| OSVDB ID | Disclosure Date | Title |
|
78980
Description:
ZENphoto contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the zp-core/admin-albumsort.php script not properly sanitizing user-supplied input to the 'sortableList' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2012-02-02
|
zenphoto zp-core/admin-albumsort.php sortableList Parameter SQL Injection
|
|
78989
Description:
Opera is reportedly prone to multiple overflow conditions. The applications fails to properly sanitize user-supplied input resulting in an integer overflow. With a specially crafted request containing large integer arguments, a remote attacker can potentially cause the application to crash resulting in a loss of availability.
|
2012-02-02
|
Opera Multiple Array Large Integer Argument Parsing Remote Overflow DoS
|
|
78748
Description:
Kitchen recipe Extension for TYPO3 contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to certain unspecified input not being properly sanitized before use in SQL queries. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2012-02-02
|
Kitchen recipe Extension for TYPO3 Unspecified SQL Injection
|
|
78749
Description:
Modern FAQ Extension for TYPO3 contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-02-02
|
Modern FAQ Extension for TYPO3 Unspecified XSS
|
|
78786
Description:
White Papers Extension for TYPO3 contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to certain unspecified input not being properly sanitized before use in SQL queries. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2012-02-02
|
White Papers Extension for TYPO3 Unspecified SQL Injection
|
|
78789
Description:
Post data records to facebook Extension for TYPO3 contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-02-02
|
Post data records to facebook Extension for TYPO3 Unspecified XSS
|
|
78793
Description:
CSS styled Filelinks Extension for TYPO3 contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-02-02
|
CSS styled Filelinks Extension for TYPO3 Unspecified XSS
|
|
78796
Description:
Terminal PHP Shell for TYPO3 contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-02-02
|
Terminal PHP Shell Extension for TYPO3 Unspecified XSS
|
|
78797
Description:
Terminal PHP Shell for TYPO3 contains a flaw that allows a remote Cross-site Request Forgery (CSRF / XSRF) attack. The flaw exists because the application does not require multiple steps or explicit confirmation for sensitive transactions for unspecified functions. By using a crafted URL (e.g., a crafted GET request inside an "img" tag), an attacker may trick the victim into clicking on the image to take advantage of the trust relationship between the authenticated victim and the application. Such an attack could trick the victim into executing arbitrary commands in the context of their session with the application, without further prompting or verification.
|
2012-02-02
|
Terminal PHP Shell Extension for TYPO3 Unspecified CSRF
|
|
78800
Description:
Additional TCA Forms Extension for TYPO3 contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input upon submission to the lib/class.tx_jftcaforms_tceFunc.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-02-02
|
Additional TCA Forms Extension for TYPO3 lib/class.tx_jftcaforms_tceFunc.php Unspecified XSS
|
|
78801
Description:
UrlTool Extension for TYPO3 contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-02-02
|
UrlTool Extension for TYPO3 Unspecified XSS
|
|
78824
Description:
(Description Provided by CVE) : Unspecified vulnerability in Joomla! 1.7.x before 1.7.5 and 2.5.x before 2.5.1 allows attackers to obtain sensitive information via unknown vectors related to "administrator."
|
2012-02-02
|
Joomla! Administrator Section Unspecified Information Disclosure
|
|
78833
Description:
ContentLion Alpha contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate user-supplied input via the URI upon submission to the login.html page. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-02-02
|
ContentLion Alpha login.html URI XSS
|
|
79330
Description:
osCommerce Online Merchant contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'front' field upon submission to the Shirt module. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-02-02
|
OSCommerce Online Merchant Shirt Module Front Field XSS
|
|
79456
Description:
Chyrp contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'content' parameter upon submission to the includes/ajax.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-02-02
|
Chyrp includes/ajax.php content Parameter XSS
|
|
78811
Description:
A memory corruption flaw exists in Mac OS X. The QuickTime functionality fails to sanitize user-supplied input when handling MP4 encoded files resulting in memory corruption. With a specially crafted MP4 file, a context-dependent attacker can cause a denial of service or potentially execute arbitrary code.
|
2012-02-02
|
Apple Mac OS X QuickTime MP4 Encoded File Handling Remote Memory Corruption
|
|
78832
Description:
GhostScript is prone to a flaw in the way it loads dynamic-link libraries (DLL). The program uses a fixed path to look for specific files or libraries. This path includes directories that may not be trusted or under user control. By placing a custom version of the file or library in the path, the program will load it before the legitimate version. This allows an attacker to inject custom code that will be run with the privilege of the program or user executing the program. This can be done by tricking a user into opening a PostScript library file from the local file system or a USB drive in some cases. This attack can be leveraged remotely in some cases by placing the malicious file or library on a network share or extracted archive downloaded from a remote source.
|
2012-02-02
|
GhostScript -P- Option Path Subversion Arbitrary PostScript DLL Injection Code Execution
|
|
78998
Description:
D-Mack Media Currency Converter Module for Joomla! contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'form' parameter upon submission to the includes/convert.php script. This may allow a user to create a specially crafted URL that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-02-02
|
D-Mack Media Currency Converter Module for Joomla! includes/convert.php form Parameter XSS
|
|
79333
Description:
NetSarang Xmanager Enterprise and NetSarang Xlpd contain a flaw that may allow a remote denial of service. The issue is due to the application not validating malformed LPD requests, which causes the service to crash resulting in a loss of availability.
|
2012-02-02
|
NetSarang Xmanager Enterprise / Xlpd LPD Request Parsing Remote DoS
|
|
79334
Description:
SmartyCMS contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate user-supplied input to the 'title bar' upon submission to the template module. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-02-02
|
SmartyCMS Template Module Title Bar XSS
|
|
81859
Description:
Cisco IOS contains a flaw related to the ACL functionality. The issue is triggered when keywords that end in a log or time are discarded. This may allow an attacker to bypass access restrictions via network traffic.
|
2012-02-02
|
Cisco IOS Extended ACL Functionality Log / Time Keyword Line Discarding Network Traffic Parsing Access Restriction Bypass
|
|
78745
Description:
Multiple HTC products contain a flaw that may lead to an unauthorized information disclosure. The issue is triggered due to the 'WifiConfiguration::toString()' method returning WiFi credentials of stored networks in cleartext.
|
2012-02-02
|
HTC Multiple Products WifiConfiguration::toString() Method Wi-Fi Credential Disclosure
|
|
78810
Description:
Multiple memory corruption flaw exists in Mac OS X. The OpenGL component fails to sanitize user-supplied input when handling GLSL compilations resulting in memory corruption. With a specially crafted file containing malformed GLSL shaders, a context-dependent attacker can cause a denial of service or potentially execute arbitrary code.
|
2012-02-02
|
Apple Mac OS X OpenGL Component GLSL Compilation Multiple Unspecified Memory Corruption
|
|
78812
Description:
Mac OS X is prone to an overflow condition. The QuickTime component fails to properly sanitize user-supplied input when handling rdrf atoms in movie files resulting in a single byte buffer overflow. With a specially crafted movie file, a context-dependent attacker can potentially cause arbitrary code execution.
|
2012-02-02
|
Apple Mac OS X QuickTime Movie RDRF Atom Handling Remote Overflow
|
|
78728
Description:
OpenEMR contains a flaw that may allow a remote attacker to execute arbitrary commands or code. The issue is due to the interface/patient_file/encounter/trend_form.php script not properly sanitizing user input, specifically directory traversal style attacks (e.g., ../../) supplied to the 'formname' parameter. This may allow an attacker to include a file from the targeted host that contains arbitrary commands or code that will be executed by the vulnerable script. Such attacks are limited due to the script only calling files already on the target host. In addition, this flaw can potentially be used to disclose the contents of any file on the system accessible by the web server.
|
2012-02-01
|
OpenEMR interface/patient_file/encounter/trend_form.php formname Parameter Traversal Local File Inclusion
|
|
78746
Description:
Drupal contains a flaw related to the Aggregator feed module that allows a remote Cross-site Request Forgery (CSRF / XSRF) attack. The flaw exists because the application does not require multiple steps or explicit confirmation for sensitive transactions for the restarting of the device. By using a crafted URL (e.g., a crafted GET request inside an "img" tag), an attacker may trick the victim into clicking on the image to take advantage of the trust relationship between the authenticated victim and the application. Such an attack could trick the victim into executing arbitrary commands in the context of their session with the application, without further prompting or verification.
|
2012-02-01
|
Drupal Aggregator Feed Update DoS CSRF
|
|
78804
Description:
Mac OS X contains a flaw that may lead to an unauthorized information disclosure. The issue is due to an error within the CFNetwork component when handling URLs, which will disclose sensitive information to a remote attacker.
|
2012-02-01
|
Apple Mac OS X CFNetwork Component Web Page URL Handling Remote Information Disclosure
|
|
78805
Description:
Mac OS X is prone to an overflow condition. The CoreMedia component fails to properly sanitize user-supplied input resulting in a heap-based buffer overflow. With a specially crafted H.264 encoded movie, a content-dependent attacker can potentially cause arbitrary code execution.
|
2012-02-01
|
Apple Mac OS X CoreMedia Component H.264 Encoded Movie File Handling Remote Overflow
|
|
78806
Description:
A memory corruption flaw exists in Mac OS X. The CoreText component fails to sanitize user-supplied input when handling fonts resulting in memory corruption. With a specially crafted font, a context-dependent attacker can cause a denial of service or potentially execute arbitrary code.
|
2012-02-01
|
Apple Mac OS X CoreText Component Use-after-free Font Handling Remote Memory Corruption
|
|
78807
Description:
Mac OS X contains a flaw related to the CoreUI component. The issue is due to an unbounded stack allocation error when handling long URLs. This may allow a remote attacker to execute arbitrary code via a specially crafted website.
|
2012-02-01
|
Apple Mac OS X CoreUI Component Unbounded Stack Allocation URL Handling Remote Code Execution
|
|
78808
Description:
Mac OS X contains a flaw related to the Internet Sharing functionality. The issue is triggered when performing a system update that may resets the used Wi-Fi configuration to factory defaults and removes the WEP password.
|
2012-02-01
|
Apple Mac OS X Internet Sharing Component W-Fi Configuration Reset WEB Password Removal
|
|
78809
Description:
Mac OS X is prone to an overflow condition. The libresolv library fails to properly sanitize user-supplied input when parsing DNS resource records resulting in a heap-based buffer overflow. With a specially crafted request, a remote attacker can potentially cause arbitrary code execution.
|
2012-02-01
|
Apple Mac OS X libresolv Component DNS Resource Record Parsing Remote Overflow
|
|
78814
Description:
Mac OS X contains a flaw that may lead to an unauthorized information disclosure. The issue is due to the Time Machine component not verifying that a remote AFP volume or Time Capsule is used for subsequent backups, which may disclose backups to a remote attacker by spoofing a remote volume.
|
2012-02-01
|
Apple Mac OS X Time Machine Component Remote Volume Spoofing Backup Disclosure
|
|
78815
Description:
Mac OS X contains a flaw that may allow an attacker to gain access to unauthorized privileges. The issue is due to an error within the WebDAV sharing component when handling user authentication, allowing a local attacker to gain system privileges.
|
2012-02-01
|
Apple Mac OS X WebDAV Sharing Component User Authentication Handling Local Privilege Escalation
|
|
78990
Description:
Apache Struts contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'name' and 'lastName' parameter upon submission to struts2-showcase/person/editPerson.action. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-02-01
|
Apache Struts struts2-showcase/person/editPerson.action Multiple Parameter XSS
|
|
78991
Description:
Apache Struts contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'clientName' parameter upon submission to struts2-rest-showcase/orders. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-02-01
|
Apache Struts struts2-rest-showcase/orders clientName Parameter XSS
|
|
78719
Description:
Emobile Pocket WiFi GP02 contains a flaw that allows a remote Cross-site Request Forgery (CSRF / XSRF) attack. The flaw exists because the application does not require multiple steps or explicit confirmation for sensitive transactions for the changing of settings, or resetting of the device. By using a crafted URL (e.g., a crafted GET request inside an "img" tag), an attacker may trick the victim into clicking on the image to take advantage of the trust relationship between the authenticated victim and the application. Such an attack could trick the victim into executing arbitrary commands in the context of their session with the application, without further prompting or verification.
|
2012-02-01
|
Emobile Pocket WiFi GP02 Setting Change CSRF
|
|
78727
Description:
OpenEMR contains a flaw that may allow a remote attacker to execute arbitrary commands or code. The issue is due to the interface/patient_file/encounter/load_form.php script not properly sanitizing user input, specifically directory traversal style attacks (e.g., ../../) supplied to the 'formname' parameter. This may allow an attacker to include a file from the targeted host that contains arbitrary commands or code that will be executed by the vulnerable script. Such attacks are limited due to the script only calling files already on the target host. In addition, this flaw can potentially be used to disclose the contents of any file on the system accessible by the web server.
|
2012-02-01
|
OpenEMR interface/patient_file/encounter/load_form.php formname Parameter Traversal Local File Inclusion
|
|
78747
Description:
Drupal contains a flaw in the File module. The issue is due to an error when using certain field access modules. This may allow a remote attacker to access arbitrary files.
|
2012-02-01
|
Drupal File Module Arbitrary File Access
|
|
78802
Description:
Mac OS X contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when the Address Book component attempts an unencrypted connection if an encrypted connection fails, which may disclose CardDAV data to a remote attacker.
|
2012-02-01
|
Apple Mac OS X Address Book Component SSL CardDAV Information Disclosure
|