Browse Database

Browsing Vulnerabilities Disclosed in December of 2011

<< Back to Browse
OSVDB IDDisclosure DateTitle
85230 2011-12-27 tForum viewboard.php BoardID Parameter SQL Injection
78070 2011-12-27 Winn Guestbook index.php name Parameter XSS
84878 2011-12-27 FFmpeg libavfilter/avfilter.c avfilter_filter_samples Function Media File Handling Overflow
85229 2011-12-27 tForum viewtopic.php TopicID Parameter SQL Injection
85231 2011-12-27 tForum viewcat.php CatID Parameter SQL Injection
78043 2011-12-27 CoCSoft Stream Down Download Request Response String Parsing Remote Overflow
85232 2011-12-27 tForum member.php username Parameter XSS
78282 2011-12-26 Multiple Router Wi-Fi Protected Setup (WPS) Protocol External Registrar Authentication EAP-NACK Message Remote PIN Disclosure
78023 2011-12-26 vtiger CRM graph.php Database Backup Information Disclosure
78122 2011-12-26 Simple File Upload Module for Joomla! modules/mod_simplefileuploadv1.3/helper.php File Upload Arbitrary Code Execution
79998 2011-12-26 OllyDBG Sym File Handling Remote Overflow
82590 2011-12-26 Nagios Plugins check_ups Local Overflow
82591 2011-12-26 Free Image Hosting Script File Upload Arbitrary Code Execution
82592 2011-12-25 OpenEMR Patient Photograph Upload Remote Code Execution
78025 2011-12-25 Mailing List Plugin for WordPress wp-content/plugins/mailz/lists/dl.php Multiple Parameter Traversal Arbitrary File Access
78107 2011-12-25 GraphicsClone Script search/ term Parameter XSS
86240 2011-12-25 WP Live.php Module for WordPress wp-live.php s Parameter XSS
78020 2011-12-24 FreeBSD telnetd Multiple telnet/libtelnet/encrypt.c encrypt_keyid() Function Command Parsing Remote Overflow
78283 2011-12-24 Oracle MySQL NULL Pointer Dereference Packet Parsing Remote DoS
82595 2011-12-24 freeSSHd Malformed Packet Handling Remote DoS
85331 2011-12-24 FFmpeg j2k.c get_sot Function curtileno Variable Remote Overflow
82605 2011-12-24 Microsoft Windows Explorer Crafted Subdirectory Parent Directory Deletion Local DoS
82604 2011-12-24 Microsoft Windows Media Player Streamed Broadcast Handling Remote Overflow
77994 2011-12-23 Blueberry (BB) FlashBack SDK ActiveX (BBFlashBack.Recorder.dll) Multiple Method Remote Code Execution
77995 2011-12-23 Public Knowledge Project Multiple Product PHP File Upload CSRF
78021 2011-12-23 FreeBSD pam_ssh Module Unencrypted SSH Private Keys Passphrase Authentication Bypass
78235 2011-12-23 KnowledgeTree config/dmsDefaults.php URI XSS
78313 2011-12-23 Apple QuickTime RLE BGRA Decoding Video File Handling Remote Overflow
78127 2011-12-23 tinyguestbook sign.php msg Parameter XSS
81871 2011-12-23 Cisco Unified IP Phones RT Phone Configuration Information Download Local Privilege Escalation
78312 2011-12-23 Siemens SIMATIC WinCC HMI Authentication Token Generation Weakness Authentication Bypass
84149 2011-12-23 WebKit 'AccessibilityRenderObject::childrenChanged' Function Use-after-free Issue
77982 2011-12-22 pfSense CA x.509 Certificate TRUE Arbitrary Sub-Certificate Issuing Weakness
78013 2011-12-22 Tiki Wiki CMS/Groupware snarf_ajax.php PHP Code Execution CSRF
78014 2011-12-22 Linux Kernel SG_IO SCSI IOCTL Command Parsing Local Privilege Escalation
78019 2011-12-22 Whois.Cart() ordernow.php domainname Parameter XSS
78044 2011-12-22 HP Database Archiving Software Packet Field Parsing Overflow
78045 2011-12-22 HP Database Archiving Software GIOP Packet Parsing Overflow
78046 2011-12-22 DataDirect SequeLink oaagent.exe GIOP Packet Parsing Remote Overflow
78233 2011-12-21 Cogent DataHub Unspecified XSS

The database information may change without any notice. Use of the information constitutes acceptance for use in an AS IS condition, and there are NO warranties, implied or otherwise, with regard to this information or its use. Any use of this information is at the user's risk. In no event shall the copyright holder or distributor (OSVDB or OSF) be held liable for any damages whatsoever arising out of or in connection with the use or spread of this information.

© Copyright 2002 - 2013 Open Source Vulnerability Database (OSVDB), All Rights Reserved.
Privacy Statement - Terms of Use