Top technology
Linux 13140
Google 12537
Microsoft 12388
Oracle 7054
Apple 6692
Ibm 6393
Adobe 6390
Cisco 5759
Debian 3919
Mozilla 2901
Apache 2864
Redhat 2604
HIGH 7.8
CVE-2012-0385
The Smart Install feature in Cisco IOS 12.2, 15.0, 15.1, and 15.2 allows remote attackers to cause a denial of service (device reload) by sending a m…
iOS
Mitigation only
MEDIUM 6.4
CVE-2012-1927
Opera before 11.62 allows remote attackers to spoof the address field by triggering the launch of a dialog window associated with a different domain.
Opera Browser
after 11.61
MEDIUM 6.4
CVE-2012-1928
Opera before 11.62 allows remote attackers to spoof the address field by triggering a page reload followed by a redirect to a different domain.
Opera Browser
after 11.61
MEDIUM 6.4
CVE-2012-1929
Opera before 11.62 on Mac OS X allows remote attackers to spoof the address field and security dialogs via crafted styling that causes page content t…
Opera Browser
after 11.61
MEDIUM 5.0
CVE-2012-1662
CA ARCserve Backup r12.0 through SP2, r12.5 before SP2, r15 through SP1, and r16 before SP1 on Windows allows remote attackers to cause a denial of s…
Arcserve Backup
Mitigation only
MEDIUM 5.0
CVE-2012-0710
IBM DB2 9.1 before FP11, 9.5 before FP9, 9.7 before FP5, and 9.8 before FP4 allows remote attackers to cause a denial of service (daemon crash) via a…
Db2
Mitigation only
HIGH 7.8
CVE-2012-1783
Tiny Server 1.1.9 and earlier allows remote attackers to cause a denial of service (crash) via a long string in a GET request without an HTTP version…
Tiny Server
after 1.1.9
HIGH 7.5
CVE-2012-1785
kg_callffmpeg.php in the Video Embed & Thumbnail Generator plugin before 2.0 for WordPress allows remote attackers to execute arbitrary commands via …
Video Embed \& Thumbnail Generator
after 1.1
HIGH 7.8
CVE-2012-0355
Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with softwar…
Adaptive Security Appliance Software
Mitigation only
HIGH 7.8
CVE-2012-0356
Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500 series devices, with softwar…
Firewall Services Module Software
Mitigation only
HIGH 7.1
CVE-2012-0353
The UDP inspection engine on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6500…
Adaptive Security Appliance Software
Mitigation only
HIGH 7.1
CVE-2012-0354
The Threat Detection feature on Cisco Adaptive Security Appliances (ASA) 5500 series devices, and the ASA Services Module (ASASM) in Cisco Catalyst 6…
Adaptive Security Appliance Software
Mitigation only
HIGH 7.5
CVE-2012-0463
The nsWindow implementation in the browser engine in Mozilla Firefox before 3.6.28 and 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird …
Firefox
after 10.0
MEDIUM 6.4
CVE-2012-1472
VMware vCenter Chargeback Manager (aka CBM) before 2.0.1 does not properly handle XML API requests, which allows remote attackers to read arbitrary f…
Vcenter Chargeback Manager
after 2.0.0
MEDIUM 6.4
CVE-2012-0584
The Internationalized Domain Name (IDN) feature in Apple Safari before 5.1.4 on Windows does not properly restrict the characters in URLs, which allo…
Safari
after 5.1.2
MEDIUM 5.0
CVE-2012-0641
CFNetwork in Apple iOS before 5.1 does not properly construct request headers during parsing of URLs, which allows remote attackers to obtain sensiti…
Iphone Os
5.1+
MEDIUM 5.0
CVE-2012-0292EPSS 7%
The awhost32 service in Symantec pcAnywhere through 12.5.3, Altiris IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), Al…
Pcanywhere
after 12.5
HIGH 10.0
CVE-2012-0838EPSS 14%
Apache Struts 2 before 2.2.3.1 evaluates a string as an OGNL expression during the handling of a conversion error, which allows remote attackers to m…
Struts
after 2.2.3
MEDIUM 5.0
CVE-2012-0823
VP8 Codec SDK (libvpx) before 1.0.0 "Duclair" allows remote attackers to cause a denial of service (application crash) via (1) unspecified "corrupt i…
Libvpx
after 0.9.7
MEDIUM 5.0
CVE-2012-0291
Symantec pcAnywhere through 12.5.3, Altiris IT Management Suite pcAnywhere Solution 7.0 (aka 12.5.x) and 7.1 (aka 12.6.x), Altiris Client Management …
Pcanywhere
after 12.5
MEDIUM 5.8
CVE-2012-0865
Multiple open redirect vulnerabilities in CubeCart 3.0.20 and earlier allow remote attackers to redirect users to arbitrary web sites and conduct phi…
Cubecart
after 3.0.20
HIGH 7.5
CVE-2012-1198EPSS 5%
base_ag_main.php in Basic Analysis and Security Engine (BASE) 1.4.5 allows remote attackers to execute arbitrary code by uploading contents of the fi…
Basic Analysis And Security Engine
No fix yet
MEDIUM 6.4
CVE-2012-1191
The resolver in dnscache in Daniel J. Bernstein djbdns 1.05 overwrites cached server names and TTL values in NS records during the processing of a re…
Djbdns
No fix yet
MEDIUM 5.8
CVE-2011-5079
Open redirect vulnerability in the Modern FAQ (irfaq) extension 1.1.2 and other versions before 1.1.4 for TYPO3 allows remote attackers to redirect u…
Irfaq
after 1.1.2
MEDIUM 5.0
CVE-2012-0840EPSS 43%
tables/apr_hash.c in the Apache Portable Runtime (APR) library through 1.4.5 computes hash values without restricting the ability to trigger hash col…
Portable Runtime
after 1.4.5
MEDIUM 5.8
CVE-2011-3964
Google Chrome before 17.0.963.46 does not properly implement the drag-and-drop feature, which makes it easier for remote attackers to spoof the URL b…
Chrome
17.0.963.46+
MEDIUM 5.0
CVE-2012-1035
AdaCore Ada Web Services (AWS) before 2.10.2 computes hash values for form parameters without restricting the ability to trigger hash collisions pred…
Ada Web Services
after 2.10.1
MEDIUM 5.0
CVE-2012-0839
OCaml 3.12.1 and earlier computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent …
Ocaml
after 3.12.1
MEDIUM 5.0
CVE-2012-1008EPSS 12%
OfficeSIP Server 3.1 allows remote attackers to cause a denial of service (daemon crash) via a crafted To header in a SIP INVITE message.
Officesip Server
No fix yet
MEDIUM 5.8
CVE-2012-1023
Open redirect vulnerability in admin/index.php in 4images 1.7.10 allows remote attackers to redirect users to arbitrary web sites and conduct phishin…
4images
No fix yet