Show filters
664 Total Results
Displaying 271-280 of 664
Sort by:
Attacker Value
Unknown

CVE-2012-3004

Disclosure Date: September 08, 2012 (last updated October 05, 2023)
Multiple untrusted search path vulnerabilities in RealFlex RealWin before 2.1.13, FlexView before 3.1.86, and RealWinDemo before 2.1.13 allow local users to gain privileges via a Trojan horse (1) realwin.dll or (2) keyhook.dll file in the current working directory.
0
Attacker Value
Unknown

CVE-2010-5228

Disclosure Date: September 07, 2012 (last updated October 05, 2023)
Untrusted search path vulnerability in RealPlayer SP 1.1.5 12.0.0.879 allows local users to gain privileges via a Trojan horse rio500.dll file in the current working directory, as demonstrated by a directory that contains a .avi file. NOTE: some of these details are obtained from third party information.
0
Attacker Value
Unknown

CVE-2012-1112

Disclosure Date: September 06, 2012 (last updated October 05, 2023)
Directory traversal vulnerability in Open-Realty CMS 2.5.8 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the select_users_template parameter to index.php.
0
Attacker Value
Unknown

CVE-2012-2411

Disclosure Date: May 18, 2012 (last updated October 04, 2023)
Buffer overflow in RealNetworks RealPlayer before 15.0.4.53, and RealPlayer SP 1.0 through 1.1.5, allows remote attackers to execute arbitrary code via a crafted RealJukebox Media file.
0
Attacker Value
Unknown

CVE-2012-2406

Disclosure Date: May 18, 2012 (last updated October 04, 2023)
RealNetworks RealPlayer before 15.0.4.53, and RealPlayer SP 1.0 through 1.1.5, does not properly parse ASMRuleBook data in RealMedia files, which allows remote attackers to execute arbitrary code via a crafted file.
0
Attacker Value
Unknown

CVE-2012-1985

Disclosure Date: April 17, 2012 (last updated October 04, 2023)
Cross-site request forgery (CSRF) vulnerability in RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x allows remote attackers to hijack the authentication of administrators for requests that cause a denial of service (stack consumption and daemon crash) via a malformed URL.
0
Attacker Value
Unknown

CVE-2012-2267

Disclosure Date: April 17, 2012 (last updated October 04, 2023)
master.exe in the SNMP Master Agent in RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x allows remote attackers to cause a denial of service (daemon crash) by establishing and closing a port-705 TCP connection, a different vulnerability than CVE-2012-1923.
0
Attacker Value
Unknown

CVE-2012-1984

Disclosure Date: April 17, 2012 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2012-1923

Disclosure Date: April 17, 2012 (last updated October 04, 2023)
RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x store passwords in cleartext under adm_b_db\users\, which allows local users to obtain sensitive information by reading a database.
0
Attacker Value
Unknown

CVE-2012-2268

Disclosure Date: April 17, 2012 (last updated October 04, 2023)
master.exe in the SNMP Master Agent in RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x allows remote attackers to cause a denial of service (unhandled exception and daemon crash) via a crafted Open-PDU request that triggers incorrect DisplayString processing, a different vulnerability than CVE-2012-1923.
0