| OSVDB ID | Disclosure Date | Title |
|
88648
Description:
Novell NetIQ eDirectory contains an unspecified flaw that may allow a remote attacker to gain access to administrator cookie information via a specially crafted program. No further details have been provided.
|
2012-12-18
|
Novell NetIQ eDirectory Unspecified Crafted Program Administrator Cookie Disclosure
|
|
88657
Description:
Opera contains a flaw that is triggered when handling site requests. The issue is due to the browser not properly displaying the site URL when a hostile site rapidly requests for a page reload. This can lead the browser to display an arbitrary address, useful in phishing attacks.
|
2012-12-18
|
Opera Multiple Site Loading Requests Handling URL Bar Spoofing
|
|
88656
Description:
Opera contains a flaw that is due to the program setting insecure permissions for the profile folder. This may allow a local attacker to overwrite arbitrary files or execute arbitrary commands.
|
2012-12-18
|
Opera for Linux Profile Folder Permission Weakness Local File Manipulation
|
|
90748
Description:
BusyBox contains a flaw that is due to the program setting insecure permissions on nested directories that have been created using mdev. This may allow an attacker to more easily gain access to certain sub directories, and conduct attacks that rely on permission weaknesses.
|
2012-12-18
|
BusyBox Nested Directory Creation Permission Weakness
|
|
88524
Description:
JBoss Enterprise Application Platform contains a flaw in the processInvocation() method in org.jboss.as.ejb3.security.AuthorizationInterceptor. The issue is triggered during the handling of an empty allowed role list. This may allow a remote attacker to invoke arbitrary methods.
|
2012-12-18
|
JBoss Enterprise Application Platform org.jboss.as.ejb3.security.AuthorizationInterceptor processInvocation() Method Empty Allowed Role List Handling Arbitrary Method Invocation
|
|
88523
Description:
JBoss Enterprise Application Platform contains a flaw that is triggered when an error occurs during the handling of role-based authorization for Enterprise Java Beans (EJB) access. With a specially configured JACC authorization module, a remote attacker can bypass authorization.
|
2012-12-18
|
JBoss Enterprise Application Platform Enterprise Java Beans (EJB) Role-Based Authorization Handling JACC Authorization Bypass
|
|
88547
Description:
Profile Xbox Live ID Plugin for MyBB contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'xli' parameter upon submission to the usercp.php script. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-12-18
|
Profile Xbox Live ID Plugin for MyBB usercp.php xli Parameter XSS
|
|
88550
Description:
Transactions Plugin for MyBB contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the bank.php script not properly sanitizing user-supplied input to the 'transaction' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2012-12-18
|
Transactions Plugin for MyBB bank.php transaction Parameter SQL Injection
|
|
88549
Description:
IDA Pro contains a flaw that may allow for a denial of service. The issue is triggered when a user opens a malformed ELF file, resulting in a loss of availability for the program. This can be exploited remotely by tricking a user into opening the crafted file (e.g., via email), or locally by placing it in a location that may seem safe (e.g., a network share).
|
2012-12-18
|
IDA Pro ELF File Handling DoS
|
|
88617
Description:
Mozilla Firefox contains a flaw that may allow for a denial of service. The issue is triggered when a user opens a malformed HTML file, resulting in a loss of availability for the program. This can be exploited remotely by tricking a user into opening the crafted file (e.g., via email), or locally by placing it in a location that may seem safe (e.g., a network share).
|
2012-12-18
|
Mozilla Firefox HTML File Handling DoS
|
|
88616
Description:
MyYoutube Plugin for MyBB contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate input passed via the Youtube Video ID field upon submission to the youtube.php script. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-12-18
|
MyYoutube Plugin for MyBB youtube.php Youtube Video ID Field XSS
|
|
88615
Description:
IBM Rational Policy Tester and Security AppScan Enterprise contain a flaw that is due to the programs failing to properly validate SSL certificates when manually viewing or scanning HTTPS sites. This may allow a remote attacker to spoof a valid server via a Man-in-the-Middle attack.
|
2012-12-18
|
IBM Rational Policy Tester / Security AppScan Enterprise HTTPS Site Scanning SSL Certificate Validation MitM Spoofing Weakness
|
|
88614
Description:
IBM Rational Policy Tester and Security AppScan Enterprise contain a flaw that is due to the programs failing to properly validate SSL certificates during the exploration of HTTPS sites. This may allow a remote attacker to spoof a valid server via a Man-in-the-Middle attack.
|
2012-12-18
|
IBM Rational Policy Tester / Security AppScan Enterprise Manual HTTPS Site Exploration SSL Certificate Validation MitM Spoofing Weakness
|
|
88721
Description:
ownCloud contains a flaw that is due to the application failing to properly verify permissions when settings.php is accessed. This may allow a remote attacker to bypass authentication and edit the configuration settings for user_webdavauth or user_ldap and login as an arbitrary user.
|
2012-12-18
|
ownCloud settings.php Authentication Bypass App Configuration Manipulation
|
|
88720
Description:
ownCloud contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate path data upon submission to the apps/bookmark/index.php script. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-12-18
|
ownCloud /apps/bookmark/index.php Path Data XSS
|
|
88492
Description:
Squid contains a flaw in cachemgr.cgi in tools/cachemgr.cc that may allow a remote denial of service. The issue is triggered during the handling of a specially crafted request, which will result in a consumption of CPU resources. This will cause a loss of availability for the program.
|
2012-12-17
|
Squid tools/cachemgr.cc cachemgr.cgi Request Handling Resource Consumption Remote DoS
|
|
88491
Description:
IBM Intelligent Operations Center contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate input passed via event data before returning it to the user. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-12-17
|
IBM Intelligent Operations Center Event Data XSS
|
|
88695
Description:
Adobe Flash Player has been reported to contain a flaw that results in memory corruption and may allow for remote code execution. Based on the provided crash details and additional cursory testing by OSVDB, there is, however, no evidence to support the claims of memory corruption and the possibility of code execution. Instead, the flaw is triggering an out-of-bounds read access violation when parsing unspecified data. With a specially crafted FLV file, a context-dependent attacker can cause a crash, but not immediately execute arbitrary code.
|
2012-12-17
|
Adobe Flash Player FLV File Handling Memory Corruption
|
|
88611
Description:
WordPress contains a flaw related to session management. The issue is due to wp-login.php not properly terminating the session on a 'logout' action. This means the session identifier, if stolen by a third-party, can be used to access the application even after the user has logged out.
|
2012-12-17
|
WordPress wp-login.php Session Termination Failure
|
|
88467
Description:
Samsung Galaxy devices contain a flaw that may allow any application or local user to gain increased privileges. The issue is due to the /dev/exynos-mem device being readable and writeable to all users on the system, giving them full access to all physical memory. This would allow an application (e.g. downloaded from the Play market) to dump the contents of memory to disclose sensitive information or inject code into the running system for privilege escalation.
|
2012-12-17
|
Samsung Galaxy Multiple Devices /dev/exynos-mem Local Privilege Escalation
|
|
88494
Description:
phpwcms contains a flaw that is triggered when input passed via 'article_summary' parameter to the preg_replace() function in the /include/inc_front/front.func.inc.php script is not properly sanitized. This may allow a remote attacker to potentially execute arbitrary code.
|
2012-12-17
|
phpwcms /include/inc_front/front.func.inc.php preg_replace() Function article_summary Parameter Remote Code Execution
|
|
88613
Description:
Adobe Shockwave Player contains a flaw that is triggered during the handling of a specially crafted HTML document that calls Shockwave content via a compatibility parameter. This will force the program to downgrade to the insecure version 10.4.0.025 of Shockwave, which may allow a remote attacker to potentially execute arbitrary code.
|
2012-12-17
|
Adobe Shockwave Player Compatibility Parameter Manipulation Forced Downgrade Weakness
|
|
88612
Description:
Adobe Shockwave Player contains a flaw that may cause an installation of arbitrary signed Xtras during the handling of a specially crafted Shockwave movie that has an Xtra URL. This may potentially allow a remote attacker to more easily execute arbitrary code.
|
2012-12-17
|
Adobe Shockwave Player Arbitrary Signed Xtras Installation Weakness
|
|
88489
Description:
Aptdaemon contains a flaw when importing keys from the keyserver and the PPA GPG keys are not properly authenticated. This may allow a remote attacker to install arbitrary package repository GPG keys via a Man-in-the-Middle (MitM) attack.
|
2012-12-17
|
Aptdaemon Keyserver Importing PPA GPG Key Validation MitM Arbitrary Package Repository GPG Key Installation
|
|
88493
Description:
phpwcms contains a flaw that is triggered when input passed via the 'article_summary' parameter to the preg_replace() function in the /include/inc_front/content.func.inc.php script is not properly sanitized. This may allow a remote attacker to potentially execute arbitrary code.
|
2012-12-17
|
phpwcms /include/inc_front/content.func.inc.php preg_replace() Function article_summary Parameter Remote Code Execution
|
|
88658
Description:
Inkscape contains an XXE (Xml eXternal Entity) injection flaw that is triggered during the parsing of XML data. The issue is due to an incorrectly configured XML parser accepting XML external entities from an untrusted source during the rasterization of SVG files. By sending specially crafted XML data, a remote attacker can gain access to arbitrary files.
|
2012-12-17
|
Inkscape SVG File Rasterization XML External Entity (XXE) Data Parsing Arbitrary File Disclosure
|
|
88719
Description:
Novell iPrint Client contains an unspecified flaw in the 'op-client-interface-version' parameter that may allow a remote attacker to execute arbitrary code. No further details are currently available.
|
2012-12-17
|
Novell iPrint Client op-client-interface-version Parameter Unspecified Remote Code Execution
|
|
88843
Description:
RSS Reader Extension for MediaWiki contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate input passed via the RSS feed before returning it to the user. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-12-17
|
RSS Reader Extension for MediaWiki RSS Feed XSS
|
|
90191
Description:
By default, Moxa EDR-G903 Series Routers install with a hardcoded default user credentials (username/password combination). The account and password may allow remote attackers to trivially access the program or system and gain privileged access.
|
2012-12-17
|
Moxa EDR-G903 Series Routers Hardcoded Default User Credentials
|
|
90190
Description:
Moxa EDR-G903 Series Routers contain a flaw that is due to the device having weak entropy when generating SSH and HTTPS keys. A remote attacker can calculate private authentication keys, allowing for a man-in-the-middle attack. This would potentially disclose information, and allow the attacker to send commands to the device.
|
2012-12-17
|
Moxa EDR-G903 Series Routers Predictable SSH / SSL Connection Key Generation
|
|
91265
Description:
Automatic Bug Reporting Tool (ABRT) contains a flaw as abrt-action-install-debuginfo creates temporary files insecurely. It is possible for a local attacker to use a symlink attack against directories used to store crash information to cause the program to unexpectedly grant elevated privileges to the attacker.
|
2012-12-17
|
Automatic Bug Reporting Tool (ABRT) abrt-action-install-debuginfo Symlink Local Privilege Escalation
|
|
91264
Description:
Red Hat Enterprise Virtualization Manager contains a flaw in the domain management tool (rhevm-manage-domains) that may lead to unauthorized disclosure of sensitive information. The issue is due to the program logging the administrative password to a world-readable log file. This may allow a local attacker to gain access to password information.
|
2012-12-17
|
Red Hat Enterprise Virtualization Manager Domain Management Tool (rhevm-manage-domains) Log File Local Plaintext Admin Password Disclosure
|
|
91511
Description:
AMD Catalyst Control Center contains a flaw that is due to the auto update utility insecurely validating new updates. This may allow a remote attacker to spoof a valid update via a Man-in-the-Middle attack.
|
2012-12-17
|
AMD Catalyst Control Center Auto Update Utility Update Validation MitM Spoofing Weakness
|
|
88488
Description:
User Profile Skype ID Plugin for MyBB contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'skype' parameter upon submission to the usercp.php script. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-12-16
|
User Profile Skype ID Plugin for MyBB usercp.php skype Parameter XSS
|
|
88610
Description:
Totem Movie Player contains a flaw that may allow for a denial of service. The issue is triggered when a user opens a malformed AVI file, resulting in a divide-by-zero error. With a specially crafted AVI file, a context-dependent attacker can crash the application.
|
2012-12-16
|
Totem Movie Player AVI File Handling Divide-By-Zero DoS
|
|
88813
Description:
VLC Media Player contains an overflow condition in modules/codec/subsdec.c. The issue is triggered as user-supplied input is not properly validated when handling HTML subtitle files. This may allow a context-dependent attacker to cause a buffer overflow, resulting in a denial of service or potentially execution of arbitrary code.
|
2012-12-15
|
VLC Media Player modules/codec/subsdec.c HTML Subtitle File Handling Overflow
|
|
88460
Description:
TWiki contains a flaw in the Locale::Maketext CPAN module. The issue is triggered when input passed via MAKETEXT macros are not properly sanitized. This may allow a remote attacker to execute arbitrary shell commands by Perl backtick ('') operators.
|
2012-12-15
|
TWiki twiki/lib/TWiki.pm MAKETEXT Macro Arbitrary Shell Command Injection
|
|
89694
Description:
SAP NetWeaver Web Application Server (WAS) contains a flaw that may lead to unauthorized disclosure of potentially sensitive information. The issue is triggered when an unspecified error occurs in the AdapaterFramework servlet. This may allow a remote attacker to gain access to version and other sensitive information.
|
2012-12-15
|
SAP NetWeaver Web Application Server (WAS) AdapterFramework Servlet Information Disclosure
|
|
88459
Description:
TWiki contains a flaw in twiki/lib/TWiki.pm that may allow a remote denial of service. The issue is triggered during the handling of a specially crafted MAKETEXT macro, which will result in excessive memory allocation, or possibly crash the software, leading to a loss of availability for the program.
|
2012-12-15
|
TWiki twiki/lib/TWiki.pm Crafted MAKETEXT Macro Remote DoS
|
|
88546
Description:
Quenlig contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'comment' parameter when creating a comment for a question. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-12-15
|
Quenlig Question Comment comment Parameter XSS
|