260761
|
- |
|
rsa
|
access_manager_agent access_manager_server
|
EMC RSA Access Manager Server 6.x before 6.1 SP4 and RSA Access Manager Agent do not properly validate session tokens after a logout, which might allow remote attackers to conduct replay attacks via …
|
CWE-287
Improper Authentication
|
CVE-2012-2281
|
2013-03-22 12:10 |
2012-07-5 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260762
|
- |
|
emc
|
celerra_network_server vnx vnxe
|
EMC Celerra Network Server 6.x before 6.0.61.0, VNX 7.x before 7.0.53.2, and VNXe 2.0 and 2.1 before 2.1.3.19077 (aka MR1 SP3.2) and 2.2 before 2.2.0.19078 (aka MR2 SP0.2) do not properly implement N…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2012-2282
|
2013-03-22 12:10 |
2012-07-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260763
|
- |
|
otrs
|
otrs otrs_itsm
|
Multiple cross-site scripting (XSS) vulnerabilities in Open Ticket Request System (OTRS) Help Desk 2.4.x before 2.4.13, 3.0.x before 3.0.15, and 3.1.x before 3.1.9, and OTRS ITSM 2.1.x before 2.1.5, …
|
CWE-79
Cross-site Scripting
|
CVE-2012-2582
|
2013-03-22 12:10 |
2012-08-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260764
|
- |
|
hp
|
web_jetadmin
|
Multiple cross-site scripting (XSS) vulnerabilities in HP Web Jetadmin 8.x allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2012-2011
|
2013-03-22 12:09 |
2012-06-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260765
|
- |
|
hp
|
photosmart_e-all-in-one_printer_series photosmart_estation_all-in-one-printer_series photosmart_ink_advantage_e-all-in-one photosmart_plus_e-all-in-one_printer_series photosmart_premium_f…
|
Unspecified vulnerability on HP Photosmart Wireless e-All-in-One B110, e-All-in-One D110, Plus e-All-in-One B210, eStation All-in-One C510, Ink Advantage e-All-in-One K510, and Premium Fax e-All-in-O…
|
NVD-CWE-noinfo
|
CVE-2012-2017
|
2013-03-22 12:09 |
2012-06-30 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260766
|
- |
|
hp
|
network_node_manager_i
|
Cross-site scripting (XSS) vulnerability in HP Network Node Manager i (NNMi) 8.x, 9.0x, and 9.1x allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
CWE-79
Cross-site Scripting
|
CVE-2012-2018
|
2013-03-22 12:09 |
2012-07-6 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260767
|
- |
|
selinc
|
acselerator_quickset
|
Schweitzer Engineering Laboratories (SEL) AcSELerator QuickSet before 5.12.0.1 uses weak permissions for its Program Files directory, which allows local users to replace executable files, and consequ…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-0665
|
2013-03-22 06:04 |
2013-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260768
|
- |
|
redhat
|
libvirt
|
libvirt 1.0.2 and earlier sets the group owner to kvm for device files, which allows local users to write to these files via unspecified vectors.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-1766
|
2013-03-22 01:34 |
2013-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260769
|
- |
|
zoneminder
|
zoneminder
|
Multiple directory traversal vulnerabilities in ZoneMinder 1.24.x before 1.24.4 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) view, (2) request, or (3) action parameter.
|
CWE-22
Path Traversal
|
CVE-2013-0332
|
2013-03-22 01:31 |
2013-03-21 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
260770
|
- |
|
zugec_ivan
|
keyboard_shortcut_utility
|
The Keyboard Shortcut Utility module 7.x-1.x before 7.x-1.1 for Drupal does not properly check node restrictions, which allows (1) remote authenticated users with the "view shortcuts" permission to r…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2013-0226
|
2013-03-21 23:45 |
2013-03-19 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|