Latest CVE Feed
-
7.8
HIGHCVE-2012-1615
A Privilege Escalation vulnerability exits in Fedoraproject Sectool due to an incorrect DBus file.... Read more
- EPSS Score: %0.10
- Published: Dec. 06, 2019
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2012-1592
A local code execution issue exists in Apache Struts2 when processing malformed XSLT files, which could let a malicious user upload and execute arbitrary files.... Read more
Affected Products : struts- EPSS Score: %0.81
- Published: Dec. 05, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICAL- EPSS Score: %0.91
- Published: Dec. 10, 2019
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2012-1572
OpenStack Keystone: extremely long passwords can crash Keystone by exhausting stack space... Read more
- EPSS Score: %0.42
- Published: Nov. 12, 2019
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2012-1567
LinuxMint as of 2012-03-19 has temporary file creation vulnerabilities in mintUpdate.... Read more
Affected Products : linuxmint- EPSS Score: %0.24
- Published: Feb. 07, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2012-1566
LinuxMint as of 2012-03-19 has temporary file creation vulnerabilities in mintNanny.... Read more
Affected Products : linuxmint- EPSS Score: %0.24
- Published: Feb. 07, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2012-1563
Joomla! before 2.5.3 allows Admin Account Creation.... Read more
Affected Products : joomla\!- EPSS Score: %0.42
- Published: Jan. 15, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2012-1562
Joomla! core before 2.5.3 allows unauthorized password change.... Read more
Affected Products : joomla\!- EPSS Score: %0.01
- Published: Jan. 15, 2020
- Modified: Nov. 21, 2024
-
5.4
MEDIUMCVE-2012-1500
Stored XSS vulnerability in UpdateFieldJson.jspa in JIRA 4.4.3 and GreenHopper before 5.9.8 allows an attacker to inject arbitrary script code.... Read more
- EPSS Score: %0.22
- Published: Feb. 13, 2020
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2012-1496
Local file inclusion in WebCalendar before 1.2.5.... Read more
Affected Products : webcalendar- EPSS Score: %0.80
- Published: Jan. 27, 2020
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2012-1495
install/index.php in WebCalendar before 1.2.5 allows remote attackers to execute arbitrary code via the form_single_user_login parameter.... Read more
Affected Products : webcalendar- EPSS Score: %88.48
- Published: Jan. 27, 2020
- Modified: Nov. 21, 2024
-
7.4
HIGHCVE-2012-1326
Cisco IronPort Web Security Appliance up to and including 7.5 does not validate the basic constraints of the certificate authority which could lead to MITM attacks... Read more
Affected Products : ironport_web_security_appliance- EPSS Score: %0.14
- Published: Jan. 15, 2020
- Modified: Nov. 21, 2024
-
5.9
MEDIUMCVE-2012-1316
Cisco IronPort Web Security Appliance does not check for certificate revocation which could lead to MITM attacks... Read more
Affected Products : ironport_web_security_appliance- EPSS Score: %0.20
- Published: Jan. 15, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-1261
Cross-site scripting (XSS) vulnerability in cgi-bin/scrut_fa_exclusions.cgi in Plixer International Scrutinizer NetFlow and sFlow Analyzer 8.6.2.16204 and other versions before 9.0.1.19899 allows remote attackers to inject arbitrary web script or HTML via... Read more
Affected Products : scrutinizer_netflow_\&_sflow_analyzer- EPSS Score: %5.58
- Published: Jan. 09, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-1260
Cross-site scripting (XSS) vulnerability in cgi-bin/userprefs.cgi in Plixer International Scrutinizer NetFlow & sFlow Analyzer 8.6.2.16204, and possibly other versions before 9.0.1.19899, allows remote attackers to inject arbitrary web script or HTML via ... Read more
Affected Products : scrutinizer_netflow_\&_sflow_analyzer- EPSS Score: %3.92
- Published: Jan. 09, 2020
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2012-1259
Multiple SQL injection vulnerabilities in Plixer International Scrutinizer NetFlow & sFlow Analyzer 8.6.2.16204, and possibly other versions before 9.0.1.19899, allow remote attackers to execute arbitrary SQL commands via the (1) addip parameter to cgi-bi... Read more
Affected Products : scrutinizer_netflow_\&_sflow_analyzer- EPSS Score: %14.25
- Published: Jan. 09, 2020
- Modified: Nov. 21, 2024
-
6.5
MEDIUMCVE-2012-1258
cgi-bin/userprefs.cgi in Plixer International Scrutinizer NetFlow & sFlow Analyzer before 9.0.1.19899 does not validate user permissions, which allow remote attackers to add user accounts with administrator privileges via the newuser, pwd, and selectedUse... Read more
Affected Products : scrutinizer_netflow_\&_sflow_analyzer- EPSS Score: %4.78
- Published: Jan. 09, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2012-1257
Pidgin 2.10.0 uses DBUS for certain cleartext communication, which allows local users to obtain sensitive information via a dbus session monitor.... Read more
Affected Products : pidgin- EPSS Score: %0.23
- Published: Nov. 20, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2012-1187
Bitlbee does not drop extra group privileges correctly in unix.c... Read more
Affected Products : bitlbee- EPSS Score: %0.43
- Published: Oct. 29, 2019
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2012-1170
Moodle before 2.2.2 has an external enrolment plugin context check issue where capability checks are not thorough... Read more
- EPSS Score: %0.47
- Published: Nov. 14, 2019
- Modified: Nov. 21, 2024