Total
22706 CVE
CVE | Vendors | Products | Updated | CVSS v2 | CVSS v3 |
---|---|---|---|---|---|
CVE-2012-5174 | 1 Kyocera | 6 Ah-k3001v, Ah-k3002v, Xw300k and 3 more | 2012-11-30 | 7.8 HIGH | N/A |
The KYOCERA AH-K3001V, AH-K3002V, WX300K, WX310K, WX320K, and WX320KR devices allow remote attackers to cause a denial of service (persistent reboot) via an e-mail message in an invalid format. | |||||
CVE-2011-3506 | 1 Oracle | 1 Sun Products Suite | 2012-11-26 | 4.3 MEDIUM | N/A |
Unspecified vulnerability in the Oracle OpenSSO component in Oracle Sun Products Suite 7.1 and 8.0 allows remote attackers to affect integrity via unknown vectors related to Authentication. | |||||
CVE-2008-3072 | 1 Simple Machines | 1 Simple Machines Forum | 2012-11-26 | 7.5 HIGH | N/A |
Simple Machines Forum (SMF) 1.1.x before 1.1.5 and 1.0.x before 1.0.13, when running in PHP before 4.2.0, does not properly seed the random number generator, which has unknown impact and attack vectors. | |||||
CVE-2008-3073 | 1 Simple Machines | 1 Simple Machines Forum | 2012-11-26 | 7.5 HIGH | N/A |
Unspecified vulnerability in Simple Machines Forum (SMF) 1.1.x before 1.1.5 and 1.0.x before 1.0.13 has unknown impact and attack vectors, probably cross-site scripting (XSS), related to "use of the html-tag." | |||||
CVE-2008-3070 | 1 Mybb | 1 Mybb | 2012-11-26 | 7.5 HIGH | N/A |
Unspecified vulnerability in inc/datahandler/user.php in MyBB before 1.2.13 has unknown impact and attack vectors related to the $user['language'] variable, probably related to SQL injection. | |||||
CVE-2008-3071 | 1 Mybb | 1 Mybb | 2012-11-26 | 7.5 HIGH | N/A |
Directory traversal vulnerability in inc/class_language.php in MyBB before 1.2.13 has unknown impact and attack vectors related to the $language variable. | |||||
CVE-2007-6721 | 1 Bouncycastle | 2 Bouncy-castle-crypto-package, Legion-of-the-bouncy-castle-java-crytography-api | 2012-11-15 | 10.0 HIGH | N/A |
The Legion of the Bouncy Castle Java Cryptography API before release 1.38, as used in Crypto Provider Package before 1.36, has unknown impact and remote attack vectors related to "a Bleichenbacher vulnerability in simple RSA CMS signatures without signed attributes." | |||||
CVE-2012-4514 | 1 Kde | 1 Kde | 2012-11-12 | 5.0 MEDIUM | N/A |
rendering/render_replaced.cpp in Konqueror in KDE before 4.9.3 allows remote attackers to cause a denial of service (NULL pointer dereference) via a crafted web page, related to "trying to reuse a frame with a null part." | |||||
CVE-2012-5672 | 1 Microsoft | 3 Excel, Excel Viewer, Office | 2012-11-07 | 4.3 MEDIUM | N/A |
Microsoft Excel Viewer (aka Xlview.exe) and Excel in Microsoft Office 2007 (aka Office 12) allow remote attackers to cause a denial of service (read access violation and application crash) via a crafted spreadsheet file, as demonstrated by a .xls file with battery voltage data. | |||||
CVE-2011-3519 | 1 Oracle | 1 E-business Suite | 2012-11-05 | 3.5 LOW | N/A |
Unspecified vulnerability in the Oracle Applications Framework component in Oracle E-Business Suite 12.1.2 and 12.1.3 allows remote authenticated users to affect confidentiality, related to REST Services. | |||||
CVE-2011-3507 | 1 Oracle | 1 Sun Products Suite | 2012-11-05 | 3.5 LOW | N/A |
Unspecified vulnerability in the Oracle Communications Unified component in Oracle Sun Products Suite 7.0 allows remote authenticated users to affect integrity via unknown vectors related to Messaging Server. | |||||
CVE-2008-5108 | 1 Adobe | 1 Adobe Air | 2012-10-30 | 6.8 MEDIUM | N/A |
Unspecified vulnerability in Adobe AIR 1.1 and earlier allows context-dependent attackers to execute untrusted JavaScript in an AIR application via unknown attack vectors. | |||||
CVE-2007-4839 | 1 Ibm | 1 Websphere Application Server | 2012-10-30 | 7.5 HIGH | N/A |
Unspecified vulnerability in the PD tools component in IBM WebSphere Application Server (WAS) 6.1 before Fix Pack 11 (6.1.0.11) has unknown impact and attack vectors, aka PK33803. | |||||
CVE-2007-6529 | 1 Tiki | 1 Tikiwiki Cms\/groupware | 2012-10-23 | 10.0 HIGH | N/A |
Multiple unspecified vulnerabilities in TikiWiki before 1.9.9 have unknown impact and attack vectors involving (1) tiki-edit_css.php, (2) tiki-list_games.php, or (3) tiki-g-admin_shared_source.php. | |||||
CVE-2010-2382 | 1 Oracle | 1 Solaris | 2012-10-22 | 3.2 LOW | N/A |
Unspecified vulnerability in Oracle Solaris 8, 9, and 10 allows local users to affect confidentiality and integrity via unknown vectors. | |||||
CVE-2010-2370 | 1 Oracle | 1 Fusion Middleware | 2012-10-22 | 4.3 MEDIUM | N/A |
Unspecified vulnerability in the Oracle Business Process Management component in Oracle Fusion Middleware 5.7 MP3, 6.0 MP5, and 10.3 MP2 allows remote attackers to affect integrity, related to BPM. | |||||
CVE-2010-2371 | 1 Oracle | 1 Supply Chain Products Suite | 2012-10-22 | 1.9 LOW | N/A |
Unspecified vulnerability in the Oracle Transportation Management component in Oracle Supply Chain Products Suite 6.1.1 allows local users to affect confidentiality via unknown vectors, a different vulnerability than CVE-2010-2372. | |||||
CVE-2010-2372 | 1 Oracle | 1 Supply Chain Products Suite | 2012-10-22 | 4.3 MEDIUM | N/A |
Unspecified vulnerability in the Oracle Transportation Management component in Oracle Supply Chain Products Suite 6.1.1 allows remote attackers to affect integrity via unknown vectors, a different vulnerability than CVE-2010-2371. | |||||
CVE-2010-2373 | 1 Oracle | 1 Enterprise Manager Grid Control | 2012-10-22 | 4.3 MEDIUM | N/A |
Unspecified vulnerability in the Console component in Oracle Enterprise Manager Grid Control 10.1.0.6 and 10.2.0.5 allows remote attackers to affect integrity via unknown vectors. | |||||
CVE-2010-2374 | 1 Oracle | 1 Solaris Studio | 2012-10-22 | 3.0 LOW | N/A |
Unspecified vulnerability in Solaris Studio 12 update 1 allows local users to affect confidentiality and integrity via unknown vectors. |