Latest CVE Feed
-
6.1
MEDIUMCVE-2012-4767
An issue exists in Safend Data Protector Agent 3.4.5586.9772 in the securitylayer.log file in the logs.9972 directory, which could let a malicious user decrypt and potentially change the Safend security policies applied to the machine.... Read more
Affected Products : data_protector_agent- Published: Jan. 13, 2020
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2012-4761
A Privilege Escalation vulnerability exists in the unquoted Service Binary in SDPAgent or SDBAgent in Safend Data Protector Agent 3.4.5586.9772, which could let a local malicious user obtain privileges.... Read more
Affected Products : data_protector_agent- Published: Jan. 13, 2020
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2012-4760
A Privilege Escalation vulnerability exists in the SDBagent service in Safend Data Protector Agent 3.4.5586.9772, which could let a local malicious user obtain privileges.... Read more
Affected Products : data_protector_agent- Published: Jan. 13, 2020
- Modified: Nov. 21, 2024
-
9.8
CRITICALCVE-2012-4750
A Code Execution vulnerability exists in the memcpy function when processing AMF requests in Ezhometech EzServer 7.0, which could let a remote malicious user execute arbitrary code or cause a Denial of Service... Read more
Affected Products : ezserver- Published: Jan. 13, 2020
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2012-4606
Citrix XenServer 4.1, 6.0, 5.6 SP2, 5.6 Feature Pack 1, 5.6 Common Criteria, 5.6, 5.5, 5.0, and 5.0 Update 3 contains a Local Privilege Escalation Vulnerability which could allow local users with access to a guest operating system to gain elevated privile... Read more
Affected Products : xenserver- Published: Jan. 23, 2020
- Modified: Nov. 21, 2024
-
9.3
HIGHCVE-2012-4603
Citrix XenApp Online Plug-in for Windows 12.1 and earlier, and Citrix Receiver for Windows 3.2 and earlier could allow remote attackers to execute arbitrary code by convincing a target to open a specially crafted file from an SMB or WebDAV fileserver.... Read more
- Published: Jan. 10, 2020
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2012-4576
FreeBSD: Input Validation Flaw allows local users to gain elevated privileges... Read more
- Published: Dec. 02, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-4526
piwigo has XSS in password.php (incomplete fix for CVE-2012-4525)... Read more
Affected Products : piwigo- Published: Dec. 02, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUM- Published: Dec. 02, 2019
- Modified: Nov. 21, 2024
-
7.5
HIGHCVE-2012-4524
xlockmore before 5.43 'dclock' security bypass vulnerability... Read more
- Published: Nov. 21, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-4519
Zenphoto before 1.4.3.4 admin-news-articles.php date parameter XSS.... Read more
Affected Products : zenphoto- Published: Feb. 11, 2020
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2012-4512
The CSS parser (khtml/css/cssparser.cpp) in Konqueror in KDE 4.7.3 allows remote attackers to cause a denial of service (crash) and possibly read memory via a crafted font face source, related to "type confusion."... Read more
- Published: Feb. 08, 2020
- Modified: Nov. 21, 2024
-
7.8
HIGHCVE-2012-4480
mom creates world-writable pid files in /var/run... Read more
- Published: Dec. 02, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-4451
Multiple cross-site scripting (XSS) vulnerabilities in Zend Framework 2.0.x before 2.0.1 allow remote attackers to inject arbitrary web script or HTML via unspecified input to (1) Debug, (2) Feed\PubSubHubbub, (3) Log\Formatter\Xml, (4) Tag\Cloud\Decorato... Read more
- Published: Jan. 03, 2020
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-4441
Cross-site Scripting (XSS) in Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers to inject arbitrary web script or HTML in the CI game plugin.... Read more
Affected Products : jenkins- Published: Nov. 18, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-4440
Cross-site Scripting (XSS) in Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers to inject arbitrary web script or HTML in the Violations plugin.... Read more
Affected Products : jenkins- Published: Nov. 18, 2019
- Modified: Nov. 21, 2024
-
6.1
MEDIUMCVE-2012-4439
Cross-site Scripting (XSS) in Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers to inject arbitrary web script or HTML via a crafted URL that points to Jenkins.... Read more
Affected Products : jenkins- Published: Nov. 18, 2019
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2012-4438
Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers with read access and HTTP access to Jenkins master to insert data and execute arbitrary code.... Read more
Affected Products : jenkins- Published: Nov. 18, 2019
- Modified: Nov. 21, 2024
-
8.8
HIGHCVE-2012-4434
fwknop before 2.0.3 allow remote authenticated users to cause a denial of service (server crash) or possibly execute arbitrary code.... Read more
Affected Products : fwknop- Published: Jan. 09, 2020
- Modified: Nov. 21, 2024
-
7.5
HIGH- Published: Dec. 02, 2019
- Modified: Nov. 21, 2024