261441
|
- |
|
phpmyadmin
|
phpmyadmin
|
phpMyAdmin 3.5.x before 3.5.3 uses JavaScript code that is obtained through an HTTP session to phpmyadmin.net without SSL, which allows man-in-the-middle attackers to conduct cross-site scripting (XS…
|
CWE-79
Cross-site Scripting
|
CVE-2012-5368
|
2013-01-26 13:58 |
2012-10-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261442
|
- |
|
phpmyadmin
|
phpmyadmin
|
phpMyAdmin 3.5.2.2, as distributed by the cdnetworks-kr-1 mirror during an unspecified time frame in 2012, contains an externally introduced modification (Trojan Horse) in server_sync.php, which allo…
|
CWE-94
Code Injection
|
CVE-2012-5159
|
2013-01-26 13:57 |
2012-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261443
|
- |
|
phpmyadmin
|
phpmyadmin
|
Although not found in all distributions of this software, the vulnerability was scored assuming that it was. End-users will need to identify whether their distribution does in fact contain the vulner…
|
CWE-94
Code Injection
|
CVE-2012-5159
|
2013-01-26 13:57 |
2012-09-26 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261444
|
- |
|
rockwellautomation
|
controllogix_controllers guardlogix_controllers micrologix softlogix_controllers 1756-enbt 1756-eweb 1768-enbt 1768-eweb 1794-aentr_flex_i\/o_ethernet\/ip_adapter compactlo…
|
Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/…
|
CWE-200
Information Exposure
|
CVE-2012-6441
|
2013-01-26 01:32 |
2013-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261445
|
- |
|
rockwellautomation
|
controllogix_controllers guardlogix_controllers micrologix softlogix_controllers 1756-enbt 1756-eweb 1768-enbt 1768-eweb 1794-aentr_flex_i\/o_ethernet\/ip_adapter compactlo…
|
The web-server password-authentication functionality in Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E cont…
|
CWE-287
Improper Authentication
|
CVE-2012-6440
|
2013-01-26 01:31 |
2013-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261446
|
- |
|
rockwellautomation
|
controllogix_controllers guardlogix_controllers micrologix softlogix_controllers 1756-enbt 1756-eweb 1768-enbt 1768-eweb 1794-aentr_flex_i\/o_ethernet\/ip_adapter compactlo…
|
Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/…
|
NVD-CWE-Other
|
CVE-2012-6439
|
2013-01-26 01:29 |
2013-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261447
|
- |
|
rockwellautomation
|
controllogix_controllers guardlogix_controllers micrologix softlogix_controllers 1756-enbt 1756-eweb 1768-enbt 1768-eweb 1794-aentr_flex_i\/o_ethernet\/ip_adapter compactlo…
|
Buffer overflow in Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter;…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-6438
|
2013-01-26 01:26 |
2013-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261448
|
- |
|
rockwellautomation
|
controllogix_controllers guardlogix_controllers micrologix softlogix_controllers 1756-enbt 1756-eweb 1768-enbt 1768-eweb 1794-aentr_flex_i\/o_ethernet\/ip_adapter compactlo…
|
Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter; 1794-AENTR FLEX I/…
|
CWE-287
Improper Authentication
|
CVE-2012-6437
|
2013-01-26 01:25 |
2013-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261449
|
- |
|
rockwellautomation
|
controllogix_controllers guardlogix_controllers micrologix softlogix_controllers 1756-enbt 1756-eweb 1768-enbt 1768-eweb 1794-aentr_flex_i\/o_ethernet\/ip_adapter compactlo…
|
Buffer overflow in Rockwell Automation EtherNet/IP products; 1756-ENBT, 1756-EWEB, 1768-ENBT, and 1768-EWEB communication modules; CompactLogix L32E and L35E controllers; 1788-ENBT FLEXLogix adapter;…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2012-6436
|
2013-01-26 01:24 |
2013-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
261450
|
- |
|
proftpd
|
proftpd
|
ProFTPD before 1.3.5rc1, when using the UserOwner directive, allows local users to modify the ownership of arbitrary files via a race condition and a symlink attack on the (1) MKD or (2) XMKD command…
|
CWE-362
Race Condition
|
CVE-2012-6095
|
2013-01-25 14:00 |
2013-01-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|