CVE-2012-2130
- EPSS 0.07%
- Veröffentlicht 06.12.2019 18:15:10
- Zuletzt bearbeitet 21.11.2024 01:38:33
A Security Bypass vulnerability exists in PolarSSL 0.99pre4 through 1.1.1 due to a weak encryption error when generating Diffie-Hellman values and RSA keys.
CVE-2019-19617
- EPSS 1.16%
- Veröffentlicht 06.12.2019 03:15:10
- Zuletzt bearbeitet 21.11.2024 04:35:04
phpMyAdmin before 4.9.2 does not escape certain Git information, related to libraries/classes/Display/GitRevision.php and libraries/classes/Footer.php.
CVE-2012-1114
- EPSS 0.84%
- Veröffentlicht 05.12.2019 21:15:11
- Zuletzt bearbeitet 21.11.2024 01:36:27
A Cross-Site Scripting (XSS) vulnerability exists in LDAP Account Manager (LAM) Pro 3.6 in the filter parameter to cmd.php in an export and exporter_id action. and the filteruid parameter to list.php.
CVE-2012-1115
- EPSS 0.84%
- Veröffentlicht 05.12.2019 21:15:11
- Zuletzt bearbeitet 21.11.2024 01:36:28
A Cross-Site Scripting (XSS) vulnerability exists in LDAP Account Manager (LAM) Pro 3.6 in the export, add_value_form, and dn parameters to cmd.php.
CVE-2019-16770
- EPSS 1.59%
- Veröffentlicht 05.12.2019 20:15:10
- Zuletzt bearbeitet 21.11.2024 04:31:09
In Puma before versions 3.12.2 and 4.3.1, a poorly-behaved client could use keepalive requests to monopolize Puma's reactor and create a denial of service attack. If more keepalive connections to Puma are opened than there are threads available, addi...
CVE-2012-1105
- EPSS 0.15%
- Veröffentlicht 05.12.2019 19:15:15
- Zuletzt bearbeitet 21.11.2024 01:36:26
An Information Disclosure vulnerability exists in the Jasig Project php-pear-CAS 1.2.2 package in the /tmp directory. The Central Authentication Service client library archives the debug logging file in an insecure manner.
CVE-2012-1104
- EPSS 0.24%
- Veröffentlicht 05.12.2019 18:15:12
- Zuletzt bearbeitet 21.11.2024 01:36:25
A Security Bypass vulnerability exists in the phpCAS 1.2.2 library from the jasig project due to the way proxying of services are managed.
CVE-2013-0326
- EPSS 0.11%
- Veröffentlicht 05.12.2019 17:15:11
- Zuletzt bearbeitet 21.11.2024 01:47:18
OpenStack nova base images permissions are world readable
CVE-2019-19553
- EPSS 0.66%
- Veröffentlicht 05.12.2019 01:15:14
- Zuletzt bearbeitet 21.11.2024 04:34:57
In Wireshark 3.0.0 to 3.0.6 and 2.6.0 to 2.6.12, the CMS dissector could crash. This was addressed in epan/dissectors/asn1/cms/packet-cms-template.c by ensuring that an object identifier is set to NULL after a ContentInfo dissection.
CVE-2013-2745
- EPSS 0.39%
- Veröffentlicht 04.12.2019 22:15:15
- Zuletzt bearbeitet 21.11.2024 01:52:17
An SQL Injection vulnerability exists in MiniDLNA prior to 1.1.0