Browse Database

Browsing Vulnerabilities Disclosed in December of 2011

<< Back to Browse
OSVDB IDDisclosure DateTitle
91925 2011-12-13 Instructure Canvas AJAX Request Call Multiple Action CSRF
77991 2011-12-12 SafeNet Sentinel HASP Admin Control Center Unspecified XSS
78027 2011-12-12 Schneider Electric PowerLogic ION / Quantum Ethernet Module fwupgrade Account Insecure Password Generation Multiple Message Parsing Remote Authentication Bypass
77741 2011-12-12 RSA SecurID Software Token Path Subversion Arbitrary DLL Injection Code Execution
78028 2011-12-12 Schneider Electric Quantum Ethernet Module MODBUS 125 Function Code Parsing Remote Firmware Update Installation
77638 2011-12-12 Winamp in_mod.dll Plugin Song Message Data Impulse Tracker (IT) File Handling Remote Overflow
77690 2011-12-12 RSA Adaptive Authentication On-Premise Data Element Validation Unauthorized Device Recovery
77691 2011-12-12 RSA Adaptive Authentication On-Premise Mobile Device Token Validation Authentication Bypass
77695 2011-12-12 Splunk Remote Code Execution CSRF
78035 2011-12-12 Splunk Web API Traversal Arbitrary File Access
77636 2011-12-12 Winamp in_avi.dll Plugin Stream Header Value Memory Allocation AVI File Handling Remote Overflow
77637 2011-12-12 Winamp in_avi.dll Plugin RIFF INFO Chunk Size Memory Allocation AVI File Handling Remote Overflow
77694 2011-12-12 Splunk Unspecified XSS
77704 2011-12-12 Squiz Matrix a Parameter Remote Username Enumeration
88047 2011-12-12 IBM WebSphere Operational Decision Management RTS Error Page Cause Message XSS
77635 2011-12-11 Family Connections CMS (FCMS) Multiple Function CSRF
77633 2011-12-11 UPM Polls Plugin for WordPress wp-admin/admin-ajax.php PID Parameter SQL Injection
83188 2011-12-11 Pixie CMS Blog Post CSRF
83158 2011-12-11 XOOPS admin.php selgroups Parameter SQL Injection
82593 2011-12-10 PuTTY Session Password Memory Dump Cleartext Local Disclosure
83196 2011-12-10 Family Connections CMS (FCMS) familynews.php Text Area Field XSS
83197 2011-12-10 Family Connections CMS (FCMS) calendar.php Event Field XSS
77600 2011-12-10 CyberLink Power2Go Project Editor Filename Field P2G File Handling Overflow
77639 2011-12-10 RocksnDiamonds ~/.rocksndiamonds/ Directory Symlink Arbitrary File Overwrite
77780 2011-12-10 Linux Kernel B.A.T.M.A.N. net/batman/icmp_socket.c bat_socket_read() Packet Parsing Remote Overflow
83198 2011-12-10 Family Connections CMS (FCMS) recipes.php Name Field XSS
83189 2011-12-10 Linux Kernel on MIPS Unspecified Reboot Local DoS
77580 2011-12-09 HitAppoint index.php username Parameter SQL Injection
81844 2011-12-09 Cisco Carrier Routing System GRE Packet Parsing Remote DoS
77594 2011-12-09 FFFTP readme.exe Path Subversion Executable File Injection Code Execution
77940 2011-12-09 HTML::Template::Pro Template Parameters XSS
83190 2011-12-09 Free Opener Malformed JPG Handling DoS
77591 2011-12-09 SePortal redirect.php goto Parameter SQL Injection
77601 2011-12-09 CyberLink WaveEditor Project Editor Filename Field WVE File Handling Overflow
77632 2011-12-09 DoceboLMS index.php message[attach] Parameter File Upload Remote PHP Code Execution
77643 2011-12-09 ClassifiedsGeek Pet Listing preview.php bedroom_from Parameter XSS
78088 2011-12-09 ConfigServer Security & Firewall CFS.c admin.list File Handling Remote Overflow
78286 2011-12-09 Siemens Tecnomatix FactoryLink ActBar.ocx Save Method Remote Arbitrary File Write
78287 2011-12-09 Siemens Tecnomatix FactoryLink WebClient ActiveX Control Location URL Parameter Parsing Remote Code Execution
85228 2011-12-09 DoceboLMS iotask Module lib/lib.iotask.php save_connection Function Multiple Parameter SQL Injection

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2002 - 2013 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use