5.8
    Medium

    CVE-2012-0551

    Last Modified: 22 Apr 2012

    Unspecified vulnerability in the Java Runtime Environment (JRE) in Oracle Java SE 7 update 4 and earlier and 6 update 32 and earlier, and the GlassFish Enterprise Server component in Oracle Sun Products Suite GlassFish Enterprise Server 3.1.1, allows remote attackers to affect confidentiality and integrity via unknown vectors related to Web Container or Deployment.

    Source:Roberto Suggi Liverani
    Published:3 May 2012
    6.8
    Medium

    CVE-2012-0550

    Last Modified: 22 Apr 2012

    Unspecified vulnerability in the GlassFish Enterprise Server component in Oracle Sun Products Suite GlassFish Enterprise Server 3.1.1 allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Web Container.

    Source:Roberto Suggi Liverani
    Published:3 May 2012
    7.5
    High

    CVE-2012-0549

    Last Modified: 6 Aug 2012

    Unspecified vulnerability in the Oracle AutoVue Office component in Oracle Supply Chain Products Suite 20.1.1 allows remote attackers to affect confidentiality, integrity, and availability, related to Desktop API.

    Source:Metasploit
    Published:3 May 2012
    0
    Low

    CVE-2012-0547

    Last Modified: 27 Aug 2012

    Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 6 and earlier, and 6 Update 34 and earlier, has no impact and remote attack vectors involving AWT and "a security-in-depth issue that is not directly exploitable but which can be used to aggravate security vulnerabilities that can be directly exploited." NOTE: this identifier was assigned by the Oracle CNA, but CVE is not intended to cover defense-in-depth issues that are only exposed by the presence of other vulnerabilities. NOTE: Oracle has not commented on claims from a downstream vendor that this issue is related to "toolkit internals references."

    Source:Metasploit
    Published:30 Aug 2012
    9.8
    Critical

    CVE-2012-0507

    Last Modified: 30 Mar 2012

    Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier, and 5.0 Update 33 and earlier allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Concurrency. NOTE: the previous information was obtained from the February 2012 Oracle CPU. Oracle has not commented on claims from a downstream vendor and third party researchers that this issue occurs because the AtomicReferenceArray class implementation does not ensure that the array is of the Object[] type, which allows attackers to cause a denial of service (JVM crash) or bypass Java sandbox restrictions. NOTE: this issue was originally mapped to CVE-2011-3571, but that identifier was already assigned to a different issue.

    Source:Metasploit
    Published:14 Feb 2012
    10
    Critical

    CVE-2012-0500

    Last Modified: 24 Feb 2012

    Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 2 and earlier, 6 Update 30 and earlier, and JavaFX 2.0.2 and earlier allows remote untrusted Java Web Start applications and untrusted Java applets to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.

    Source:Metasploit
    Published:14 Feb 2012
    9.3
    Critical

    CVE-2012-0439

    Last Modified: 12 Feb 2013

    An ActiveX control in gwcls1.dll in the client in Novell GroupWise 8.0 before 8.0.3 HP2 and 2012 before SP1 HP1 allows remote attackers to execute arbitrary code via (1) a pointer argument to the SetEngine method or (2) an XPItem pointer argument to an unspecified method.

    Source:Metasploit
    Published:24 Feb 2013
    10
    Critical

    CVE-2012-0432

    Last Modified: 4 Dec 2016

    Stack-based buffer overflow in the Novell NCP implementation in NetIQ eDirectory 8.8.7.x before 8.8.7.2 allows remote attackers to have an unspecified impact via unknown vectors.

    Source:Gary Nilson
    Published:25 Dec 2012
    5
    Medium

    CVE-2012-0407

    Last Modified: 31 Mar 2012

    Integer overflow in the DPA_Utilities library in EMC Data Protection Advisor (DPA) 5.5 through 5.8 SP1 allows remote attackers to cause a denial of service (infinite loop) via a negative 64-bit value in a certain size field.

    Source:Luigi Auriemma
    Published:20 Apr 2012
    7.8
    High

    CVE-2012-0406

    Last Modified: 31 Mar 2012

    The DPA_Utilities.cProcessAuthenticationData function in EMC Data Protection Advisor (DPA) 5.5 through 5.8 SP1 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an AUTHENTICATECONNECTION command that (1) lacks a password field or (2) has an empty password.

    Source:Luigi Auriemma
    Published:20 Apr 2012
    6.8
    Medium

    CVE-2012-0394

    Last Modified: 5 Feb 2014

    The DebuggingInterceptor component in Apache Struts before 2.3.1.1, when developer mode is used, allows remote attackers to execute arbitrary commands via unspecified vectors. NOTE: the vendor characterizes this behavior as not "a security vulnerability itself.

    Source:Metasploit
    Published:25 Dec 2011
    6.4
    Medium

    CVE-2012-0393

    Last Modified: 10 Mar 2017

    The ParameterInterceptor component in Apache Struts before 2.3.1.1 does not prevent access to public constructors, which allows remote attackers to create or overwrite arbitrary files via a crafted parameter that triggers the creation of a Java object.

    Source:SEC Consult
    Published:25 Dec 2011
    6.8
    Medium

    CVE-2012-0392

    Last Modified: 10 Mar 2017

    The CookieInterceptor component in Apache Struts before 2.3.1.1 does not use the parameter-name whitelist, which allows remote attackers to execute arbitrary commands via a crafted HTTP Cookie header that triggers Java code execution through a static method.

    Source:SEC Consult
    Published:25 Dec 2011
    9.8
    Critical

    CVE-2012-0391

    Last Modified: 5 Jun 2012

    The ExceptionDelegator component in Apache Struts before 2.2.3.1 interprets parameter values as OGNL expressions during certain exception handling for mismatched data types of properties, which allows remote attackers to execute arbitrary Java code via a crafted parameter.

    Source:Metasploit
    Published:5 Aug 2011
    4.3
    Medium

    CVE-2012-0389

    Last Modified: 30 Mar 2015

    Cross-site scripting (XSS) vulnerability in ForgottenPassword.aspx in MailEnable Professional, Enterprise, and Premium 4.26 and earlier, 5.x before 5.53, and 6.x before 6.03 allows remote attackers to inject arbitrary web script or HTML via the Username parameter.

    Source:Sajjad Pourali
    Published:24 Jan 2012
    6.8
    Medium

    CVE-2012-0308

    Last Modified: 3 Dec 2012

    Cross-site request forgery (CSRF) vulnerability in Symantec Messaging Gateway (SMG) before 10.0 allows remote attackers to hijack the authentication of administrators.

    Source:Ben Williams
    Published:29 Aug 2012
    10
    Critical

    CVE-2012-0299

    Last Modified: 10 Jun 2012

    The file-management scripts in the management GUI in Symantec Web Gateway 5.0.x before 5.0.3 allow remote attackers to upload arbitrary code to a designated pathname, and possibly execute this code, via unspecified vectors.

    Source:Metasploit
    Published:21 May 2012
    6.4
    Medium

    CVE-2012-0298

    Last Modified: 27 Jun 2012

    The file-management scripts in the management GUI in Symantec Web Gateway 5.0.x before 5.0.3 allow remote attackers to (1) read or (2) delete arbitrary files via unspecified vectors.

    Source:S2 Crew
    Published:21 May 2012
    10
    Critical

    CVE-2012-0297

    Last Modified: 28 May 2012

    The management GUI in Symantec Web Gateway 5.0.x before 5.0.3 does not properly restrict access to application scripts, which allows remote attackers to execute arbitrary code by (1) injecting crafted data or (2) including crafted data.

    Source:Metasploit
    Published:21 May 2012
    5
    Medium

    CVE-2012-0292

    Last Modified: 17 Feb 2012

    The awhost32 service in Symantec pcAnywhere through 12.5.3, Altiris IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), Altiris Client Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), and Altiris Deployment Solution Remote pcAnywhere Solution 7.1 (aka 12.5.x and 12.6.x) allows remote attackers to cause a denial of service (daemon crash) via a crafted TCP session on port 5631.

    Source:Johnathan Norman
    Published:8 Mar 2012
    7.2
    High

    CVE-2012-0289

    Last Modified: 23 May 2012

    Buffer overflow in Symantec Endpoint Protection (SEP) 11.0.600x through 11.0.710x and Symantec Network Access Control (SNAC) 11.0.600x through 11.0.710x allows local users to gain privileges, and modify data or cause a denial of service, via a crafted script.

    Source:41.w4r10r
    Published:23 May 2012
    6.8
    Medium

    CVE-2012-0286

    Last Modified: 24 Jan 2012

    Cross-site request forgery (CSRF) vulnerability in Stoneware webNetwork before 6.0.8.0 allows remote attackers to hijack the authentication of unspecified victims for requests that modify user accounts.

    Source:Jacob Holcomb
    Published:24 Jan 2012
    4.3
    Medium

    CVE-2012-0285

    Last Modified: 24 Jan 2012

    Multiple cross-site scripting (XSS) vulnerabilities in Stoneware webNetwork before 6.0.8.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.

    Source:Jacob Holcomb
    Published:24 Jan 2012
    9.3
    Critical

    CVE-2012-0284

    Last Modified: 22 Mar 2012

    Stack-based buffer overflow in the SetSource method in the Cisco Linksys PlayerPT ActiveX control 1.0.0.15 in PlayerPT.ocx on the Cisco WVC200 Wireless-G PTZ Internet video camera allows remote attackers to execute arbitrary code via a long URL in the first argument (aka the sURL argument).

    Source:rgod
    Published:19 Jul 2012
    6.8
    Medium

    CVE-2012-0282

    Last Modified: 22 Jun 2012

    Heap-based buffer overflow in XnView before 1.99 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted ImageLeftPosition value in an ImageDescriptor structure in a GIF image.

    Source:Francis Provencher
    Published:17 Jul 2012
    9.3
    Critical

    CVE-2012-0278

    Last Modified: 31 Oct 2016

    Heap-based buffer overflow in the FlashPix PlugIn before 4.3.4.0 for IrfanView might allow remote attackers to execute arbitrary code via a .fpx file containing a crafted FlashPix image that is not properly handled during decompression.

    Source:Francis Provencher
    Published:18 Apr 2012
    6.8
    Medium

    CVE-2012-0277

    Last Modified: 22 Jun 2012

    Heap-based buffer overflow in XnView before 1.99 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a crafted PCT image.

    Source:Francis Provencher
    Published:17 Jul 2012
    6.8
    Medium

    CVE-2012-0276

    Last Modified: 22 Jun 2012

    Multiple heap-based buffer overflows in XnView before 1.99 allow remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a (1) SGI32LogLum compressed TIFF image or (2) SGI32LogLum compressed TIFF image with the PhotometricInterpretation encoding set to LogL.

    Source:Francis Provencher
    Published:17 Jul 2012
    10
    Critical

    CVE-2012-0271

    Last Modified: 17 Sept 2012

    Integer overflow in the WebConsole component in gwia.exe in GroupWise Internet Agent (GWIA) in Novell GroupWise 8.0 before 8.0.3 HP1 and 2012 before SP1 might allow remote attackers to execute arbitrary code via a crafted request that triggers a heap-based buffer overflow, as demonstrated by a request with -1 in the Content-Length HTTP header.

    Source:Francis Provencher
    Published:19 Sept 2012
    7.5
    High

    CVE-2012-0270

    Last Modified: 6 Apr 2012

    Multiple stack-based buffer overflows in Csound before 5.16.6 allow remote attackers to execute arbitrary code via a crafted (1) hetro file to the getnum function in util/heti_main.c or (2) PVOC file to the getnum function in util/pv_import.c.

    Source:Metasploit
    Published:17 Feb 2014
    9.3
    Critical

    CVE-2012-0267

    Last Modified: 10 Oct 2012

    The StopModule method in the NTR ActiveX control before 2.0.4.8 allows remote attackers to execute arbitrary code via a crafted lModule parameter that triggers use of an arbitrary memory address as a function pointer.

    Source:Metasploit
    Published:15 Jan 2012
    9.3
    Critical

    CVE-2012-0266

    Last Modified: 10 Oct 2012

    Multiple stack-based buffer overflows in the NTR ActiveX control before 2.0.4.8 allow remote attackers to execute arbitrary code via (1) a long bstrUrl parameter to the StartModule method, (2) a long bstrParams parameter to the Check method, a long bstrUrl parameter to the (3) Download or (4) DownloadModule method during construction of a .ntr pathname, or a long bstrUrl parameter to the (5) Download or (6) DownloadModule method during construction of a URL.

    Source:Metasploit
    Published:15 Jan 2012
    10
    Critical

    CVE-2012-0262

    Last Modified: 23 Mar 2017

    op5config/welcome in system-op5config before 2.0.3 in op5 Monitor and op5 Appliance before 5.5.3 allows remote attackers to execute arbitrary commands via shell metacharacters in the password parameter.

    Source:Metasploit
    Published:31 Dec 2013
    10
    Critical

    CVE-2012-0261

    Last Modified: 23 Mar 2017

    license.php in system-portal before 1.6.2 in op5 Monitor and op5 Appliance before 5.5.3 allows remote attackers to execute arbitrary commands via shell metacharacters in the timestamp parameter for an install action.

    Source:Metasploit
    Published:31 Dec 2013
    10
    Critical

    CVE-2012-0242

    Last Modified: 2 Sept 2011

    Format string vulnerability in Advantech/BroadWin WebAccess before 7.0 allows remote attackers to execute arbitrary code via format string specifiers in a message string.

    Source:Luigi Auriemma
    Published:21 Feb 2012
    5
    Medium

    CVE-2012-0241

    Last Modified: 2 Sept 2011

    Advantech/BroadWin WebAccess before 7.0 allows remote attackers to cause a denial of service (memory corruption) via a modified stream identifier to a function.

    Source:Luigi Auriemma
    Published:21 Feb 2012
    5
    Medium

    CVE-2012-0221

    Last Modified: 31 Mar 2015

    The FactoryTalk (FT) RNADiagReceiver service in Rockwell Automation Allen-Bradley FactoryTalk CPR9 through SR5 and RSLogix 5000 17 through 20 does not properly handle the return value from an unspecified function, which allows remote attackers to cause a denial of service (service outage) via a crafted packet.

    Source:Luigi Auriemma
    Published:2 Apr 2012
    7.2
    High

    CVE-2012-0217

    Last Modified: 6 Oct 2013

    The x86-64 kernel system-call functionality in Xen 4.1.2 and earlier, as used in Citrix XenServer 6.0.2 and earlier and other products; Oracle Solaris 11 and earlier; illumos before r13724; Joyent SmartOS before 20120614T184600Z; FreeBSD before 9.0-RELEASE-p3; NetBSD 6.0 Beta and earlier; Microsoft Windows Server 2008 R2 and R2 SP1 and Windows 7 Gold and SP1; and possibly other operating systems, when running on an Intel processor, incorrectly uses the sysret path in cases where a certain address is not a canonical address, which allows local users to gain privileges via a crafted application. NOTE: because this issue is due to incorrect use of the Intel specification, it should have been split into separate identifiers; however, there was some value in preserving the original mapping of the multi-codebase coordinated-disclosure effort to a single identifier.

    Source:CurcolHekerLink
    Published:12 Jun 2012
    7.5
    High

    CVE-2012-0209

    Last Modified: 17 Feb 2012

    Horde 3.3.12, Horde Groupware 1.2.10, and Horde Groupware Webmail Edition 1.2.10, as distributed by FTP between November 2011 and February 2012, contains an externally introduced modification (Trojan Horse) in templates/javascript/open_calendar.js, which allows remote attackers to execute arbitrary PHP code.

    Source:Metasploit
    Published:25 Sept 2012
    7.5
    High

    CVE-2012-0207

    Last Modified: 17 Jan 2012

    The igmp_heard_query function in net/ipv4/igmp.c in the Linux kernel before 3.2.1 allows remote attackers to cause a denial of service (divide-by-zero error and panic) via IGMP packets.

    Source:kingcope
    Published:10 Jan 2012
    10
    Critical

    CVE-2012-0202

    Last Modified: 8 Jan 2013

    Multiple stack-based buffer overflows in tm1admsd.exe in the Admin Server in IBM Cognos TM1 9.4.x and 9.5.x before 9.5.2 FP2 allow remote attackers to cause a denial of service (daemon crash) or possibly execute arbitrary code via crafted data.

    Source:Metasploit
    Published:4 May 2012
    9.3
    Critical

    CVE-2012-0201

    Last Modified: 1 Mar 2012

    Stack-based buffer overflow in pcspref.dll in pcsws.exe in IBM Personal Communications 5.9.x before 5.9.8 and 6.0.x before 6.0.4 might allow remote attackers to execute arbitrary code via a long profile string in a WorkStation (aka .ws) file.

    Source:Metasploit
    Published:2 Mar 2012
    4
    Medium

    CVE-2012-0200

    Last Modified: 30 Apr 2015

    The server in IBM solidDB 6.5 before Interim Fix 6 does not properly initialize data structures, which allows remote authenticated users to cause a denial of service (daemon crash) via a SELECT statement with a redundant WHERE condition.

    Source:IBM
    Published:21 Feb 2012
    9.3
    Critical

    CVE-2012-0198

    Last Modified: 10 Apr 2012

    Stack-based buffer overflow in the RunAndUploadFile method in the Isig.isigCtl.1 ActiveX control in IBM Tivoli Provisioning Manager Express for Software Distribution 4.1.1 allows remote attackers to execute arbitrary code via vectors related to an Asset Information file.

    Source:Metasploit
    Published:6 Mar 2012
    7.2
    High

    CVE-2012-0181

    Last Modified: 24 May 2017

    win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, and Windows 8 Consumer Preview does not properly manage Keyboard Layout files, which allows local users to gain privileges via a crafted application, aka "Keyboard Layout File Vulnerability."

    Source:Cr4sh
    Published:9 May 2012
    9.3
    Critical

    CVE-2012-0163

    Last Modified: 24 Apr 2012

    Microsoft .NET Framework 1.0 SP3, 1.1 SP1, 2.0 SP2, 3.5, 3.5.1, 4, and 4.5 does not properly validate function parameters, which allows remote attackers to execute arbitrary code via (1) a crafted XAML browser application (aka XBAP), (2) a crafted ASP.NET application, or (3) a crafted .NET Framework application, aka ".NET Framework Parameter Validation Vulnerability."

    Source:Akita Software Security
    Published:10 Apr 2012
    8.8
    High

    CVE-2012-0158

    Last Modified: 25 Apr 2012

    The (1) ListView, (2) ListView2, (3) TreeView, and (4) TreeView2 ActiveX controls in MSCOMCTL.OCX in the Common Controls in Microsoft Office 2003 SP3, 2007 SP2 and SP3, and 2010 Gold and SP1; Office 2003 Web Components SP3; SQL Server 2000 SP4, 2005 SP4, and 2008 SP2, SP3, and R2; BizTalk Server 2002 SP1; Commerce Server 2002 SP4, 2007 SP2, and 2009 Gold and R2; Visual FoxPro 8.0 SP1 and 9.0 SP2; and Visual Basic 6.0 Runtime allow remote attackers to execute arbitrary code via a crafted (a) web site, (b) Office document, or (c) .rtf file that triggers "system state" corruption, as exploited in the wild in April 2012, aka "MSCOMCTL.OCX RCE Vulnerability."

    Source:Metasploit
    Published:10 Apr 2012
    4.3
    Medium

    CVE-2012-0152

    Last Modified: 11 Apr 2025

    The Remote Desktop Protocol (RDP) service in Microsoft Windows Server 2008 R2 and R2 SP1 and Windows 7 Gold and SP1 allows remote attackers to cause a denial of service (application hang) via a series of crafted packets, aka "Terminal Server Denial of Service Vulnerability."

    Published:13 Mar 2012
    10
    Critical

    CVE-2012-0124

    Last Modified: 1 Jul 2012

    Unspecified vulnerability in HP Data Protector Express (aka DPX) 5.0.00 before build 59287 and 6.0.00 before build 11974 allows remote attackers to execute arbitrary code or cause a denial of service via unknown vectors.

    Source:Metasploit
    Published:14 Mar 2012
    4.3
    Medium

    CVE-2012-0067

    Last Modified: 9 Apr 2015

    wiretap/iptrace.c in Wireshark 1.4.x before 1.4.11 and 1.6.x before 1.6.5 allows remote attackers to cause a denial of service (application crash) via a long packet in an AIX iptrace file.

    Source:Laurent Butti
    Published:10 Jan 2012