| OSVDB ID | Disclosure Date | Title |
|
77734
Description:
BrowserCRM contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the modules/Documents/index.php script not properly sanitizing user-supplied input to the 'contact_id' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-12-14
|
BrowserCRM modules/Documents/index.php contact_id Parameter SQL Injection
|
|
77735
Description:
BrowserCRM contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the index.php script not properly sanitizing user-supplied input to the 'login[username]' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-12-14
|
BrowserCRM index.php login[username] Parameter SQL Injection
|
|
77738
Description:
JBoss Enterprise Portal Platform contains multiple unspecified flaws that allow remote cross-site scripting (XSS) attacks. These flaw exist because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-12-14
|
JBoss Enterprise Portal Platform Multiple Unspecified XSS
|
|
77770
Description:
Nagios XI contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'hostgroup' and 'style' parameters upon submission to the includes/components/xicore/status.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-12-14
|
Nagios XI includes/components/xicore/status.php Multiple Parameter XSS
|
|
78084
Description:
Zabbix contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'gname' (Host name) parameter upon submission to the usergrps.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-12-14
|
Zabbix usergrps.php gname Parameter XSS
|
|
78589
Description:
Scan to PDF Free Application for Android contains a flaw related that may allow a remote attacker to access and manipulate data relating to a user's Google account and scanned files.
|
2011-12-14
|
Scan to PDF Free (com.scan.to.pdf.trial) Application for Android Unspecified User Private Data Manipulation
|
|
78591
Description:
360 KouXin Application for Android contains a flaw related that may allow a remote attacker to access and manipulate data relating to a user's SMS or contact list.
|
2011-12-14
|
360 KouXin (com.qihoo360.kouxin) Application for Android Unspecified User SMS / Contact List Manipulation
|
|
78592
Description:
AnGuanJia Application for Android contains a flaw related that may allow a remote attacker to access and manipulate data relating to a user's SMS or contact list.
|
2011-12-14
|
AnGuanJia (com.anguanjia.safe) Application for Android Unspecified User SMS / Contact List Manipulation
|
|
79418
Description:
Unknown / Incomplete
|
2011-12-14
|
Absolute Privacy Plugin for WordPress wp-content/plugins/absolute-privacy/functions.php abpr_authenticateUser() Function Admin Authentication Bypass
|
|
82684
Description:
Roundcube Webmail contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate input passed via embedded image attachments before returning it to the user. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-12-14
|
Roundcube Webmail Embedded Image Attachment XSS
|
|
84175
Description:
WebKit contains a use-after-free error that is triggered when parsing isolates during run layout. With a specially crafted web page, a context-dependent attacker can dereference already freed memory and potentially execute arbitrary code.
|
2011-12-14
|
WebKit Run Layout Isolates Parsing Use-after-free Issue
|
|
91857
Description:
Juniper IVE OS Secure Access (SA) contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input passed via the JSAM (Secure Access Manager) page before returning it to the user. This may allow an attacker to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-12-14
|
Juniper IVE OS Secure Access (SA) Unspecified JSAM (Secure Access Manager) Page XSS
|
|
77668
Description:
Microsoft Office PowerPoint is prone to a flaw in the way it loads dynamic-link libraries (DLL). The program uses a fixed path to look for specific files or libraries. This path includes directories that may not be trusted or under user control. By placing a custom version of the file or library in the path, the program will load it before the legitimate version. This allows an attacker to inject custom code that will be run with the privilege of the program or user executing the program. This can be done by tricking a user into opening a PowerPoint file from the local file system or a USB drive in some cases. This attack can be leveraged remotely in some cases by placing the malicious file or library on a network share or extracted archive downloaded from a remote source.
|
2011-12-13
|
Microsoft Office PowerPoint Path Subversion Arbitrary DLL Injection Code Execution
|
|
78667
Description:
Unknown / Incomplete
|
2011-12-13
|
Oracle Java SE / Java for Business java:classes_net HttpsUrlConnection Authenticated Proxy Tunnel Handling Overflow
|
|
77659
Description:
Microsoft Office contains a flaw that is triggered when a use-after-free error occurs during the handling of certain border properties with in word documents. This may allow a remote attacker to execute arbitrary code.
|
2011-12-13
|
Microsoft Office Use-after-free Border Property Word Document Handling Remote Code Execution
|
|
77660
Description:
A memory corruption flaw exists in Microsoft Windows Media Player and Windows Media Center. The program fails to sanitize user-supplied input resulting in memory corruption. With a specially crafted DVR-MS file, a context-dependent attacker can execute arbitrary code.
|
2011-12-13
|
Microsoft Windows Media Player / Center DVR-MS File Handling Remote Memory Corruption
|
|
77662
Description:
Microsoft Windows contains a flaw that may allow an attacker to gain access to unauthorized privileges. The issue is triggered when an error occurs in the Client/Server Run-time Subsystem (CSRSS) within Csrsrv.dll when parsing a device event message. This may potentially allow an attacker to gain escalated privileges.
|
2011-12-13
|
Microsoft Windows CSRSS Device Event Message Parsing Local Privilege Escalation
|
|
77663
Description:
Microsoft Windows contains a flaw that is triggered when an error occurs in Object Linking and Embedding, when parsing an object file. This may allow an attacker to execute arbitrary code.
|
2011-12-13
|
Microsoft Windows Object Linking and Embedding (OLE) Object File Handling Remote Code Execution
|
|
77666
Description:
Microsoft Windows contains a flaw that may allow an attacker to gain access to unauthorized privileges. The issue is triggered when error occurs in the kernel exception handler, which may allow a local attacker to gain escalated privileges.
|
2011-12-13
|
Microsoft Windows Kernel Exception Handler Local Privilege Escalation
|
|
77667
Description:
Microsoft Windows is prone to an overflow condition. The Active Directory implementation fails to properly sanitize user-supplied input resulting in a buffer overflow. With a specially crafted query, a remote attacker can potentially execute arbitrary code.
|
2011-12-13
|
Microsoft Windows Active Directory Query Parsing Remote Overflow
|
|
77674
Description:
Microsoft IE is prone to a flaw in the way it loads dynamic-link libraries (DLL). The program uses a fixed path to look for specific files or libraries. This path includes directories that may not be trusted or under user control. By placing a custom version of the file or library in the path, the program will load it before the legitimate version. This allows an attacker to inject custom code that will be run with the privilege of the program or user executing the program. This can be done by tricking a user into opening an HTML file from the local file system or a USB drive in some cases. This attack can be leveraged remotely in some cases by placing the malicious file or library on a network share or extracted archive downloaded from a remote source.
|
2011-12-13
|
Microsoft IE Path Subversion Arbitrary DLL Injection Code Execution
|
|
77700
Description:
Bokken contains a flaw that may allow a malicious local user to create arbitrary files on the system. The issue is due to the program creating temporary files insecurely. It is possible for a local attacker to use a symlink attack to cause the program to unexpectedly write to, or overwrite an attacker specified file.
|
2011-12-13
|
Bokken Temporary File Symlink Arbitrary File Creation
|
|
77721
Description:
Adobe ColdFusion contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input passed via the cfform tag before returning it to the user. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-12-13
|
Adobe ColdFusion cfform Tag Unspecified XSS
|
|
77715
Description:
(Description Provided by CVE) : Use-after-free vulnerability in Google Chrome before 16.0.912.63 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to Range handling.
|
2011-12-13
|
Google Chrome Range Handling Use-after-free Remote Code Execution
|
|
77720
Description:
WebKit contains a use-after-free error in the 'InlineBidiResolver::appendRun' function in WebCore/rendering/InlineIterator.h when handling mixed direction text runs. With a specially crafted web page, a context-dependent attacker can dereference already freed memory and potentially execute arbitrary code.
|
2011-12-13
|
WebKit Mixed Direction Text Runs Handling Use-after-free Issue
|
|
77722
Description:
Adobe ColdFusion contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input passed via the RDS component before returning it to the user. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2011-12-13
|
Adobe ColdFusion Remote Development Service (RDS) Unspecified XSS
|
|
77748
Description:
(Description Provided by CVE) : ipmievd (aka the IPMI event daemon) in OpenIPMI, as used in the ipmitool package 1.8.11 in Red Hat Enterprise Linux (RHEL) 6, Debian GNU/Linux, Fedora 16, and other products uses 0666 permissions for its ipmievd.pid PID file, which allows local users to kill arbitrary processes by writing to this file.
|
2011-12-13
|
IMPItool ipmievd PID File Process ID Exchange Local DoS
|
|
78669
Description:
Unknown / Incomplete
|
2011-12-13
|
Oracle Java SE / Java for Business java:classes_util_jarzip Malformed ZIP Handling Resource Consumption DoS
|
|
78668
Description:
Unknown / Incomplete
|
2011-12-13
|
Oracle Java SE / Java for Business java:classes_net URI.equals URI Mismatch Weakness
|
|
78666
Description:
Unknown / Incomplete
|
2011-12-13
|
Oracle Java SE / Java for Business java:classes_awt Unspecified Access Violation
|
|
79497
Description:
phpDenora contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the libs/phpdenora/graphs/line.php script not properly sanitizing user-supplied input to the 'sy', 'sm', 'sd', 'ey', 'em' and 'ed' parameters. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2011-12-13
|
phpDenora libs/phpdenora/graphs/line.php Multiple Parameter SQL Injection
|
|
78623
Description:
The Cut the Rope application for Android has trojaned copies available for download on some app markets. These trojans will cause a phone to send SMS messages to premium numbers, charging the user money.
|
2011-12-13
|
Cut the Rope FREE Application for Android Premium Rate SMS Message Trojaned Distribution
|
|
77661
Description:
(Description Provided by CVE) : Microsoft Excel 2003 SP3 and Office 2004 for Mac do not properly handle objects in memory, which allows remote attackers to execute arbitrary code via a crafted Excel spreadsheet, aka "Record Memory Corruption Vulnerability."
|
2011-12-13
|
Microsoft Office Excel Record Parsing Object Handling Remote Memory Corruption
|
|
77664
Description:
(Description Provided by CVE) : Microsoft PowerPoint 2007 SP2; Office 2008 for Mac; Office Compatibility Pack for Word, Excel, and PowerPoint 2007 File Formats SP2; and PowerPoint Viewer 2007 SP2 allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via an invalid OfficeArt record in a PowerPoint document, aka "OfficeArt Shape RCE Vulnerability."
|
2011-12-13
|
Microsoft Office PowerPoint OfficeArt Shape Record PowerPoint File Handling Remote Memory Corruption
|
|
77665
Description:
(Description Provided by CVE) : The Microsoft Time component in DATIME.DLL in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows remote attackers to execute arbitrary code via a crafted web site that leverages an unspecified "binary behavior" in Internet Explorer, aka "Microsoft Time Remote Code Execution Vulnerability."
|
2011-12-13
|
Microsoft Time ActiveX (DATIME.DLL) Unspecified IE Web Page Handling Remote Code Execution
|
|
77670
Description:
(Description Provided by CVE) : Array index error in Microsoft Publisher 2003 SP3, and 2007 SP2 and SP3, allows remote attackers to execute arbitrary code via a crafted Publisher file that leverages incorrect handling of values in memory, aka "Publisher Out-of-bounds Array Index Vulnerability."
|
2011-12-13
|
Microsoft Office Publisher Array Indexing Publisher File Handling Remote Memory Corruption
|
|
77671
Description:
(Description Provided by CVE) : Microsoft Publisher 2003 SP3 allows remote attackers to execute arbitrary code via a crafted Publisher file that leverages incorrect handling of values in memory, aka "Publisher Invalid Pointer Vulnerability."
|
2011-12-13
|
Microsoft Office Publisher Invalid Pointer Publisher File Handling Remote Memory Corruption
|
|
77672
Description:
(Description Provided by CVE) : Microsoft Publisher 2003 SP3, and 2007 SP2 and SP3, allows remote attackers to execute arbitrary code via a crafted Publisher file that leverages incorrect memory handling, aka "Publisher Memory Corruption Vulnerability."
|
2011-12-13
|
Microsoft Office Publisher Unspecified Publisher File Handling Remote Memory Corruption
|
|
77684
Description:
(Description Provided by CVE) : The br_parse_ip_options function in net/bridge/br_netfilter.c in the Linux kernel before 2.6.39 does not properly initialize a certain data structure, which allows remote attackers to cause a denial of service by leveraging connectivity to a network interface that uses an Ethernet bridge device.
|
2011-12-13
|
Linux Kernel OMAP4 Bridge Networking Interface Network Packet Parsing Remote DoS
|
|
77673
Description:
(Description Provided by CVE) : The XSS Filter in Microsoft Internet Explorer 8 allows remote attackers to read content from a different (1) domain or (2) zone via a "trial and error" attack, aka "XSS Filter Information Disclosure Vulnerability."
|
2011-12-13
|
Microsoft IE XSS Filter Event Parsing Cross-Domain Remote Information Disclosure
|