257411
|
- |
|
symantec
|
message_filter
|
Multiple cross-site request forgery (CSRF) vulnerabilities in Brightmail Control Center in Symantec Message Filter 6.3 allow remote attackers to hijack the authentication of arbitrary users for reque…
|
CWE-352
Origin Validation Error
|
CVE-2012-0303
|
2012-07-6 23:14 |
2012-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257412
|
- |
|
symantec
|
message_filter
|
Session fixation vulnerability in Brightmail Control Center in Symantec Message Filter 6.3 allows remote attackers to hijack web sessions via unspecified vectors.
|
CWE-287
Improper Authentication
|
CVE-2012-0301
|
2012-07-6 23:05 |
2012-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257413
|
- |
|
zenphoto
|
zenphoto
|
Cross-site scripting (XSS) vulnerability in Zenphoto before 1.4.3 allows remote attackers to inject arbitrary web script or HTML by triggering improper interaction with an unspecified library.
|
CWE-79
Cross-site Scripting
|
CVE-2012-2641
|
2012-07-6 13:00 |
2012-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257414
|
- |
|
redhat
|
dtach
|
Integer signedness error in attach.c in dtach 0.8 allows remote attackers to obtain sensitive information from daemon stack memory in opportunistic circumstances by reading application data after an …
|
CWE-189
Numeric Errors
|
CVE-2012-3368
|
2012-07-4 13:00 |
2012-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257415
|
- |
|
gnome
|
gdk-pixbuf
|
The gdk_pixbuf__gif_image_load function in gdk-pixbuf/io-gif.c in gdk-pixbuf before 2.23.5 does not properly handle certain return values, which allows remote attackers to cause a denial of service (…
|
NVD-CWE-Other
|
CVE-2011-2485
|
2012-07-4 01:40 |
2012-07-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257416
|
- |
|
apache
|
http_server
|
The ap_pregsub function in server/util.c in the Apache HTTP Server 2.0.x through 2.0.64 and 2.2.x through 2.2.21, when the mod_setenvif module is enabled, does not restrict the size of values of envi…
|
CWE-20
Improper Input Validation
|
CVE-2011-4415
|
2012-07-3 13:04 |
2011-11-8 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257417
|
- |
|
php
|
php
|
The is_a function in PHP 5.3.7 and 5.3.8 triggers a call to the __autoload function, which makes it easier for remote attackers to execute arbitrary code by providing a crafted URL and leveraging pot…
|
CWE-94
Code Injection
|
CVE-2011-3379
|
2012-07-3 13:02 |
2011-11-4 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257418
|
- |
|
secureideas
|
basic_analysis_and_security_engine
|
Multiple cross-site scripting (XSS) vulnerabilities in Basic Analysis and Security Engine (BASE) before 1.4.3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) sig[1] parame…
|
CWE-79
Cross-site Scripting
|
CVE-2009-4837
|
2012-07-3 13:00 |
2010-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257419
|
- |
|
secureideas
|
basic_analysis_and_security_engine
|
SQL injection vulnerability in base_ag_common.php in Basic Analysis and Security Engine (BASE) before 1.4.3.1 allows remote attackers to execute arbitrary SQL commands via unspecified parameters. NO…
|
CWE-89
SQL Injection
|
CVE-2009-4838
|
2012-07-3 13:00 |
2010-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
257420
|
- |
|
secureideas
|
basic_analysis_and_security_engine
|
Multiple cross-site scripting (XSS) vulnerabilities in Basic Analysis and Security Engine (BASE), possibly 1.4.4 and earlier, allow remote attackers to inject arbitrary web script or HTML via unspeci…
|
CWE-79
Cross-site Scripting
|
CVE-2009-4839
|
2012-07-3 13:00 |
2010-05-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|