3232

    Last Modified: 30 Jun 2015

    Cross-site scripting (XSS) vulnerability in search.php in web@all 2.0, as downloaded before May 30, 2012, allows remote attackers to inject arbitrary web script or HTML via the _text[title] parameter.

    Source:High-Tech Bridge
    Published:29 Jun 2012
    2.1
    Low

    CVE-2012-3221

    Last Modified: 15 Nov 2017

    Unspecified vulnerability in the Oracle VM Virtual Box component in Oracle Virtualization 3.2, 4.0, and 4.1 allows local users to affect availability via unknown vectors related to VirtualBox Core. NOTE: The previous information was obtained from the October 2012 CPU. Oracle has not commented on claims from another vendor that this issue is related to "incorrect interrupt handling."

    Source:halfdog
    Published:17 Oct 2012
    4.9
    Medium

    CVE-2012-3186

    Last Modified: 17 Oct 2012

    Unspecified vulnerability in the Oracle WebCenter Sites component in Oracle Fusion Middleware 6.1, 6.2, 6.3.x, 7, 7.0.1, 7.0.2, 7.0.3, 7.5, 7.6.1, 7.6.2, and 11.1.1.6.0 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Advanced UI, a different vulnerability than CVE-2012-3183 and CVE-2012-3185.

    Source:SEC Consult
    Published:17 Oct 2012
    4.9
    Medium

    CVE-2012-3185

    Last Modified: 17 Oct 2012

    Unspecified vulnerability in the Oracle WebCenter Sites component in Oracle Fusion Middleware 6.1, 6.2, 6.3.x, 7, 7.0.1, 7.0.2, 7.0.3, 7.5, 7.6.1, 7.6.2, and 11.1.1.6.0 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Advanced UI, a different vulnerability than CVE-2012-3183 and CVE-2012-3186.

    Source:SEC Consult
    Published:17 Oct 2012
    4.3
    Medium

    CVE-2012-3184

    Last Modified: 17 Oct 2012

    Unspecified vulnerability in the Oracle WebCenter Sites component in Oracle Fusion Middleware 6.1, 6.2, 6.3.x, 7, 7.0.1, 7.0.2, 7.0.3, 7.5, 7.6.1, 7.6.2, and 11.1.1.6.0 allows remote attackers to affect integrity via unknown vectors related to Advanced UI.

    Source:SEC Consult
    Published:17 Oct 2012
    4.9
    Medium

    CVE-2012-3183

    Last Modified: 17 Oct 2012

    Unspecified vulnerability in the Oracle WebCenter Sites component in Oracle Fusion Middleware 6.1, 6.2, 6.3.x, 7, 7.0.1, 7.0.2, 7.0.3, 7.5, 7.6.1, 7.6.2, and 11.1.1.6.0 allows remote authenticated users to affect confidentiality and integrity via unknown vectors related to Advanced UI, a different vulnerability than CVE-2012-3185 and CVE-2012-3186.

    Source:SEC Consult
    Published:17 Oct 2012
    6.4
    Medium

    CVE-2012-3153

    Last Modified: 16 Nov 2017

    Unspecified vulnerability in the Oracle Reports Developer component in Oracle Fusion Middleware 11.1.1.4, 11.1.1.6, and 11.1.2.0 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Servlet. NOTE: the previous information is from the October 2012 CPU. Oracle has not commented on claims from the original researcher that the PARSEQUERY function allows remote attackers to obtain database credentials via reports/rwservlet/parsequery, and that this issue occurs in earlier versions. NOTE: this can be leveraged with CVE-2012-3152 to execute arbitrary code by uploading a .jsp file.

    Source:Mekanismen
    Published:16 Oct 2012
    9.1
    Critical

    CVE-2012-3152

    Last Modified: 16 Nov 2017

    Unspecified vulnerability in the Oracle Reports Developer component in Oracle Fusion Middleware 11.1.1.4, 11.1.1.6, and 11.1.2.0 allows remote attackers to affect confidentiality and integrity via unknown vectors related to Report Server Component. NOTE: the previous information is from the October 2012 CPU. Oracle has not commented on claims from the original researcher that the URLPARAMETER functionality allows remote attackers to read and upload arbitrary files to reports/rwservlet, and that this issue occurs in earlier versions. NOTE: this can be leveraged with CVE-2012-3153 to execute arbitrary code by uploading a .jsp file.

    Source:Mekanismen
    Published:16 Oct 2012
    6.4
    Medium

    CVE-2012-3137

    Last Modified: 12 Nov 2016

    The authentication protocol in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote attackers to obtain the session key and salt for arbitrary users, which leaks information about the cryptographic hash and makes it easier to conduct brute force password guessing attacks, aka "stealth password cracking vulnerability."

    Source:Esteban Martinez Fayo
    Published:21 Sept 2012
    8.5
    High

    CVE-2012-3001

    Last Modified: 25 Mar 2013

    Mutiny Standard before 4.5-1.12 allows remote attackers to execute arbitrary commands via the network-interface menu, related to a "command injection vulnerability."

    Source:Metasploit
    Published:22 Oct 2012
    7.5
    High

    CVE-2012-2998

    Last Modified: 27 Sept 2012

    SQL injection vulnerability in the ad hoc query module in Trend Micro Control Manager (TMCM) before 5.5.0.1823 and 6.0 before 6.0.0.1449 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Source:otoy
    Published:28 Sept 2012
    4
    Medium

    CVE-2012-2997

    Last Modified: 18 Sept 2015

    XML External Entity (XXE) vulnerability in sam/admin/vpe2/public/php/server.php in F5 BIG-IP 10.0.0 through 10.2.4 and 11.0.0 through 11.2.1 allows remote authenticated users to read arbitrary files via a crafted XML file.

    Source:anonymous
    Published:21 Jan 2014
    6.8
    Medium

    CVE-2012-2996

    Last Modified: 14 Sept 2012

    Cross-site request forgery (CSRF) vulnerability in saveAccountSubTab.imss in Trend Micro InterScan Messaging Security Suite 7.1-Build_Win32_1394 allows remote attackers to hijack the authentication of administrators for requests that create admin accounts via a saveAuth action.

    Source:modpr0be
    Published:17 Sept 2012
    4.3
    Medium

    CVE-2012-2995

    Last Modified: 14 Sept 2012

    Multiple cross-site scripting (XSS) vulnerabilities in Trend Micro InterScan Messaging Security Suite 7.1-Build_Win32_1394 allow remote attackers to inject arbitrary web script or HTML via (1) the wrsApprovedURL parameter to addRuleAttrWrsApproveUrl.imss or (2) the src parameter to initUpdSchPage.imss.

    Source:modpr0be
    Published:17 Sept 2012
    7.5
    High

    CVE-2012-2994

    Last Modified: 17 Aug 2015

    The CoSoSys Endpoint Protector 4 appliance establishes an EPProot password based entirely on the appliance serial number, which makes it easier for remote attackers to obtain access via a brute-force attack.

    Source:Christopher Campbell
    Published:18 Sept 2012
    7.7
    High

    CVE-2012-2986

    Last Modified: 21 May 2012

    lhn/public/network/ping in HP SAN/iQ 9.5 on the HP Virtual SAN Appliance allows remote authenticated users to execute arbitrary commands via shell metacharacters in the (1) first, (2) third, or (3) fourth parameter. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-4361.

    Source:Metasploit
    Published:20 Aug 2012
    4.3
    Medium

    CVE-2012-2984

    Last Modified: 23 Jul 2015

    Multiple cross-site scripting (XSS) vulnerabilities in monitor/m_overview.ink in Websense Content Gateway before 7.7.3 allow remote attackers to inject arbitrary web script or HTML via the (1) menu or (2) item parameter.

    Source:Steven Sim Kok Leong
    Published:24 Aug 2012
    6.5
    Medium

    CVE-2012-2982

    Last Modified: 10 Oct 2012

    file/show.cgi in Webmin 1.590 and earlier allows remote authenticated users to execute arbitrary commands via an invalid character in a pathname, as demonstrated by a | (pipe) character.

    Source:Metasploit
    Published:11 Sept 2012
    5
    Medium

    CVE-2012-2977

    Last Modified: 21 Aug 2012

    The management console in Symantec Web Gateway 5.0.x before 5.0.3.18 allows remote attackers to change arbitrary passwords via crafted input to an application script.

    Source:Kc57
    Published:23 Jul 2012
    6.5
    Medium

    CVE-2012-2962

    Last Modified: 25 May 2017

    SQL injection vulnerability in d4d/statusFilter.php in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) before 9.5.2 allows remote authenticated users to execute arbitrary SQL commands via the q parameter.

    Source:muts
    Published:30 Jul 2012
    7.5
    High

    CVE-2012-2961

    Last Modified: 23 Jul 2012

    SQL injection vulnerability in the management console in Symantec Web Gateway 5.0.x before 5.0.3.18 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.

    Source:muts
    Published:23 Jul 2012
    5.1
    Medium

    CVE-2012-2959

    Last Modified: 25 Jun 2015

    Cross-site request forgery (CSRF) vulnerability in password-manager/changePasswords.do in BMC Identity Management Suite 7.5.00.103 allows remote attackers to hijack the authentication of administrators for requests that change passwords.

    Source:Travis Lee
    Published:11 Jun 2012