Latest CVE Feed
-
6.1
MEDIUMCVE-2012-10003
A vulnerability, which was classified as problematic, has been found in ahmyi RivetTracker. This issue affects some unknown processing. The manipulation of the argument $_SERVER['PHP_SELF'] leads to cross site scripting. The attack may be initiated remote... Read more
Affected Products : rivettracker- EPSS Score: %0.06
- Published: Jan. 03, 2023
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-10002
A vulnerability was found in ahmyi RivetTracker. It has been declared as problematic. Affected by this vulnerability is the function changeColor of the file css.php. The manipulation of the argument set_css leads to cross site scripting. The attack can be... Read more
Affected Products : rivettracker- EPSS Score: %0.06
- Published: Jan. 03, 2023
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2012-10001
The Limit Login Attempts plugin before 1.7.1 for WordPress does not clear auth cookies upon a lockout, which might make it easier for remote attackers to conduct brute-force authentication attempts.... Read more
Affected Products : limit_login_attempts- EPSS Score: %0.77
- Published: Jan. 06, 2021
- Modified: Nov. 21, 2024
-
7.4
HIGHCVE-2012-0955
software-properties was vulnerable to a person-in-the-middle attack due to incorrect TLS certificate validation in softwareproperties/ppa.py. software-properties didn't check TLS certificates under python2 and only checked certificates under python3 if a ... Read more
Affected Products : software-properties- EPSS Score: %0.12
- Published: Dec. 02, 2020
- Modified: Nov. 21, 2024
-
5.0
MEDIUMCVE-2012-0953
A race condition was discovered in the Linux drivers for Nvidia graphics which allowed an attacker to exfiltrate kernel memory to userspace. This issue was fixed in version 295.53.... Read more
Affected Products : display_driver- EPSS Score: %0.04
- Published: May. 08, 2020
- Modified: Nov. 21, 2024
-
5.0
MEDIUMCVE-2012-0952
A heap buffer overflow was discovered in the device control ioctl in the Linux driver for Nvidia graphics cards, which may allow an attacker to overflow 49 bytes. This issue was fixed in version 295.53.... Read more
Affected Products : display_driver- EPSS Score: %0.06
- Published: May. 08, 2020
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2012-0951
A Memory Corruption Vulnerability exists in NVIDIA Graphics Drivers 29549 due to an unknown function in the file proc/driver/nvidia/registry.... Read more
Affected Products : display_driver- EPSS Score: %0.07
- Published: Feb. 12, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2012-0945
whoopsie-daisy before 0.1.26: Root user can remove arbitrary files... Read more
Affected Products : whoopsie-daisy- EPSS Score: %0.19
- Published: Jan. 15, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-0941
Multiple cross-site scripting (XSS) vulnerabilities in Fortinet FortiGate UTM WAF appliances with FortiOS 4.3.x before 4.3.6 allow remote attackers to inject arbitrary web script or HTML via vectors involving the (1) Endpoint Monitor, (2) Dialup List, or ... Read more
Affected Products : fortios- EPSS Score: %0.86
- Published: Feb. 08, 2018
- Modified: Nov. 21, 2024
-
7.8
HIGH- EPSS Score: %0.54
- Published: Nov. 22, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2012-0844
Information-disclosure vulnerability in Netsurf through 2.8 due to a world-readable cookie jar.... Read more
- EPSS Score: %0.15
- Published: Feb. 21, 2020
- Modified: Nov. 21, 2024
-
5.5
MEDIUM- EPSS Score: %0.15
- Published: Nov. 19, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUM- EPSS Score: %0.10
- Published: Nov. 19, 2019
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2012-0828
Heap-based buffer overflow in Xchat-WDK before 1499-4 (2012-01-18) xchat 2.8.6 on Maemo architecture could allow remote attackers to cause a denial of service (xchat client crash) or execute arbitrary code via a UTF-8 line from server containing character... Read more
- EPSS Score: %5.89
- Published: Feb. 21, 2020
- Modified: Nov. 21, 2024
-
9.8
CRITICAL- EPSS Score: %0.51
- Published: Nov. 19, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUM- EPSS Score: %0.58
- Published: Nov. 22, 2019
- Modified: Nov. 21, 2024
-
5.5
MEDIUMCVE-2012-0810
The int3 handler in the Linux kernel before 3.3 relies on a per-CPU debug stack, which allows local users to cause a denial of service (stack corruption and panic) via a crafted application that triggers certain lock contention.... Read more
Affected Products : linux_kernel- EPSS Score: %0.05
- Published: Feb. 12, 2020
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2012-0785
Hash collision attack vulnerability in Jenkins before 1.447, Jenkins LTS before 1.424.2, and Jenkins Enterprise by CloudBees 1.424.x before 1.424.2.1 and 1.400.x before 1.400.0.11 could allow remote attackers to cause a considerable CPU load, aka "the Has... Read more
- EPSS Score: %1.94
- Published: Feb. 24, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2012-0771
Adobe Shockwave Player before 11.6.4.634 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2012-0759.... Read more
Affected Products : shockwave_player- EPSS Score: %6.37
- Published: Feb. 19, 2018
- Modified: Nov. 21, 2024
-
5.8
MEDIUMCVE-2012-0718
IBM Tivoli Endpoint Manager 8 does not set the HttpOnly flag on cookies.... Read more
Affected Products : tivoli_endpoint_manager- EPSS Score: %0.19
- Published: Feb. 18, 2020
- Modified: Nov. 21, 2024