Top technology
Linux 13140
Google 12536
Microsoft 12379
Oracle 6843
Apple 6692
Adobe 6387
Ibm 6336
Cisco 5759
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
CRITICAL 9.8
CVE-2012-5618
Ushahidi before 2.6.1 has insufficient entropy for forgot-password tokens.
Ushahidi
2.6.1+
HIGH 7.5
CVE-2012-3468
Multiple SQL injection vulnerabilities in the Ushahidi Platform before 2.5 allow remote attackers to execute arbitrary SQL commands via vectors relat…
Ushahidi Platform
after 2.4.1
HIGH 7.5
CVE-2012-3469
Multiple SQL injection vulnerabilities in the Ushahidi Platform before 2.5 allow remote attackers to execute arbitrary SQL commands via vectors relat…
Ushahidi Platform
after 2.4.1
HIGH 7.5
CVE-2012-3470
Multiple SQL injection vulnerabilities in application/libraries/api/MY_Countries_Api_Object.php in the Ushahidi Platform before 2.5 allow remote atta…
Ushahidi Platform
after 2.4.1
HIGH 7.5
CVE-2012-3471
Multiple SQL injection vulnerabilities in the edit functions in (1) application/controllers/admin/reports.php and (2) application/controllers/members…
Ushahidi Platform
after 2.4.1
HIGH 7.5
CVE-2012-3475
The installer in the Ushahidi Platform before 2.5 omits certain calls to the exit function, which allows remote attackers to obtain administrative pr…
Ushahidi Platform
after 2.4.1
MEDIUM 6.4
CVE-2012-3472
The email API in application/libraries/api/MY_Email_Api_Object.php in the Ushahidi Platform before 2.5 does not require authentication, which allows …
Ushahidi Platform
after 2.4.1
MEDIUM 6.4
CVE-2012-3473
The (1) reports API and (2) administration feature in the comments API in the Ushahidi Platform before 2.5 do not require authentication, which allow…
Ushahidi Platform
after 2.4.1
MEDIUM 5.0
CVE-2012-3474
The comments API in application/libraries/api/MY_Comments_Api_Object.php in the Ushahidi Platform before 2.5 allows remote attackers to obtain sensit…
Ushahidi Platform
after 2.4.1