| OSVDB ID | Disclosure Date | Title |
|
85877
Description:
Logz CMS contains a flaw that is triggered when CAPTCHA replies are stored in the HTML source. With a specially crafted script or program, a remote attacker can automate the solving of CAPTCHA tests on this CMS.
|
2012-09-30
|
Logz CMS HTML Source CAPTCHA Reply Remote Disclosure
|
|
85876
Description:
GuppY Contact Plugin contains a flaw that is triggered when CAPTCHA replies are stored in the HTML source in a trivially encoded format. With a specially crafted script or program, a remote attacker can automate the solving of CAPTCHA tests on this plugin.
|
2012-09-30
|
GuppY Contact Plugin HTML Source Encoded CAPTCHA Reply Remote Disclosure
|
|
85900
Description:
MijoFTP Component for Joomla! contains an unspecified flaw that may allow a remote attacker to gain access to a system via a back door. No further details have been provided.
|
2012-09-30
|
MijoFTP Component for Joomla! Unspecified Back Door Issue
|
|
85910
Description:
TheAgency Theme for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-29
|
TheAgency Theme for WordPress Unspecified XSS
|
|
85911
Description:
Sparky Theme for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-29
|
Sparky Theme for WordPress Unspecified XSS
|
|
85912
Description:
PictureFactory Theme for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-29
|
PictureFactory Theme for WordPress Unspecified XSS
|
|
85913
Description:
Paramount Theme for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-29
|
Paramount Theme for WordPress Unspecified XSS
|
|
85914
Description:
Essence Theme for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-29
|
Essence Theme for WordPress Unspecified XSS
|
|
85915
Description:
Explicit Theme for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-29
|
Explicit Theme for WordPress Unspecified XSS
|
|
85916
Description:
Eunice Theme for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-29
|
Eunice Theme for WordPress Unspecified XSS
|
|
85917
Description:
Blaze Theme for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-29
|
Blaze Theme for WordPress Unspecified XSS
|
|
85918
Description:
Brisk Theme for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-29
|
Brisk Theme for WordPress Unspecified XSS
|
|
85919
Description:
Shapeless Theme for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-29
|
Shapeless Theme for WordPress Unspecified XSS
|
|
85921
Description:
Daisho Theme for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-29
|
Daisho Theme for WordPress Unspecified XSS
|
|
85920
Description:
Konzept Theme for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate certain unspecified input before returning it to the user. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-29
|
Konzept Theme for WordPress Unspecified XSS
|
|
85875
Description:
CSS Plus Plugin for WordPress contains multiple unspecified flaws. No further details have been provided.
|
2012-09-29
|
CSS Plus Plugin for WordPress Multiple Unspecified Issues
|
|
85874
Description:
Frei-Chat contains a flaw that allows a remote user to execute arbitrary PHP code. This flaw exists because the client/plugins/upload/upload.php script does not properly verify or sanitize user-uploaded files. By uploading a .php file, the remote system will place the file in a user-accessible path. Making a direct request to the uploaded file will allow the user to execute the script.
|
2012-09-29
|
Frei-Chat client/plugins/upload/upload.php File Upload PHP Code Execution
|
|
85869
Description:
IBM AIX contains a flaw that may allow a local denial of service. The issue is triggered by the 'fuser' command not properly restricting the -k option. With a specially crafted -k argument in a command line, a local attacker can cause a loss of availability of arbitrary processes.
|
2012-09-28
|
IBM AIX fuser Command -k Argument Command Line Parsing Local Process DoS
|
|
85866
Description:
IBM Tivoli Federated Identity Manager contains an unspecified flaw related to the validation of XML signatures. This may allow a remote attacker to use an untrusted or invalid XML signature and bypass the signature validation mechanism.
|
2012-09-28
|
IBM Tivoli Federated Identity Manager XML Signature Validation Bypass
|
|
85822
Description:
DeltaV is prone to an overflow condition. The program fails to properly check for bounds when parsing a malformed string, which will result in a buffer overflow. With a specially crafted large string, a remote attacker can potentially cause a denial of service.
|
2012-09-28
|
DeltaV Malformed String Parsing Remote Overflow DoS
|
|
85819
Description:
jigbrowser+ Application for Android contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when the applications fail to properly implement the WebView class. This may allow a context-dependent attacker to use a specially crafted application to gain access to potentially sensitive information.
|
2012-09-28
|
jigbrowser+ Application for Android WebView Class Implementation Application Handling Information Disclosure
|
|
85922
Description:
Dart Comunications DartWebserver.Dll contains a flaw that may allow a remote denial of service. This issue is triggered when all usable stack space is exhausted during the parsing of an overly long web request. This will result in a loss of availability for the program.
|
2012-09-28
|
Dart Communications DartWebserver.Dll Web Request Parsing Remote DoS
|
|
85923
Description:
VB Pro Garage Timeslips Plugin for vBulletin contains a flaw that may allow an attacker to carry out an SQL injection attack. The issue is due to the garage.php script not properly sanitizing user-supplied input to the 'model_year' parameter. This may allow an attacker to inject or manipulate SQL queries in the back-end database, allowing for the manipulation or disclosure of arbitrary data.
|
2012-09-28
|
VB Pro Garage Timeslips Plugin for vBulletin garage.php model_year Parameter SQL Injection
|
|
85954
Description:
IBM Lotus Notes Traveler contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'userId' and 'address' parameters upon submission to the traveler/ILNT.mobileconfig script. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-28
|
IBM Lotus Notes Traveler traveler/ILNT.mobileconfig Multiple Parameter XSS
|
|
85868
Description:
IBM WebSphere Commerce contains an unspecified flaw that may lead to an unauthorized disclosure of profile data. No further details have been provided.
|
2012-09-28
|
IBM WebSphere Commerce Unspecified Profile Data Disclosure
|
|
85867
Description:
IBM Rational Business Developer contains an unspecified flaw that may lead to an unauthorized disclosure of potentially sensitive information to a remote attacker. No further details have been provided.
|
2012-09-28
|
IBM Rational Business Developer Web Services Unspecified Remote Information Disclosure
|
|
85865
Description:
IBM Rational Team Concert contains a flaw that allows a remote Cross-site Request Forgery (CSRF / XSRF) attack. The flaw exists because the application does not require multiple steps or explicit confirmation for sensitive transactions. By using a crafted URL (e.g., a crafted GET request inside an "img" tag), an attacker may trick the victim into clicking on the image to take advantage of the trust relationship between the authenticated victim and the application. Such an attack could trick the victim into manipulating work items in the context of their session with the application, without further prompting or verification.
|
2012-09-28
|
IBM Rational Team Concert Work Item Manipulation CSRF
|
|
85953
Description:
IBM Lotus Notes Traveler contains a flaw that allows a remote cross site redirection attack. This flaw exists because the application does not validate the 'redirectURL' parameter upon submission to the servlet/traveler script. This could allow a user to create a specially crafted URL, that if clicked, would redirect a victim from the intended legitimate web site to an arbitrary web site of the attacker's choosing. Such attacks are useful as the crafted URL initially appear to be a web page of a trusted site. This could be leveraged to direct an unsuspecting user to a web page containing attacks that target client side software such as a web browser or document rendering programs.
|
2012-09-28
|
IBM Lotus Notes Traveler servlet/traveler redirectURL Parameter Arbitrary Site Redirect
|
|
86192
Description:
Midnight Commander contains a flaw that is triggered when the F3 or enter key are pressed on certain files and the MC_EXT_SELECTED or MC_EXT_ONLYTAGGED fails to properly sanitize certain variables. With a specially crafted file, a context-dependent attacker can potentially execute arbitrary code.
|
2012-09-28
|
Midnight Commander MC_EXT_SELECTED / MC_EXT_ONLYTAGGED Variable Crafted File Handling Arbitrary Code Execution
|
|
88358
Description:
FreeFloat FTP Server contains an overflow condition that is triggered as user-supplied input is not properly sanitized. With a specially crafted PUT command, a remote attacker can cause a buffer overflow to cause a denial of service or potentially execute arbitrary code.
|
2012-09-28
|
FreeFloat FTP Server PUT Command Remote Buffer Overflow
|
|
91111
Description:
HTCondor contains a flaw in src/condor_contrib/aviary/src/SchedulerObject.cpp that may allow a remote denial of service. The issue is triggered when removing jobs. With a specially crafted request to the aviary_query_server, a remote attacker can cause the condor_schedd process to crash, which will require a restart.
|
2012-09-28
|
HTCondor src/condor_contrib/aviary/src/SchedulerObject.cpp Job Removal Crafted Query Handling Remote DoS
|
|
91110
Description:
HTCondor contains a flaw in src/condor_contrib/aviary/src/AviaryScheddPlugin.cpp that may allow a remote denial of service. The issue is triggered when removing jobs. With a specially crafted request to the aviary_query_server, a remote attacker can cause the condor_schedd process to crash, which will require a restart.
|
2012-09-28
|
HTCondor src/condor_contrib/aviary/src/AviaryScheddPlugin.cpp Job Removal Crafted Query Handling Remote DoS
|
|
85817
Description:
Piwigo contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'username_or_email' parameter upon submission to the password.php script. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-27
|
Piwigo password.php username_or_email Parameter XSS
|
|
85873
Description:
The Smartphone Pentest Framework (SPF) contains a flaw that may allow a remote attacker to gain escalated privileges. The issue is due to the remoteAttack.pl script, part of the SPF GUI, not properly sanitizing user input supplied to the 'ipAddressTB' parameter. With a crafted request, an attacker could execute arbitrary commands on the system. Note: The GUI is presumably installed on the pentester's machine, not the vulnerable mobile device, where a level of security in the application is expected.
|
2012-09-27
|
Smartphone Pentest Framework (SPF) remoteAttack.pl ipAddressTB Parameter Remote Code Execution
|
|
85816
Description:
Cisco IOS and Unified Communications Manager (CUCM) contains a flaw that may allow a remote denial of service. The issue is triggered during the processing of a malformed Session Initiation Protocol (SIP) message that contains a valid Session Description Protocol (SDP) message. With a specially crafted SIP packet in this message, a remote attacker can cause a loss of availability for the program.
|
2012-09-27
|
Cisco IOS / Unified Communications Manager (CUCM) Malformed SIP Message SDP Message Parsing Remote DoS
|
|
85818
Description:
Multisite Plugin Manager Plugin for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'mass_activate' and 'mass_deactivate' parameters upon submission to the wp-admin/network/plugins.php script. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-27
|
Multisite Plugin Manager Plugin for WordPress wp-admin/network/plugins.php Multiple Parameter XSS
|
|
86483
Description:
A memory corruption flaw exists in FFmpeg. The ff_compute_band_indexes() function of libavcodec/mpegaudiodec.c fails to sanitize user-supplied input resulting in memory corruption. This may allow a remote attacker to execute arbitrary code.
|
2012-09-27
|
FFmpeg libavcodec/mpegaudiodec.c ff_compute_band_indexes() Function Memory Corruption
|
|
85774
Description:
Foxit Reader is prone to a flaw in the way it loads dynamic-link libraries (DLL) such as fxdecod1.dll. The program uses a fixed path to look for specific files or libraries. This path includes directories that may not be trusted or under user control. By placing a custom version of the file or library in the path, the program will load it before the legitimate version. This allows a local attacker to inject custom code that will be run with the privilege of the program or user executing the program. This attack can be leveraged remotely in some cases by placing the malicious file or library on a network share or extracted archive downloaded from a remote source. This can be done by tricking a user into opening a PDF file from the local file system or a USB drive in some cases. This attack scenario is certainly possible, but rare.
|
2012-09-26
|
Foxit Reader fxdecod1.dll Path Subversion Arbitrary DLL Injection Code Execution
|
|
85773
Description:
ABC Test Plugin for WordPress contains a flaw that allows a remote cross-site scripting (XSS) attack. This flaw exists because the application does not validate the 'id' parameter upon submission to the wp-admin/admin.php script. This may allow a user to create a specially crafted request that would execute arbitrary script code in a user's browser within the trust relationship between their browser and the server.
|
2012-09-26
|
ABC Test Plugin for WordPress wp-admin/admin.php id Parameter XSS
|
|
85820
Description:
Smartfren Connex EC1261 contains a flaw that may allow an attacker to gain access to unauthorized privileges. The issue is triggered by the application setting insecure file permissions on the installation directory. This may allow a local attacker to overwrite arbitrary files or libraries, which will allow them to escalate their privileges.
|
2012-09-26
|
Smartfren Connex EC1261 Insecure File Permission Arbitrary File Overwrite Local Privilege Escalation
|