9.3
    Critical

    CVE-2012-2288

    Last Modified: 7 Nov 2012

    Format string vulnerability in the nsrd RPC service in EMC NetWorker 7.6.3 and 7.6.4 before 7.6.4.1, and 8.0 before 8.0.0.1, allows remote attackers to execute arbitrary code via format string specifiers in a message.

    Source:Metasploit
    Published:4 Sept 2012
    7.8
    High

    CVE-2012-2277

    Last Modified: 12 Apr 2012

    The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5.0.1030 allows remote attackers to cause a denial of service (pvcontrol.exe process hang) via \n (line feed) characters in the Id fields of many "batch begin untethered" commands.

    Source:Luigi Auriemma
    Published:14 May 2012
    7.8
    High

    CVE-2012-2276

    Last Modified: 12 Apr 2012

    The IRM Server in EMC Documentum Information Rights Management 4.x before 4.7.0100 and 5.x before 5.0.1030 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via input data that (1) lacks FIPS fields or (2) has an invalid version number.

    Source:Luigi Auriemma
    Published:14 May 2012
    6.8
    Medium

    CVE-2012-2275

    Last Modified: 7 Sept 2012

    Multiple cross-site request forgery (CSRF) vulnerabilities in TestLink 1.9.3 and earlier allow remote attackers to hijack the authentication of users for requests that add, delete, or modify sensitive information, as demonstrated by changing the administrator's email via an editUser action to lib/usermanagement/userInfo.php.

    Source:High-Tech Bridge SA
    Published:15 Sept 2012
    4.3
    Medium

    CVE-2012-2274

    Last Modified: 29 May 2015

    Cross-site scripting (XSS) vulnerability in pivotx/ajaxhelper.php in PivotX 2.3.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the file parameter.

    Source:High-Tech Bridge SA
    Published:13 Aug 2012
    10
    Critical

    CVE-2012-2271

    Last Modified: 19 May 2012

    Buffer overflow in the InitLicenKeys function in a certain ActiveX control in SkinCrafter3_vs2005.dll in SkinCrafter 3.0 allows remote attackers to execute arbitrary code via a long string in the first argument (aka the reg_name argument).

    Source:saurabh sharma
    Published:21 May 2012
    5.8
    Medium

    CVE-2012-2270

    Last Modified: 24 May 2015

    Open redirect vulnerability in index.php (aka the Login Page) in ownCloud before 3.0.3 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the redirect_url parameter.

    Source:Tobias Glemser
    Published:20 Apr 2012
    6.1
    Medium

    CVE-2012-2237

    Last Modified: 11 Jul 2015

    Multiple cross-site scripting (XSS) vulnerabilities in Mahara 1.4.x before 1.4.3 and 1.5.x before 1.5.2 allow remote attackers to inject arbitrary web script or HTML via vectors related to (1) javascript innerHTML as used when generating login forms, (2) links or (3) resources URLs, and (4) the Display name in a user profile.

    Source:anonymous
    Published:13 Nov 2019
    6.5
    Medium

    CVE-2012-2236

    Last Modified: 16 Mar 2012

    SQL injection vulnerability in users.php in PHP Gift Registry 1.5.5 allows remote authenticated users to execute arbitrary SQL commands via the userid parameter in an edit action.

    Source:G13
    Published:20 Apr 2012
    4.3
    Medium

    CVE-2012-2234

    Last Modified: 22 May 2015

    Cross-site scripting (XSS) vulnerability in sources/users.queries.php in TeamPass before 2.1.6 allows remote authenticated users to inject arbitrary web script or HTML via the login parameter in an add_new_user action.

    Source:Marcos Garcia
    Published:22 Apr 2012
    7.5
    High

    CVE-2012-2227

    Last Modified: 3 May 2012

    Directory traversal vulnerability in update/index.php in PluXml before 5.1.6 allows remote attackers to include and execute arbitrary local files via a ..%2F (encoded dot dot slash) in the default_lang parameter.

    Source:High-Tech Bridge SA
    Published:26 Aug 2012
    9.8
    Critical

    CVE-2012-2226

    Last Modified: 13 Apr 2012

    Invision Power Board before 3.3.1 fails to sanitize user-supplied input which could allow remote attackers to obtain sensitive information or execute arbitrary code by uploading a malicious file.

    Source:waraxe
    Published:9 Jan 2020
    Low

    CVE-2012-2216

    Last Modified: 25 May 2012

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2012-6720 and CVE-2012-6721. Reason: this candidate was intended for one issue, but the description and references inadvertently combined multiple issues. Notes: All CVE users should consult CVE-2012-6720 and CVE-2012-6721 to determine which ID is appropriate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:i4k
    Published:11 Feb 2020
    7.8
    High

    CVE-2012-2210

    Last Modified: 5 Apr 2012

    The Sony Bravia TV KDL-32CX525 allows remote attackers to cause a denial of service (configuration outage or device crash) via a flood of TCP SYN packets, as demonstrated by hping, a related issue to CVE-1999-0116.

    Source:Gabriel Menezes Nunes
    Published:11 Apr 2012
    4.3
    Medium

    CVE-2012-2209

    Last Modified: 25 Apr 2012

    Multiple cross-site scripting (XSS) vulnerabilities in admin.php in Piwigo before 2.3.4 allow remote attackers to inject arbitrary web script or HTML via the (1) section parameter in the configuration module, (2) installstatus parameter in the languages_new module, or (3) theme parameter in the theme module.

    Source:High-Tech Bridge SA
    Published:14 Aug 2012
    7.5
    High

    CVE-2012-2208

    Last Modified: 25 Apr 2012

    Directory traversal vulnerability in upgrade.php in Piwigo before 2.3.4 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the language parameter.

    Source:High-Tech Bridge SA
    Published:14 Aug 2012
    3.5
    Low

    CVE-2012-2206

    Last Modified: 13 Aug 2012

    The Web Gateway component in IBM WebSphere MQ File Transfer Edition 7.0.4 and earlier allows remote authenticated users to read files of arbitrary users via vectors involving a username in a URI, as demonstrated by a modified metadata=fteSamplesUser field to the /transfer URI.

    Source:Nir Valtman
    Published:17 Aug 2012
    3.5
    Low

    CVE-2012-2202

    Last Modified: 8 Aug 2012

    Directory traversal vulnerability in javatester_init.php in IBM Lotus Protector for Mail Security 2.1, 2.5, 2.5.1, and 2.8 and IBM ISS Proventia Network Mail Security System allows remote authenticated administrators to read arbitrary files via a .. (dot dot) in the template parameter.

    Source:muts
    Published:27 Jul 2012
    6.9
    Medium

    CVE-2012-2179

    Last Modified: 10 Oct 2016

    libodm.a in IBM AIX 5.3, 6.1, and 7.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary file.

    Source:Portcullis
    Published:22 Jun 2012
    9.3
    Critical

    CVE-2012-2176

    Last Modified: 31 Dec 2012

    Multiple stack-based buffer overflows in a certain ActiveX control in qp2.cab in IBM Lotus Quickr 8.2 before 8.2.0.27-002a for Domino allow remote attackers to execute arbitrary code via a long argument to the (1) Attachment_Times or (2) Import_Times method.

    Source:Metasploit
    Published:25 May 2012
    9.3
    Critical

    CVE-2012-2175

    Last Modified: 31 Dec 2012

    Buffer overflow in the Attachment_Times method in a certain ActiveX control in dwa85W.dll in IBM Lotus iNotes 8.5.x before 8.5.3 FP2 allows remote attackers to execute arbitrary code via a long argument.

    Source:Metasploit
    Published:20 Jun 2012
    9.3
    Critical

    CVE-2012-2174

    Last Modified: 25 Dec 2012

    The URL handler in IBM Lotus Notes 8.x before 8.5.3 FP2 allows remote attackers to execute arbitrary code via a crafted notes:// URL.

    Source:Metasploit
    Published:20 Jun 2012
    4.3
    Medium

    CVE-2012-2172

    Last Modified: 21 Jun 2012

    Cross-site scripting (XSS) vulnerability in SoftwareRegistration.do in the Storage Manager Profiler in IBM System Storage DS Storage Manager before 10.83.xx.18 on DS Series devices allows remote attackers to inject arbitrary web script or HTML via the updateRegn parameter.

    Source:LiquidWorm
    Published:22 Jun 2012
    6.5
    Medium

    CVE-2012-2171

    Last Modified: 21 Jun 2012

    SQL injection vulnerability in ModuleServlet.do in the Storage Manager Profiler in IBM System Storage DS Storage Manager before 10.83.xx.18 on DS Series devices allows remote authenticated users to execute arbitrary SQL commands via the selectedModuleOnly parameter in a state_viewmodulelog action to the ModuleServlet URI.

    Source:LiquidWorm
    Published:22 Jun 2012
    4.3
    Medium

    CVE-2012-2156

    Last Modified: 4 Apr 2012

    Multiple cross-site scripting (XSS) vulnerabilities in Plume CMS 1.2.4 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) the u_email parameter (aka Authors Email field) to manager/users.php, (2) the u_realname parameter (aka Authors Name field) to manager/users.php, or (3) the c_author parameter (aka Author field) in an ADD A COMMENT section.

    Source:Ivano Binetti
    Published:11 Apr 2012
    5
    Medium

    CVE-2012-2138

    Last Modified: 4 Jul 2015

    The @CopyFrom operation in the POST servlet in the org.apache.sling.servlets.post bundle before 2.1.2 in Apache Sling does not prevent attempts to copy an ancestor node to a descendant node, which allows remote attackers to cause a denial of service (infinite loop) via a crafted HTTP request.

    Source:IOactive
    Published:9 Jul 2012
    7.5
    High

    CVE-2012-2131

    Last Modified: 19 Apr 2012

    Multiple integer signedness errors in crypto/buffer/buffer.c in OpenSSL 0.9.8v allow remote attackers to conduct buffer overflow attacks, and cause a denial of service (memory corruption) or possibly have unspecified other impact, via crafted DER data, as demonstrated by an X.509 certificate or an RSA public key. NOTE: this vulnerability exists because of an incomplete fix for CVE-2012-2110.

    Source:Tavis Ormandy
    Published:23 Apr 2012
    5.1
    Medium

    CVE-2012-2122

    Last Modified: 5 Dec 2016

    sql/password.c in Oracle MySQL 5.1.x before 5.1.63, 5.5.x before 5.5.24, and 5.6.x before 5.6.6, and MariaDB 5.1.x before 5.1.62, 5.2.x before 5.2.12, 5.3.x before 5.3.6, and 5.5.x before 5.5.23, when running in certain environments with certain implementations of the memcmp function, allows remote attackers to bypass authentication by repeatedly authenticating with the same incorrect password, which eventually causes a token comparison to succeed due to an improperly-checked return value.

    Source:David Kennedy (ReL1K)
    Published:9 Jun 2012
    7.5
    High

    CVE-2012-2115

    Last Modified: 27 Oct 2016

    SQL injection vulnerability in interface/login/validateUser.php in OpenEMR 4.1.0 and possibly earlier allows remote attackers to execute arbitrary SQL commands via the u parameter.

    Source:Level
    Published:9 Sept 2012
    7.5
    High

    CVE-2012-2110

    Last Modified: 19 Apr 2012

    The asn1_d2i_read_bio function in crypto/asn1/a_d2i_fp.c in OpenSSL before 0.9.8v, 1.0.0 before 1.0.0i, and 1.0.1 before 1.0.1a does not properly interpret integer data, which allows remote attackers to conduct buffer overflow attacks, and cause a denial of service (memory corruption) or possibly have unspecified other impact, via crafted DER data, as demonstrated by an X.509 certificate or an RSA public key.

    Source:Tavis Ormandy
    Published:19 Apr 2012
    7.5
    High

    CVE-2012-2109

    Last Modified: 26 Jun 2017

    SQL injection vulnerability in wp-load.php in the BuddyPress plugin 1.5.x before 1.5.5 of WordPress allows remote attackers to execute arbitrary SQL commands via the page parameter in an activity_widget_filter action.

    Source:Ivan Terkin
    Published:4 Sept 2012
    7.5
    High

    CVE-2012-2105

    Last Modified: 16 Mar 2012

    Multiple SQL injection vulnerabilities in login.php in Timesheet Next Gen 1.5.2 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameters.

    Source:G13
    Published:19 Sept 2012
    6.8
    Medium

    CVE-2012-2104

    Last Modified: 22 May 2015

    cgi-bin/munin-cgi-graph in Munin 2.x writes data to a log file without sanitizing non-printable characters, which might allow user-assisted remote attackers to inject terminal emulator escape sequences and execute arbitrary commands or delete arbitrary files via a crafted HTTP request.

    Source:Helmut Grohne
    Published:26 Aug 2012
    4.3
    Medium

    CVE-2012-2099

    Last Modified: 8 May 2015

    Multiple cross-site scripting (XSS) vulnerabilities in Wikidforum 2.10 allow remote attackers to inject arbitrary web script or HTML via the (1) search field, or the (2) Author or (3) select_sort parameters in an advanced search.

    Source:Stefan Schurtz
    Published:24 Jan 2013
    6.9
    Medium

    CVE-2012-2095

    Last Modified: 19 Jul 2017

    The SetWiredProperty function in the D-Bus interface in WICD before 1.7.2 allows local users to write arbitrary configuration settings and gain privileges via a crafted property name in a dbus message.

    Source:anonymous
    Published:7 Apr 2014
    9.3
    Critical

    CVE-2012-2052

    Last Modified: 11 May 2012

    Stack-based buffer overflow in the U3D.8BI library plugin in Adobe Photoshop CS5 12.x before 12.0.5 and CS5.1 12.1.x before 12.1.1 allows remote attackers to execute arbitrary code via a long Collada asset element in a DAE file, as demonstrated by the cameraYFov value in the contributor comments element.

    Source:rgod
    Published:19 Jun 2014
    9.3
    Critical

    CVE-2012-2027

    Last Modified: 20 Mar 2012

    Use-after-free vulnerability in Adobe Photoshop CS5 12.x before 12.0.5 and CS5.1 12.1.x before 12.1.1 allows remote attackers to execute arbitrary code via a crafted TIFF (aka .TIF) file.

    Source:Francis Provencher
    Published:9 May 2012
    10
    Critical

    CVE-2012-2020

    Last Modified: 29 Oct 2012

    Unspecified vulnerability in HP Operations Agent before 11.03.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1326.

    Source:Metasploit
    Published:11 Jul 2012
    10
    Critical

    CVE-2012-2019

    Last Modified: 29 Oct 2012

    Unspecified vulnerability in HP Operations Agent before 11.03.12 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1325.

    Source:Metasploit
    Published:11 Jul 2012
    4.3
    Medium

    CVE-2012-1990

    Last Modified: 29 May 2015

    Multiple cross-site scripting (XSS) vulnerabilities in Schneider Electric Kerweb before 3.0.1 and Kerwin before 6.0.1 allow remote attackers to inject arbitrary web script or HTML via (1) the evtvariablename parameter in an evts.xml action to kw.dll, (2) unspecified search fields, or (3) unspecified content-display fields.

    Source:phocean
    Published:22 May 2012
    3.5
    Low

    CVE-2012-1979

    Last Modified: 6 Apr 2012

    Cross-site scripting (XSS) vulnerability in starnet/index.php in SyndeoCMS 3.0.01 and earlier allows remote authenticated users to inject arbitrary web script or HTML via the email parameter (aka Email address field) in an edit_user configuration action.

    Source:Ivano Binetti
    Published:17 Apr 2012
    6.8
    Medium

    CVE-2012-1978

    Last Modified: 6 Apr 2012

    Multiple cross-site request forgery (CSRF) vulnerabilities in Simple PHP Agenda 2.2.8 and earlier allow remote attackers to hijack the authentication of administrators for requests that (1) add an administrator via a request to auth/process.php, (2) delete an administrator via a request to auth/admin/adminprocess.php, (3) add an event via a request to engine/new_event.php, or (4) delete an event via a request to phpagenda/.

    Source:Ivano Binetti
    Published:21 May 2015
    6.8
    Medium

    CVE-2012-1936

    Last Modified: 4 May 2017

    The wp_create_nonce function in wp-includes/pluggable.php in WordPress 3.3.1 and earlier associates a nonce with a user account instead of a user session, which might make it easier for remote attackers to conduct cross-site request forgery (CSRF) attacks on specific actions and objects by sniffing the network, as demonstrated by attacks against the wp-admin/admin-ajax.php and wp-admin/user-new.php scripts. NOTE: the vendor reportedly disputes the significance of this issue because wp_create_nonce operates as intended, even if it is arguably inconsistent with certain CSRF protection details advocated by external organizations

    Source:Ivano Binetti
    Published:3 May 2012
    4.3
    Medium

    CVE-2012-1935

    Last Modified: 19 Apr 2012

    Multiple cross-site scripting (XSS) vulnerabilities in Newscoop 3.5.x before 3.5.5 and 4.x before 4 RC4 allow remote attackers to inject arbitrary web script or HTML via the (1) Back parameter to admin/ad.php, or the (2) token or (3) f_email parameter to admin/password_check_token.php.

    Source:High-Tech Bridge SA
    Published:27 Aug 2012
    7.5
    High

    CVE-2012-1934

    Last Modified: 19 Apr 2012

    SQL injection vulnerability in admin/country/edit.php in Newscoop before 3.5.5 and 4.x before 4 RC4 allows remote attackers to execute arbitrary SQL commands via the f_country_code parameter.

    Source:High-Tech Bridge SA
    Published:27 Aug 2012
    6.8
    Medium

    CVE-2012-1933

    Last Modified: 19 Apr 2012

    Multiple PHP remote file inclusion vulnerabilities in Newscoop 3.5.x before 3.5.5 and 4 before RC4, when register_globals is enabled, allow remote attackers to execute arbitrary PHP code via a URL in the GLOBALS[g_campsiteDir] parameter to (1) include/phorum_load.php, (2) conf/install_conf.php, or (3) conf/liveuser_configuration.php.

    Source:High-Tech Bridge SA
    Published:27 Aug 2012
    6.8
    Medium

    CVE-2012-1922

    Last Modified: 27 Oct 2016

    Multiple cross-site request forgery (CSRF) vulnerabilities in Sitecom WLM-2501 allow remote attackers to hijack the authentication of administrators for requests that modify settings for (1) Mac Filtering via admin/formFilter, (2) IP/Port Filtering via formFilter, (3) Port Forwarding via formPortFw, (4) Wireless Access Control via admin/formWlAc, (5) Wi-Fi Protected Setup via formWsc, (6) URL Blocking Filter via formURL, (7) Domain Blocking Filter via formDOMAINBLK, and (8) IP Address ACL Filter via admin/formACL in goform/, different vectors than CVE-2012-1921.

    Source:Ivano Binetti
    Published:24 Jan 2013
    6.8
    Medium

    CVE-2012-1921

    Last Modified: 27 Oct 2016

    Cross-site request forgery (CSRF) vulnerability in goform/admin/formWlEncrypt in Sitecom WLM-2501 allows remote attackers to hijack the authentication of administrators for requests that change the router passphrase via the pskValue parameter.

    Source:Ivano Binetti
    Published:26 Aug 2012
    6.1
    Medium

    CVE-2012-1915

    Last Modified: 8 Jul 2015

    EllisLab CodeIgniter 2.1.2 allows remote attackers to bypass the xss_clean() Filter and perform XSS attacks.

    Source:Krzysztof Kotowicz
    Published:9 Jan 2020
    Low

    CVE-2012-1913

    Last Modified: 16 Sept 2024

    DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2010-0754. Reason: This candidate is a reservation duplicate of CVE-2010-0754. Notes: All CVE users should reference CVE-2010-0754 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

    Source:indoushka
    Published:28 Mar 2012