Search Results (323598 CVEs found)

CVE Vendors Products Updated CVSS v3.1
CVE-2012-4981 1 Toshiba 1 Configfree 2024-11-21 8.8 High
Toshiba ConfigFree 8.0.38 has a CF7 File Remote Command Execution Vulnerability
CVE-2012-4980 1 Toshiba 1 Configfree Utility 2024-11-21 7.8 High
Multiple stack-based buffer overflows in CFProfile.exe in Toshiba ConfigFree Utility 8.0.38 allow user-assisted attackers to execute arbitrary code.
CVE-2012-4919 1 Gallery Project 1 Gallery 2024-11-21 9.8 Critical
Gallery Plugin1.4 for WordPress has a Remote File Include Vulnerability
CVE-2012-4900 1 Corel 1 Wordperfect Office X6 2024-11-21 5.5 Medium
Corel WordPerfect Office X6 16.0.0.388 has a DoS Vulnerability via untrusted pointer dereference
CVE-2012-4863 1 Ibm 1 Websphere Mq 2024-11-21 6.5 Medium
IBM WebSphere MQ 7.1 and 7.5: Queue manager has a DoS vulnerability
CVE-2012-4818 1 Ibm 1 Infosphere Information Server 2024-11-21 6.5 Medium
IBM InfoSphere Information Server 8.1, 8.5, and 8,7 could allow a remote authenticated attacker to obtain sensitive information, caused by improper restrictions on directories. An attacker could exploit this vulnerability via the DataStage application to load or import content functionality to view arbitrary files on the system.
CVE-2012-4767 1 Safend 1 Data Protector Agent 2024-11-21 6.1 Medium
An issue exists in Safend Data Protector Agent 3.4.5586.9772 in the securitylayer.log file in the logs.9972 directory, which could let a malicious user decrypt and potentially change the Safend security policies applied to the machine.
CVE-2012-4761 1 Safend 1 Data Protector Agent 2024-11-21 7.8 High
A Privilege Escalation vulnerability exists in the unquoted Service Binary in SDPAgent or SDBAgent in Safend Data Protector Agent 3.4.5586.9772, which could let a local malicious user obtain privileges.
CVE-2012-4760 1 Safend 1 Data Protector Agent 2024-11-21 7.8 High
A Privilege Escalation vulnerability exists in the SDBagent service in Safend Data Protector Agent 3.4.5586.9772, which could let a local malicious user obtain privileges.
CVE-2012-4750 1 Ezhometech 1 Ezserver 2024-11-21 9.8 Critical
A Code Execution vulnerability exists in the memcpy function when processing AMF requests in Ezhometech EzServer 7.0, which could let a remote malicious user execute arbitrary code or cause a Denial of Service
CVE-2012-4606 1 Citrix 1 Xenserver 2024-11-21 7.8 High
Citrix XenServer 4.1, 6.0, 5.6 SP2, 5.6 Feature Pack 1, 5.6 Common Criteria, 5.6, 5.5, 5.0, and 5.0 Update 3 contains a Local Privilege Escalation Vulnerability which could allow local users with access to a guest operating system to gain elevated privileges.
CVE-2012-4603 2 Citrix, Microsoft 3 Receiver, Xenapp Online, Windows 2024-11-21 7.8 High
Citrix XenApp Online Plug-in for Windows 12.1 and earlier, and Citrix Receiver for Windows 3.2 and earlier could allow remote attackers to execute arbitrary code by convincing a target to open a specially crafted file from an SMB or WebDAV fileserver.
CVE-2012-4576 2 Debian, Freebsd 2 Debian Linux, Freebsd 2024-11-21 7.8 High
FreeBSD: Input Validation Flaw allows local users to gain elevated privileges
CVE-2012-4526 1 Piwigo 1 Piwigo 2024-11-21 6.1 Medium
piwigo has XSS in password.php (incomplete fix for CVE-2012-4525)
CVE-2012-4525 1 Piwigo 1 Piwigo 2024-11-21 6.1 Medium
piwigo has XSS in password.php
CVE-2012-4524 2 Fedoraproject, Sillycycle 2 Fedora, Xlockmore 2024-11-21 7.5 High
xlockmore before 5.43 'dclock' security bypass vulnerability
CVE-2012-4519 1 Zenphoto 1 Zenphoto 2024-11-21 6.1 Medium
Zenphoto before 1.4.3.4 admin-news-articles.php date parameter XSS.
CVE-2012-4512 2 Kde, Redhat 5 Kde, Enterprise Linux, Enterprise Linux Desktop and 2 more 2024-11-21 8.8 High
The CSS parser (khtml/css/cssparser.cpp) in Konqueror in KDE 4.7.3 allows remote attackers to cause a denial of service (crash) and possibly read memory via a crafted font face source, related to "type confusion."
CVE-2012-4480 2 Fedoraproject, Ovirt 2 Fedora, Mom 2024-11-21 7.8 High
mom creates world-writable pid files in /var/run
CVE-2012-4451 3 Fedoraproject, Redhat, Zend 3 Fedora, Enterprise Linux, Zend Framework 2024-11-21 6.1 Medium
Multiple cross-site scripting (XSS) vulnerabilities in Zend Framework 2.0.x before 2.0.1 allow remote attackers to inject arbitrary web script or HTML via unspecified input to (1) Debug, (2) Feed\PubSubHubbub, (3) Log\Formatter\Xml, (4) Tag\Cloud\Decorator, (5) Uri, (6) View\Helper\HeadStyle, (7) View\Helper\Navigation\Sitemap, or (8) View\Helper\Placeholder\Container\AbstractStandalone, related to Escaper.