mirror of
https://github.com/0xMarcio/cve.git
synced 2026-02-12 18:42:46 +00:00
Update CVE sources 2024-06-08 09:32
This commit is contained in:
17
2012/CVE-2012-1156.md
Normal file
17
2012/CVE-2012-1156.md
Normal file
@@ -0,0 +1,17 @@
|
||||
### [CVE-2012-1156](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-1156)
|
||||

|
||||

|
||||

|
||||
|
||||
### Description
|
||||
|
||||
Moodle before 2.2.2 has users' private files included in course backups
|
||||
|
||||
### POC
|
||||
|
||||
#### Reference
|
||||
- https://moodle.org/mod/forum/discuss.php?d=198623
|
||||
|
||||
#### Github
|
||||
No PoCs found on GitHub currently.
|
||||
|
||||
17
2012/CVE-2012-4567.md
Normal file
17
2012/CVE-2012-4567.md
Normal file
@@ -0,0 +1,17 @@
|
||||
### [CVE-2012-4567](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-4567)
|
||||

|
||||

|
||||

|
||||
|
||||
### Description
|
||||
|
||||
Multiple cross-site scripting (XSS) vulnerabilities in LetoDMS (formerly MyDMS) before 3.3.8 allow remote attackers to inject arbitrary web script or HTML via unspecified parameters in (1) inc/inc.ClassUI.php or (2) out/out.DocumentNotify.php.
|
||||
|
||||
### POC
|
||||
|
||||
#### Reference
|
||||
- http://sourceforge.net/p/mydms/code/HEAD/tree/trunk/CHANGELOG
|
||||
|
||||
#### Github
|
||||
No PoCs found on GitHub currently.
|
||||
|
||||
17
2012/CVE-2012-4568.md
Normal file
17
2012/CVE-2012-4568.md
Normal file
@@ -0,0 +1,17 @@
|
||||
### [CVE-2012-4568](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-4568)
|
||||

|
||||

|
||||

|
||||
|
||||
### Description
|
||||
|
||||
Multiple cross-site request forgery (CSRF) vulnerabilities in LetoDMS (formerly MyDMS) before 3.3.8 allow remote attackers to hijack the authentication of unspecified victims via unknown vectors.
|
||||
|
||||
### POC
|
||||
|
||||
#### Reference
|
||||
- http://sourceforge.net/p/mydms/code/HEAD/tree/trunk/CHANGELOG
|
||||
|
||||
#### Github
|
||||
No PoCs found on GitHub currently.
|
||||
|
||||
17
2012/CVE-2012-4569.md
Normal file
17
2012/CVE-2012-4569.md
Normal file
@@ -0,0 +1,17 @@
|
||||
### [CVE-2012-4569](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-4569)
|
||||

|
||||

|
||||

|
||||
|
||||
### Description
|
||||
|
||||
Multiple cross-site scripting (XSS) vulnerabilities in out/out.UsrMgr.php in LetoDMS (formerly MyDMS) before 3.3.9 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
|
||||
|
||||
### POC
|
||||
|
||||
#### Reference
|
||||
- http://sourceforge.net/p/mydms/code/HEAD/tree/trunk/CHANGELOG
|
||||
|
||||
#### Github
|
||||
No PoCs found on GitHub currently.
|
||||
|
||||
17
2012/CVE-2012-4570.md
Normal file
17
2012/CVE-2012-4570.md
Normal file
@@ -0,0 +1,17 @@
|
||||
### [CVE-2012-4570](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2012-4570)
|
||||

|
||||

|
||||

|
||||
|
||||
### Description
|
||||
|
||||
SQL injection vulnerability in LetoDMS_Core/Core/inc.ClassDMS.php in LetoDMS (formerly MyDMS) before 3.3.8 allows remote attackers to execute arbitrary SQL commands via unspecified vectors.
|
||||
|
||||
### POC
|
||||
|
||||
#### Reference
|
||||
- http://sourceforge.net/p/mydms/code/HEAD/tree/trunk/CHANGELOG
|
||||
|
||||
#### Github
|
||||
No PoCs found on GitHub currently.
|
||||
|
||||
Reference in New Issue
Block a user