261031
|
- |
|
beijerelectronics
|
beijer_adp h-designer
|
Buffer overflow in Beijer ADP 6.5.0-180_R1967 and 6.5.1-186_R2942, and H-Designer 6.5.0 B180_R1967, allows local users to gain privileges by inserting a long string into a DLL file.
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-4696
|
2013-02-8 13:54 |
2013-01-29 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261032
|
- |
|
mahara
|
mahara
|
Cross-site scripting (XSS) vulnerability in Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote attackers to inject arbitrary web script or HTML by uploading an XML file with the xhtml ext…
|
CWE-79
Cross-site Scripting
|
CVE-2012-2243
|
2013-02-8 13:50 |
2012-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261033
|
- |
|
mahara
|
mahara
|
Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote authenticated administrators to execute arbitrary programs by modifying the path to clamav. NOTE: this can be exploited without authent…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-2244
|
2013-02-8 13:50 |
2012-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261034
|
- |
|
mahara
|
mahara
|
Cross-site scripting (XSS) vulnerability in Mahara 1.4.x before 1.4.5 and 1.5.x before 1.5.4 allows remote attackers to inject arbitrary web script or HTML via vectors related to artefact/file/ and a…
|
CWE-79
Cross-site Scripting
|
CVE-2012-2247
|
2013-02-8 13:50 |
2012-11-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261035
|
- |
|
redhat
|
freeipa
|
The client in FreeIPA 2.x and 3.x before 3.1.2 does not properly obtain the Certification Authority (CA) certificate from the server, which allows man-in-the-middle attackers to spoof a join procedur…
|
CWE-310
Cryptographic Issues
|
CVE-2012-5484
|
2013-02-7 14:01 |
2013-01-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261036
|
- |
|
cisco
|
webex_social
|
The search function in Cisco Webex Social (formerly Cisco Quad) allows remote authenticated users to read files via unspecified parameters, aka Bug ID CSCud40235.
|
CWE-200
Information Exposure
|
CVE-2013-1107
|
2013-02-7 14:00 |
2013-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261037
|
- |
|
cisco
|
unity_express_software unity_express
|
Multiple cross-site request forgery (CSRF) vulnerabilities on the Cisco Unity Express with software before 8.0 allow remote attackers to hijack the authentication of unspecified victims via unknown v…
|
CWE-352
Origin Validation Error
|
CVE-2013-1120
|
2013-02-7 14:00 |
2013-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261038
|
- |
|
emc
|
rsa_archer_smartsuite rsa_archer_egrc
|
Multiple cross-site scripting (XSS) vulnerabilities in EMC RSA Archer SmartSuite Framework 4.x and RSA Archer GRC 5.x before 5.2SP1 allow remote attackers to inject arbitrary web script or HTML via u…
|
CWE-79
Cross-site Scripting
|
CVE-2012-1064
|
2013-02-7 14:00 |
2013-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261039
|
- |
|
emc
|
rsa_archer_smartsuite rsa_archer_egrc
|
Directory traversal vulnerability in EMC RSA Archer SmartSuite Framework 4.x and RSA Archer GRC 5.x before 5.2SP1 allows remote authenticated users to upload files, and consequently execute arbitrary…
|
CWE-22
Path Traversal
|
CVE-2012-2293
|
2013-02-7 14:00 |
2013-02-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261040
|
- |
|
novell
|
groupwise
|
Cross-site scripting (XSS) vulnerability in the WebAccess component in Novell GroupWise 8.0 before Support Pack 3 and 2012 before Support Pack 1 allows remote attackers to inject arbitrary web script…
|
CWE-79
Cross-site Scripting
|
CVE-2012-4912
|
2013-02-7 14:00 |
2012-09-28 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|