261431
|
- |
|
ge
|
intelligent_platforms_proficy_hmi\/scada_cimplicity intelligent_platforms_proficy_process_systems_with_cimplicity intelligent_platforms_proficy_process_systems
|
Integer overflow in CimWebServer.exe in GE Intelligent Platforms Proficy HMI/SCADA - CIMPLICITY 4.01 through 8.0, and Proficy Process Systems with CIMPLICITY, allows remote attackers to cause a denia…
|
CWE-189
Numeric Errors
|
CVE-2012-4689
|
2013-01-29 14:00 |
2013-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261432
|
- |
|
siemens
|
automation_license_manager
|
Memory leak in Siemens Automation License Manager (ALM) 4.x and 5.x before 5.2 allows remote attackers to cause a denial of service (memory consumption) via crafted packets.
|
CWE-399
Resource Management Errors
|
CVE-2012-4691
|
2013-01-29 14:00 |
2012-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261433
|
- |
|
siemens
|
automation_license_manager
|
Per: http://www.siemens.com/corporate-technology/pool/de/forschungsfelder/siemens_security_advisory_ssa-783261.pdf
"The attacker must have access to the local subnet where ALM is located. During i…
|
CWE-399
Resource Management Errors
|
CVE-2012-4691
|
2013-01-29 14:00 |
2012-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261434
|
- |
|
tropos
|
mesh_os 1310_distrubution_automation_mesh_router 1410_mesh_router 1410_wireless_mesh_router 3310_indoor_mesh_router 3320_indoor_mesh_router 4310_mobile_mesh_router 6310_mesh_rout…
|
Mesh OS before 7.9.1.1 on Tropos wireless mesh routers does not use a sufficient source of entropy for SSH keys, which makes it easier for man-in-the-middle attackers to spoof a device or modify a cl…
|
CWE-310
Cryptographic Issues
|
CVE-2012-4898
|
2013-01-29 14:00 |
2012-12-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261435
|
- |
|
welcart
|
welcart_plugin
|
Cross-site request forgery (CSRF) vulnerability in the Welcart plugin before 1.2.2 for WordPress allows remote attackers to hijack the authentication of arbitrary users for requests that complete a p…
|
CWE-352
Origin Validation Error
|
CVE-2012-5178
|
2013-01-29 14:00 |
2012-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261436
|
- |
|
olivetoast
|
documents_pro_file_viewer
|
Directory traversal vulnerability in the Olive Toast Documents Pro File Viewer (formerly Files HD) app before 1.11.1 for iOS allows remote attackers to read or delete files by leveraging guest access.
|
CWE-22
Path Traversal
|
CVE-2012-5185
|
2013-01-29 14:00 |
2013-01-20 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261437
|
- |
|
cisco
|
telepresence_video_communication_servers_software
|
Cisco TelePresence Video Communication Server (VCS) X7.0.3 does not properly process certain search rules, which allows remote attackers to create conferences via an unspecified Conductor request, ak…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-5444
|
2013-01-29 14:00 |
2013-01-18 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261438
|
- |
|
huawei
|
e585 e585u-82
|
The Huawei E585 device does not validate the status of admin sessions, which allows remote attackers to obtain sensitive user information and the session ID, and modify data, by leveraging access to …
|
CWE-20
Improper Input Validation
|
CVE-2012-5968
|
2013-01-29 14:00 |
2012-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261439
|
- |
|
huawei
|
e585 e585u-82
|
The Huawei E585 device allows remote attackers to cause a denial of service (NULL pointer dereference and device outage) via crafted HTTP requests, as demonstrated by unspecified vulnerability-scanni…
|
NVD-CWE-Other
|
CVE-2012-5970
|
2013-01-29 14:00 |
2012-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261440
|
- |
|
huawei
|
e585 e585u-82
|
Per: http://cwe.mitre.org/data/definitions/476.html
'CWE-476: NULL Pointer Dereference'
|
NVD-CWE-Other
|
CVE-2012-5970
|
2013-01-29 14:00 |
2012-12-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|