261561
|
- |
|
symantec
|
backupexec_system_recovery system_recovery
|
Untrusted search path vulnerability in Symantec System Recovery 2011 before SP2 and Backup Exec System Recovery 2010 before SP5 allows local users to gain privileges via a Trojan horse DLL in the cur…
|
NVD-CWE-Other
|
CVE-2012-0305
|
2013-02-2 13:58 |
2012-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261562
|
- |
|
symantec
|
backupexec_system_recovery system_recovery
|
Per: http://cwe.mitre.org/data/definitions/426.html 'CWE-426: Untrusted Search Path'
|
NVD-CWE-Other
|
CVE-2012-0305
|
2013-02-2 13:58 |
2012-07-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261563
|
- |
|
ibm
|
tivoli_federated_identity_manager tivoli_federated_identity_manager_business_gateway
|
IBM Tivoli Federated Identity Manager (TFIM) and Tivoli Federated Identity Manager Business Gateway (TFIMBG) 6.1.1, 6.2.0, 6.2.1, and 6.2.2 allow remote attackers to establish sessions via a crafted …
|
CWE-20
Improper Input Validation
|
CVE-2012-3314
|
2013-02-1 13:49 |
2012-10-3 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261564
|
- |
|
citrix xen
|
xenserver xen
|
The GNTTABOP_swap_grant_ref sub-operation in the grant table hypercall in Xen 4.2 and Citrix XenServer 6.0.2 allows local guest kernels or administrators to cause a denial of service (host crash) and…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-3516
|
2013-02-1 13:49 |
2012-11-24 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261565
|
- |
|
sysax
|
multi_server
|
Stack-based buffer overflow in Sysax Multi Server before 5.52, when HTTP is enabled, allows remote authenticated users with the create folder permission to execute arbitrary code via a crafted reques…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-6530
|
2013-01-31 14:44 |
2013-01-31 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261566
|
- |
|
nicolas_tormo
|
phppaleo
|
Directory traversal vulnerability in index.php in phpPaleo 4.8b155 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang parameter.
|
CWE-22
Path Traversal
|
CVE-2012-1671
|
2013-01-31 14:00 |
2012-10-9 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261567
|
- |
|
foxitsoftware
|
foxit_advanced_pdf_editor
|
Stack-based buffer overflow in Foxit Advanced PDF Editor 3 before 3.04 might allow remote attackers to execute arbitrary code via a crafted document containing instructions that reconstruct a certain…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2013-0107
|
2013-01-30 14:00 |
2013-01-27 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261568
|
- |
|
ibm
|
websphere_application_server
|
Unspecified vulnerability in IBM WebSphere Application Server (WAS) 6.1, 7.0 before 7.0.0.27, 8.0, and 8.5 has unknown impact and attack vectors.
|
NVD-CWE-noinfo
|
CVE-2013-0462
|
2013-01-30 14:00 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261569
|
- |
|
ge
|
intelligent_platforms_proficy_real-time_information_portal
|
The Portal installation process in GE Intelligent Platforms Proficy Real-Time Information Portal stores sensitive information under the web root with insufficient access control, which allows remote …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-0651
|
2013-01-30 14:00 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261570
|
- |
|
ge
|
intelligent_platforms_proficy_real-time_information_portal
|
GE Intelligent Platforms Proficy Real-Time Information Portal does not restrict access to methods of an unspecified Java class, which allows remote attackers to obtain a username listing via an RMI c…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-0652
|
2013-01-30 14:00 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|